Delete a Diffuse account and hosted data

Effective 2026-07-31 · Offline Protocol, Inc. · legal@offlineprotocol.com

Panic wipe, OfflineID account deletion, public revocation, and hosted-data deletion are different actions.

Delete from the app

A signed-in user can open Profile → Advanced settings → Delete OfflineID account. OfflineID emails a six-digit code to the verified account address. Confirming that code deactivates the account, begins a 30-day recovery period, and schedules permanent provider deletion. Diffuse then immediately crypto-erases its managed local archives and archive keys on that device; that local erasure is not recoverable.

Request deletion without the app

Email legal@offlineprotocol.com with “Diffuse deletion request” in the subject. Include the OfflineID email or account identifier, if applicable, and the public signing key or post IDs involved. Never send a password, one-time code, private key, precise location, or illegal media.

Verification

Offline Protocol may verify control of the relevant email, account, or signing key before acting. An authorized agent may submit a request where applicable, subject to verification of authority and the user’s identity.

What deletion does

Offline Protocol will delete or de-identify account data under its control unless retention is required or permitted for security, fraud prevention, legal compliance, integrity of a user-requested public record, or legal claims. Public posts may be addressed through a signed revocation or distribution suppression rather than rewriting the signed history.

What deletion cannot do

Emergency local wipe crypto-erases Diffuse-managed archive data on one device only; it does not erase the Mesh SDK signing key. Neither local wipe nor account deletion can recall public or recipient copies already held by independent devices, Nostr relays, exports, caches, websites, or other third parties.