Data Deletion — Church Media Kit

Version:
August 26th, 2026
Effective Date:
August 26th, 2026

This page explains how to request deletion of your Church Media Kit account and data, what gets deleted and when, and what does not get deleted. The current subscription does not include external publishing. If Hekima later makes that feature available and Customer uses it, the provider-boundary information below would also apply. It supplements the Privacy Policy and Terms of Service.

How to request deletion

  • In-app: Go to Settings in Church Media Kit and use the account deletion option.
  • By email: Send a request from your account's registered email to privacy@churchmediakit.com.

Hekima's policy is to acknowledge a verifiable deletion request within 5 business days.

Export before you delete

The Service does not currently provide a portable account-data export. Before deletion, download any supported Studio files you need through the bounded local image-download flows. Those downloads are not a complete account export and do not include retained uploads, source or prompt inputs, publication manifests, provider records, credentials, logs, or third-party copies of live posts.

What gets deleted, and when

Hekima's deletion policy commitment, being implemented as a durable, retryable process, is:

  • An active-account deletion request is completed within 30 calendar days, subject to a documented legal hold, security investigation, or other lawful exception.
  • Deletion removes database records, private Cloudflare R2 source and working objects (such as uploaded sermon material and account assets), derived assets, and stored connection credentials. Database-driven deletion jobs identify the R2 objects due for removal and retry failed object deletion.
  • Backup copies are expected to expire within an additional 35 days after active deletion completes, absent a documented legal hold or statutory retention requirement.

What survives deletion

Some records are retained even after your account is deleted, because Hekima is required to keep them or because deleting them would compromise a legitimate integrity, legal, or security purpose:

  • Legal holds — material subject to a documented legal hold, subpoena, or investigation is preserved until the hold is lawfully lifted.
  • Billing, tax, and legally required records — retained for 6 years, or longer if required by law.
  • Security and authentication logs — retained for 90 days; breach and incident records — retained for 24 months.
  • Support records — retained for 24 months.
  • PostHog measurement records — account identity, product measurement, replay, and essential browser-error records already sent to PostHog are provider-held copies. Hekima does not yet operate an automated provider-deletion workflow for those copies. A verified request stops future account-linked browser measurement after the account is deleted; provider-held records remain subject to PostHog's applicable retention and deletion process.
  • Potential future provider-held posts — if Hekima later makes external publishing available and Customer uses it, content sent to a connected destination would not be deleted by your Church Media Kit deletion request.

See the Privacy Policy, Section 10, for the full retention matrix.

If external publishing becomes available: Meta-specific instructions

If Hekima later makes external publishing available and Customer uses it, deleting a Church Media Kit account would remove locally stored Meta connection credentials. It would not itself revoke authorization in Meta or delete or unpublish posts already published to Meta.

The current subscription does not include a separate control to connect or disconnect an individual Meta destination.

To remove a post sent through a future external-publishing feature, use Meta's own controls:

  1. Open the connected provider's app or page where the post was published.
  2. Locate the post.
  3. Use Meta's delete, unpublish, or archive option for that post.

Church Media Kit does not currently provide provider post IDs or URLs through a portable export. If the future feature is used, use the connected Meta account's own publication history to locate posts for removal.

Questions

Send a question about deletion, export, or retention to privacy@churchmediakit.com.