Account and data deletion
This page distinguishes actions the current NYTSHIFT Android app can complete from account or server-data deletion that still needs an owner-approved request channel.
This is not yet a functional Google Play account-deletion resource. No verified mailbox or request form is published, so no deletion request can be submitted here.
Current Android account boundary
The candidate Android app can authenticate an existing NYTSHIFT customer through explicit device-bound pairing when the production gateway is configured. It does not offer in-app account creation. Login is read only: the app cannot sign, submit, retry or cancel a venue order and has no funding, transfer, withdrawal, wallet, signer or mainnet authority.
Actions available in the app
Reset local PAPER
Profile → Reset local PAPER permanently deletes the local simulation ledger, including its PAPER orders, fills, positions and protection plans. It does not delete an NYTSHIFT customer account, server records, a venue account, a wallet or an export already shared to another app.
Sign out and revoke this device
Signing out attempts remote revocation of the current device session and clears local session material. If remote revocation is unavailable, the app clears this device and directs the user to revoke the session from another signed-in owner surface. Device revocation is not account deletion.
Uninstall or clear app storage
Android can remove app-private local state when app storage is cleared or the app is uninstalled. This does not prove deletion of server, processor, backup or legally retained records, and it does not remove files previously exported to a user-selected recipient.
Account and server-data requests
An accountable support/privacy owner must publish and verify a request mailbox or form, response ownership, identity-verification process, expected completion period, processor deletion flow and any security, fraud-prevention or regulatory retention exceptions. The legal publishing entity and the exact data retained after a request must be stated clearly in the approved privacy policy.
Until that channel is live, the Android app keeps Delete account unavailable disabled and this page deliberately provides no form, email or misleading completion claim. Do not place private keys, credentials, tokens, pairing payloads, wallet secrets, account identifiers or personal data in URLs, public issue trackers or unverified messages.
Release gate
Before Google Play submission, owner/legal must record whether the current existing-account login is in scope for the account-deletion form, complete every Data safety deletion answer, publish the verified request channel, and test it without requiring the user to reinstall the app. If account creation is ever added, NYTSHIFT must also provide a readily discoverable in-app deletion path and delete associated data rather than merely freezing the account, subject only to clearly disclosed legitimate retention requirements.
Read the current privacy-policy draft or return to support resources.