Uploaded artwork and generated files
90 days by default for trial and internal accounts unless a customer plan or support case sets a different window.
DigitizingFlow stores only the operational data needed to process embroidery digitizing runs, keep evidence available for review, and support safe launch access. This page describes the current pre-customer policy draft.
Account identity, uploaded source artwork, generated PES/DST candidates, previews, reports, run settings, gate results, support notes, and bounded product analytics can be stored while a workflow is active.
Runtime records live in Railway Postgres, generated and uploaded files live in Railway object storage, transactional email uses Resend, and public-web measurement is optional through configured analytics tools.
These windows are conservative launch defaults until customer plans and legal terms replace them.
90 days by default for trial and internal accounts unless a customer plan or support case sets a different window.
13 months for troubleshooting and quality review, with production approval states kept explicit.
24 months for support, security, and production-honesty audit trails.
18 months or until a verified deletion request.
Verified account requests can export or delete account-scoped metadata and artifact objects. Minimal audit or security metadata may be retained when needed to prove the request, prevent abuse, or satisfy legal obligations.
Customer artwork and sewout evidence are never committed to Git. Software-ready files remain separate from sewout-approved production files, even when a run's metadata is retained for audit.
The product policy and the engine policy both require physical sewout evidence before a generated file can be called production approved.