Box · Privacy
Data deletion
You control every account connected to Box. Removing a connection stops its sync and, after required provider cleanup succeeds, removes its stored Box credential and imported channel data.
Meta deletion request received
Confirmation code
Delete a connected channel yourself
Open Box, go to Settings → Accounts, choose the Instagram, Facebook/Messenger, email or other account, and select Disconnect. Box stops access, performs supported provider cleanup, and deletes its stored credential and imported data.
Google access is revoked during disconnect. Microsoft does not expose a compatible per-user revocation endpoint, and deleting a Box credential does not itself remove an underlying Facebook Login grant. Remove those grants separately in your Microsoft or Facebook account settings if you also want to withdraw provider-side consent.
Delete your Box account
In Box, open Settings → Privacy & security → Delete account and confirm the permanent deletion. Box first cancels the active subscription, completes required provider cleanup, removes credentials and user-scoped files, and only then deletes the account. A failed remote cleanup returns a retryable status instead of falsely reporting success.
Invoices and supporting accounting records can remain for ten years where Belgian law requires it. Isolated backups expire on the hosting provider’s rolling schedule and are not restored as active account data. See the Privacy Policy for the complete retention rules.
Meta deletion requests
If you remove Box through Facebook or Instagram, Meta can send Box a signed deletion request. Box verifies Meta’s signature, completes the same required channel cleanup, and returns a confirmation code and status URL. A code shown on this page confirms receipt; it is not an authentication credential.
Request deletion by email
Email box@nivoraworks.com from your Box email address with the subject “Box data deletion request”. We may ask you to verify ownership before deleting data.
Back to Box