DATA LIFECYCLE

Data storage and deletion

Where CloseBook data lives, how long it may remain and how users can export or request deletion.

Last updated: 21 July 2026

Guest books

Guest books exist only in the browser storage of the device where they were created. They are not synchronized to a CloseBook account. Clearing site data, reinstalling the browser, using private browsing, losing the device or changing devices may permanently erase them.

Export a data backup before clearing browser data or moving devices.

Registered-account data

Supported book data is stored in the CloseBook account database and synchronized after saves. This includes book metadata, transactions, reconciliation information and audit history. Account records, session records, email-verification records and password-reset records are also stored as required to operate the account.

Files not stored

CloseBook does not currently upload or store invoice, receipt or supporting-document files. Invoice numbers and documentation-exception text are data fields, not file storage.

Exports

Users can export a full data backup for an individual book. Closed books can also generate a closeout package. Exported files are stored wherever the user's browser or operating system places downloads.

Deleting a book

Deleting a book removes the book, its transactions, reconciliation data and audit trail from the current browser and, for signed-in users, from the synchronized account. CloseBook also attempts to remove any legacy local attachment records linked to that book. Deletion cannot be undone.

Deleting an account

Account deletion is currently handled through a verified support request. Contact [email protected] from the account email address. Export required records before requesting deletion.

After identity verification, CloseBook will remove the account and associated synchronized books, sessions and related account records, except information that must be retained for security, dispute resolution or legal obligations.

Temporary records

Email-verification and password-reset codes expire after ten minutes. Session and temporary security records may remain until expiration or routine cleanup. Completing a password reset revokes existing sessions.

Backups and infrastructure copies

Deletion from the active service may not immediately remove information from short-lived infrastructure backups or logs. Such copies are not intended for normal account access and are removed or overwritten according to provider operations.

Never request deletion before exporting records that you are legally or operationally required to keep.