You can delete your Suphuzi VPN account and the data attached to it at any time, for any reason, without explaining yourself. This page tells you how, exactly what disappears, what does not, and how long it takes. You do not need an account on this website and you do not need to be signed in anywhere to read or use it.
Before publishing: replace every [MARKED VALUE] with the operating company's real details. Google Play requires that the address on this page actually receives and answers deletion requests.
This is the fastest route and it is immediate. It requires no message to us and no waiting.
Open Suphuzi VPN on your device.
Go to Settings.
Scroll to the account section and choose Delete account.
Confirm. Your tunnel is disconnected, your server-side account record is deleted, and the identity stored on the device is erased.
Deleting the app on its own does not delete your account, because the account lives on our server. Use the step above, or send us the request below.
If you have already uninstalled the app, lost the device, or simply prefer that we do it, email us. This route works with no app installed and no login.
Subject: Account deletion request
Include:
We would have to guess, and we will not guess — deleting a stranger's account on an unverified request would be a worse privacy failure than the one you are trying to fix. If you no longer have the account ID, use Option 1 from any device still signed into the account. If you have lost access entirely, tell us what you do know and we will help you work out whether a record exists that we can act on.
Deleting your account is not the only way to cut a device off. If you sold a phone, lost one, or simply want to free a slot on your plan, remove that one device and keep everything else.
Open Suphuzi VPN on any other device that is still on the account.
Go to Settings → Devices. Every device on your account is listed with its name, platform, the day it was added and the day it was last seen, and the device you are holding is marked This device.
Open the menu on the device you want to remove and choose Remove. The confirmation tells you what happens before you tap it.
Confirm. Its device record is deleted, its access token is revoked, and if it was connected its tunnel is closed within a couple of seconds.
Two honest details. First, a device cannot remove itself: Suphuzi has no sign-in, so an app that revoked its own access would simply enrol again moments later on a new, empty account. Use another device, or delete the whole account. Second, the last device on an account cannot be removed either — an account with no devices could never be reached again, so we refuse it and point you at deletion instead.
If you have lost access to every device on the account, we cannot do this for you from the outside without proof that the account is yours; write to privacy@suphuzivpn.com with your account ID and we will work out what can be done.
You can also rename a device on that screen. The name is stored on our server and shown on your other devices, so do not put anything private in it — and for the same reason, renaming is how you exercise your right to correct it.
When the deletion runs, the following are erased from the live database immediately. They are also inside the rolling database backups, which take up to 35 days to age out — see Backups below.
| Data | Deleted? | Notes |
|---|---|---|
| Your account record — random account ID, subscription tier and expiry, device count | Yes, immediately | The account ceases to exist |
| Every registered device — device ID, platform, the label you gave it, creation and last-seen dates | Yes, immediately | All devices, not just the one you are using |
| Any active VPN session | Yes, immediately | Each device's tunnel lease is revoked and the peer is removed from the exit server |
| Your linked email digest, or Apple sign-in digest | Yes, immediately | The link between an email address and this account is destroyed |
| Your allowance ledger for today and yesterday | Yes, immediately | Bytes granted, bytes used, rewarded ads credited |
| The identity stored on your device | Yes, if you use Option 1 | Account ID, device ID, device secret and local counters are erased from device storage |
There is nothing else about you in our account database. We do not hold browsing history, DNS queries, connection history, a list of servers you used, your real IP address, your name, your phone number or any hardware identifier — so there is nothing of that kind left behind to delete. The Privacy Policy lists every field we do hold.
A few things outlive the deletion. All of them expire on their own; none of them is a profile of you, and none can be used to re-identify you.
| Data | Kept for | Why |
|---|---|---|
Tunnel lease records — a random token, the public half of a WireGuard key, and a private in-tunnel address such as 10.66.21.105 |
Deleted with your session. Any record not tied to a live session expires automatically within 48 hours. | These contain no account field and no real IP address. They exist only to keep the tunnel working. This table has no backups, so nothing restorable outlives the 48 hours. |
| A copy of your account record inside the backups of the account database | Up to 35 days, then it ages out on its own | The backups exist so a database failure cannot wipe out paid subscriptions. Nothing is read out of them to look you up. See below. |
| Rewarded-ad transaction IDs | 7 days, then deleted automatically | Prevents the same ad reward being claimed twice. It is a Google transaction number, not a record of you. |
| Request idempotency keys | 24 hours, then deleted automatically | Stops a retried network request being counted twice. |
| An allowance ledger entry older than yesterday, in the rare case one exists | 3 days from creation, then deleted automatically | Byte totals only; no content, no destinations. |
| Server-side application logs | 7 days | They record only server-health errors and counters. They contain no IP address, no account ID and no key, so there is nothing in them to erase. |
| Cloud provisioning command history on five of our nine exit servers | ~30 days, held by the cloud provider | Contains a WireGuard public key and a private in-tunnel address. No real IP address and no account field. We are migrating those servers to a mechanism that does not produce this history. |
| Purchase and refund records held by Apple, Google and RevenueCat | Under their policies and applicable tax law | We cannot delete these; they belong to the payment processors and are required for accounting. Manage or cancel your subscription in the App Store or Google Play. |
| Advertising data already collected by Google AdMob | Under Google's policy | Reset or delete your advertising identifier in your device settings, and use Google's own My Ad Center controls. Subscribing removes ads entirely. |
The database that holds accounts has continuous backups (point-in-time recovery) with a 35-day window. We keep them because losing that table would destroy the subscription of every user who paid for one, and there would be no way to rebuild it.
What that means for you, stated plainly: deleting your account removes it from the live database at once and it stops existing as far as the service is concerned — you cannot sign in with it, it grants nothing, and no part of Suphuzi reads it again. A copy of it nevertheless sits inside the rolling backups until it ages out, which takes up to 35 days. We do not restore individual accounts from those backups, and we will not restore yours after a deletion; they exist only to bring the whole table back after a failure.
The tunnel lease table has no such window — backups are switched off there on purpose, so tunnel data really does end at 48 hours.
Deleting your account does not cancel your subscription, and it does not refund it. Subscriptions are billed by Apple or Google, not by us, and only they can stop the billing.
Cancel first, then delete. If you delete the account while a subscription is still running, the remaining paid period is lost.
Deletion is not your only option. You can also ask for a copy of everything we hold about your account, in machine-readable form, or ask us to correct or restrict it. Write to privacy@suphuzivpn.com with what you want, and see section 15 of the Privacy Policy for the full list.
If you only want to remove one device rather than the whole account, see Removing a single device above — you do not need to delete your account, and you do not need to write to us.
[LEGAL ENTITY NAME]
[REGISTERED ADDRESS, COUNTRY]
Deletion requests and data rights: privacy@suphuzivpn.com
General support: support@suphuzivpn.com