Cannot access the app?
If possible, send the request from the email registered to your Aris account. The controller, ALSEN DIGITAL LTD, may request only the additional information necessary and proportionate to verify ownership.
Send deletion request →If the link does not open, email info@alsendigital.net with the subject “Aris Account and Data Deletion Request”. We answer as soon as possible and no later than 30 days.
1. Delete in the app
- Open Aris and go to Settings → Privacy Centre → Delete my account and data.
- Review the data being deleted and the limited retention exceptions.
- Complete step-up verification using your password, a fresh sign-in, or platform identity.
- Explicitly confirm permanent deletion.
After confirmation the account is immediately set to pending deletion, all active sessions are revoked, and the account can no longer be accessed.
2. How the deletion job runs
A verified request creates a deletion job. Active database records are removed transactionally; user-owned files and supported external-provider links are cleaned using registered ownership data only. Temporary provider failures are retried automatically and job status remains recorded. You are informed in the request record and through an appropriate contact channel when the job completes or a provider requires an action from you.
This design does not trust user-editable file URLs to decide ownership and does not report failed external cleanup as complete.
3. Data covered by deletion
- Account, authentication links, profile and preferences.
- Portfolio, transaction, cash, liability, income, expense, budget, goal, analysis-input and note records.
- Community records and ownership-verified profile, community or receipt files you uploaded.
- Push tokens, active sessions, device links and in-app security records.
- Open Banking connection references held by Aris and supported provider authorisations.
- Subscription-entitlement mappings, support records and other user-linked application records, except elements that law requires us to retain.
Data is erased from active systems or anonymised irreversibly so that it is no longer personal data.
4. Records retained on a limited basis
Minimum evidence relating to notice/consent, a KVKK request, deletion operation, security incident or legal dispute may be retained with restricted access only for as long as needed. It is not used for advertising, marketing or new profiling and is erased or destroyed when the need ends.
Copies in encrypted backups are destroyed through the normal cycle within at most 30 days. A restricted record containing only a one-way user hash and deletion time prevents a restore from recreating the account; it cannot reconstruct the account or financial records.
5. External providers and store subscriptions
If a file-storage, identity, email, subscription or Open Banking provider holds user-linked data, Aris issues an automated deletion/revocation call or creates a tracked action under the provider contract. Any mandatory provider retention or user-performed step is recorded and communicated to you.
If you used a Binance or Bybit connection, you must also revoke the API key in your exchange account. Aris deletes its encrypted copy with the account, but cannot disable the key in your exchange account for you; the external-provider action remains open until that user step is evidenced.
You must separately cancel a paid subscription bought through Apple App Store or Google Play in your store account. Deleting Aris does not in every case stop future store billing automatically.
For other KVKK rights and transfer details, read the Privacy Notice and Policy.