Data Deletion Request
You can stop knovaly's access instantly yourself, and have everything we hold deleted on request. This page explains both, and exactly what is removed.
Last updated: 29 July 2026
Step 1 — Revoke access (immediate, self-serve)
Sign in and open Account → HubSpot connection → Disconnect. The stored OAuth credentials for that portal are deleted and knovaly can no longer read your CRM. You can also uninstall knovaly inside HubSpot under Settings → Integrations → Connected Apps, which revokes the tokens from HubSpot's side.
Because access is read-only, disconnecting changes nothing in your HubSpot portal — no records are altered or removed there, by us, at any point.
Step 2 — Request deletion of stored data
Email privacy@knovaly.com from the address on the account, stating whether you want everything deleted or only specific scans. Use the button below to open a pre-filled message.
Start a deletion requestWhat gets deleted
- Your account record and workspace.
- All stored HubSpot OAuth credentials and connection records.
- All scan reports, findings and the CRM values held as supporting evidence.
- Scan run metadata and product usage events tied to the workspace.
We retain the minimum billing and transaction records required by accounting and tax law, and Stripe retains its own payment records as the payment processor. These contain no CRM data.
Timing and verification
We verify that the request comes from an authorised account holder before acting, then complete deletion within 30 days and confirm by email. Encrypted operational backups are rotated on a rolling schedule and any residual copies expire with that cycle; deleted data is not restored into the live service.
Requests from CRM contacts
If you are an individual whose details appear in a knovaly customer's CRM, that customer is the controller of your data. Contact them directly, or write to us and we will forward the request to them and assist with their response.
Related pages
See the Privacy Policy for what we collect and why, and the Security page for how it is protected.