Sutory · Account Deletion
Account and Data Deletion
Effective: 2026-07-31
This page explains how to request deletion of your Tory (Korean app name 토리야) account, published by Sutory, and the data stored with it. You can delete your account inside the app, or request deletion by email even if the app is no longer installed.
1. How to delete your account
In the app (fastest)
- Open the Tory app and sign in.
- Go to Settings → Profile.
- Tap “Delete account” at the bottom of the screen.
- Confirm — the request is processed immediately.
On the web
- Sign in at tory.my with the same account.
- Go to Settings → Account.
- Select “Delete account” and confirm.
By email (works after uninstalling)
Email support@tory.my from the address you signed up with. After verifying your identity we process the request within 3 business days and reply with the result.
2. Deleting some data without deleting your account
You can remove specific data and keep your account.
- Open TOMI → your assessment → Delete assessment to remove its questions, answers, results and corrections. Original conversations, readiness references and invitation preferences remain. You can also turn off use of a result in future conversations. Deleting an assessment also removes its saved grading and public link. You can disable a link separately on the result screen. Links cannot display invalidated results or closed accounts. Images already downloaded or copied elsewhere cannot be recalled. Deletion also removes linked knowledge-graph records and derivatives and invalidates later interpretations that relied on them. Source deletion, correction and forgetting also invalidate dependent interpretations and public links. Independently authored answers in other assessments remain; question text copied from a removed source and dependent interpretations are removed or invalidated. The service cost audit and abuse-prevention ledger survives individual assessment deletion. Entries are retained for 30 days and deleted by the next daily cleanup, normally within 31 days. Account hard deletion also removes them. Deleting an assessment also removes Tory’s question selections, explanations, citations, unresolved items and progress. Access to assessment records still in a guest session ends at 23:59:59 on the session’s creation day in the timezone fixed at creation. Cleanup runs every five minutes, usually removing expired records within five minutes of expiry; delays are possible. After import, delete the relevant assessments or account to erase the completed history and linked graph.
- While a language-learning answer is being submitted, the device temporarily stores account, lesson and question identifiers, the selected answer number and a request ID for retries. This lets the service recover the same answer after a connection failure. The app uses secure storage; the web uses browser local storage. This recovery record contains no question text or recordings. It is removed after the answer is saved and the screen refreshes, or when you log out. If a device storage error prevents removal, cleanup is needed once storage works again. Removing the recovery record does not delete learning records already stored on the server. During live conversation, the device temporarily stores account, lesson and request identifiers, a transcript, the point confirmed as saved by the server and recorded usage time. The app uses secure storage; the web uses browser local storage. This allows another save attempt when you reopen that lesson. Connection keys and original audio are not retained. The recovery record is removed once the server confirms the transcript and usage time, or when you log out or delete the lesson. Content may be lost if the app or page closes before it is saved on the device.
- Language learning stores the learning and explanation languages, lessons and questions, answers and grading results, hint and explanation access, completion status, times and time zones. These records support progress, mistake notes and reports for every ten completed sessions, and prevent duplicate learning notifications you have opted into. Questions, answers, explanations and reports also enter your private knowledge graph with their sources; practice sentences are not treated as events from your life. Deleting a session removes its answers, explanations and graph records and invalidates affected reports. Identifiers, sequence numbers and times used to prevent duplicate processing, notification history and report acknowledgements may remain until the account is permanently deleted. When you report a problem with a learning activity, we store your message, references identifying its session and question, the course version, learning language and explanation language in the support inbox to investigate it. The report is deleted when you delete that session or permanently delete your account.
- When you request pronunciation feedback, we send the recording to Microsoft Azure Speech. The original recording file is not kept in learning records. We store the recognized text, pronunciation results, request time and usage, and add learning records to your private knowledge graph. Deleting the session removes its text, assessments and graph records. Deduplication information and usage records may remain until the account is permanently deleted.
- When available, real-time conversation practice sends audio and the lesson scenario and examples to Google Gemini Live. Learning records store recognized speech, Tory’s replies, request and end times, and usage instead of the original recording. The conversation enters your private knowledge graph only as roleplay learning records, not as facts about your life. A connection request initially deducts one minute from your Pro voice allowance; if the duration reported by the app at the end is longer, the extra time is deducted from that allowance. The initial deduction may remain even if the connection outcome cannot be confirmed. Deleting the lesson removes its conversation and graph records, but aggregate voice usage may remain until the account is permanently deleted.
- Deleting a source conversation or item also removes copied excerpts and revision history, memories and relationships derived from that source, and their search vectors. We also delete the source-link identifiers. We delete source records for manually saved or edited content once no remaining records refer to them. Independent records from other sources remain. Deleting a question also removes Tory’s linked response and copies derived from that response; your other messages that are not linked to the deleted question remain. On account closure, these source and history records are permanently deleted after the existing 30-day grace period. Deleting a message removes its attachment links and quotations derived from that message. It does not by itself delete an independently stored original file, other messages’ attachment links or unrelated attachments. Deleting the file itself also removes memories, relationships, revision history and search vectors derived from it. After the 30-day account closure grace period, we delete original files, their attachment links and derived data. The storage service retains recovery copies of deleted files for up to 7 more days before automatically removing them.
- TOMI guest deletion removes questions, answers, private interpretations, results, completed history, optional profile details, public links, AI usage and reward records and the access cookie. Clearing only the cookie does not immediately remove server records. Retries and rewards do not extend the session access deadline. The separate abuse-prevention IP hash and timestamps remain for their 24-hour window and next five-minute cleanup; deletion and restart do not reset them. Imported records follow member retention rules. When account closure is processed, we deactivate the account immediately and permanently delete the imported records 30 days later. When you start another attempt after receiving an ad reward, the previous result’s public link is turned off. Downloaded or externally copied images cannot be recalled. Deleting an assessment also removes Tory’s question selections, explanations, citations, unresolved items and progress. Access to assessment records still in a guest session ends at 23:59:59 on the session’s creation day in the timezone fixed at creation. Cleanup runs every five minutes, usually removing expired records within five minutes of expiry; delays are possible. After import, delete the relevant assessments or account to erase the completed history and linked graph.
- Clear gender or occupation in the form after a TOMI result and save again to remove those account values. This form does not change an existing account birth year. Deleting an assessment removes its captured details but preserves current account details. Account data export includes the current details. When account closure is processed, we deactivate the account immediately and permanently delete these details 30 days later. Importing guest details does not automatically fill the member profile. Delete an imported assessment to remove the context it contains.
- Say “forget that conversation” in chat to delete it and the memories built from it.
- Say “forget this topic” to delete by subject.
- Settings → Account → Export data lets you download what is stored before deleting.
3. What is deleted, and what is retained
When you delete your account the following applies. Items that law requires us to keep are stored separately for that period only and are not used to provide the service.
| Data type | Deletion / retention |
|---|---|
| AI SNS | AI SNS: deleting a post or comment withdraws it from public display; you can remove friendships and follows. Account deletion disables SNS access immediately and permanently deletes linked posts, comments, drafts, relationships, reports and generation records after 30 days. |
| TOMI birth year, gender and occupation | Members’ TOMI details are stored in their account. You can clear gender and occupation through the form after a result. When account closure is processed, we deactivate the account immediately and permanently delete these details 30 days later. Copies captured in an assessment are removed when you delete that assessment. Guest details become inaccessible at 23:59:59 on the session’s creation day in the timezone fixed at creation. Cleanup runs every five minutes, usually removing expired details within five minutes of expiry; delays are possible. Guest deletion or import also removes the session details. Context in imported assessments follows member assessment retention. |
| Companion profile: we store the required name chosen during onboarding, an optional photo, and the next permitted name and photo change times with your account. These times enforce one year between name confirmations or changes and one month between photo additions or replacements. You may add a photo later or remove it; removal does not reset the existing replacement deadline. | Companion names, photos and change deadlines are retained with the account. Account closure disables access, followed by permanent deletion with the account after the existing 30-day grace period. |
| Feature introduction records and settings | Deactivated on withdrawal, permanently deleted after 30 days |
| Expression flags, administrator note, chat restriction | Deactivated on withdrawal, permanently deleted after 30 days |
| Brain-type assessments, readiness references and invitation preferences | Deactivated immediately on account closure; permanently deleted after 30 days |
| Account details (email, nickname, profile image) | Deactivated immediately, permanently deleted after 30 days |
| Conversations, memory graph, notes, schedules | Deactivated immediately, permanently deleted after 30 days |
| Uploaded photos and files | Deleted after the 30-day account closure grace period. Storage recovery copies expire within 7 further days. |
| AI-generated images | Automatically deleted 7 days after creation |
| Raw voice audio | Deleted immediately after speech recognition (never stored) |
| Location data | Permanently deleted after the 30-day account closure grace period. Device location for weather and nearby suggestions is limited to the latest city/region and coordinates rounded to about 1 km; this feature never stores precise GPS coordinates. Photo capture coordinates extracted with the separate setting follow “File sources and photo information” in the Privacy Policy. |
| Recommendation interactions (card taps) | Deactivated on deletion, permanently erased after 30 days |
| Payment records | Kept for 5 years (Korean E-Commerce Act art. 6) |
| Consumer complaint and dispute records | Kept for 3 years (Korean E-Commerce Act art. 6) |
| Access and security logs | Kept for 3 months (Korean Protection of Communications Secrets Act art. 15-2) |
The 30-day grace period exists in case you delete your account by mistake. After it passes, recovery is not possible.
4. Contact
For questions about a deletion request or its outcome, email support@tory.my.