1. Delete your Bifro account
Sign in to Bifro Connect, open Settings, and choose Delete account. Review the consequences and enter the required confirmation text. This protects the account from accidental or unauthorized deletion.
When the request is accepted, Bifro locks the account, blocks new approval links, ends ordinary signed-in sessions, and stops subscription renewal. You can sign in through the restricted recovery flow to view or cancel the request during the recovery window.
2. Seven-day recovery window
A normal account-deletion request remains recoverable for seven calendar days. During this period:
- the account cannot create new approval links or make ordinary account changes;
- existing client connections remain in place so an accidental request does not immediately disrupt client work;
- subscription renewal is stopped; and
- the account owner can sign in through the restricted recovery flow and cancel deletion.
If deletion is not cancelled before the deadline, processing begins automatically. Recovery is no longer available once final deletion starts.
3. Deletion requested through Meta
Meta may send Bifro a signed deletion request when a person removes the app or uses Meta's data-deletion controls. Bifro verifies that request using the Meta app secret before acting.
A valid Meta-originated request starts immediately and has no seven-day recovery period. Depending on the Meta app-scoped user ID in the request, Bifro will delete the related agency account or client-derived records under that identifier. The response supplied to Meta includes a confirmation code and a status URL.
You can also remove Bifro permissions or business access directly through Meta's settings. If that prevents an API-based revocation, Bifro records the unresolved step for retry or manual review and does not falsely mark the request complete.
4. What final deletion removes
After the recovery period, or immediately for a verified Meta request, Bifro will:
- attempt to revoke the managed business and asset access through Meta;
- delete stored Meta access tokens and active sessions;
- delete account profile and contact details that are not legally required;
- delete approval-link tokens, client labels, connection records, selected asset details, and operational connection metadata; and
- anonymize retained audit records so they are not used to recreate the deleted account.
If a Meta revocation temporarily fails, the request remains in a needs-attention or processing state while Bifro retries or provides manual removal instructions. We do not mark the request complete merely because an external API call failed.
5. Limited information we may retain
Deletion does not override records Bifro Tech Inc. must keep for legal, tax, security, or dispute purposes. Retained information is minimized and restricted to the reason it is kept.
- Billing and tax evidence
- Six years after the relevant tax year.
- Deletion and breach evidence
- Two years after the request or matter is closed.
- Support and security records
- Up to two years when needed for support history, fraud prevention, or an investigation.
- Raw Stripe webhook payloads
- No more than 30 days. Complete card details remain with Stripe and are not stored by Bifro.
6. Deletion status codes
The deletion status page is designed to show progress without displaying personal information. You may see:
scheduledThe account is locked and can still be restored before the seven-day recovery deadline.pendingAn immediate Meta-originated request has been accepted and is waiting for processing.processingFinal deletion and required cleanup work are in progress.awaiting_revokeOne or more Meta access revocations need a retry or manual review. Bifro has not marked deletion complete.failedA deletion step failed and has been recorded for retry or operational review.completedDeletion is complete, subject only to minimized records retained for the periods explained above.cancelledThe account owner restored the account during the seven-day recovery period.Keep the confirmation code private. It is a reference for deletion status, not a login credential. An invalid or unknown code returns a not-found error rather than account information.
7. Privacy and deletion help
Contact the Privacy Officer at info@bifro.ca. Include the account email or confirmation code, but never send a password, Meta access token, or complete card number.
Privacy Officer, Bifro Tech Inc.Business Number 773892377 · Registry ID 18000166
34 Orwell Dr, Vaughan, ON L4H 4P7, Canada