Skip to content
This repository was archived by the owner on Aug 20, 2025. It is now read-only.

data destruction policy options #17

@dkg

Description

@dkg

The political situation in the USA around fertility is fraught today, and data stored on people's phones can potentially get them in trouble.

A local period tracker like log28 is clearly better than one that sends stuff to the cloud, but local data could still be used against someone if their phone is seized.

It would be nice to have a setting that would automatically securely destroy data older than a certain time. This is comparable to "disappearing messages" on a messenger app.

Having a simple setting like "delete logged data after" with choices like 3 months or 6 months would be a nice option for people who have to worry about this. It wouldn't help if a person's phone is seized promptly after a visit for reproductive healthcare, but if their phone was seized later during a delayed prosecution, it might help.

Other possible options for data destruction or protection:

  • a button to destroy all data (i guess uninstall and reinstall might work too, but maybe it is clearer to have an explicit action?)
  • a button to replace historical data (from some point back?) with reasonable-looking random data

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions