Legal
Account and Data Deletion
My Coffee Shelf is published by Nisshagen Advisory AB. You can delete your account and its data yourself, from inside the app or from this website. This page explains how, what goes, what stays, and what to ask us to remove by hand. The privacy policy sets all of it out in full.
1. Delete from inside the app
- Open My Coffee Shelf on your device.
- Go to the Profile tab.
- Tap Delete account.
- Confirm twice. You are asked twice because it cannot be undone.
It runs while you wait. When it finishes the app tells you whether your sign-in was removed as well, or kept because another Shelf app still holds data for you. Section 5 explains that.
2. Delete from this website
Sign in on My shelf with the same account, open the account panel and choose Delete account. It does exactly the same thing as the button in the app and deletes exactly the same coffee data. Nothing belonging to another Shelf app is touched.
3. If you cannot reach either
Email hello@mycoffeeshelf.com from the address on the account, with the subject line Delete my account. We will confirm once, then do it, and reply when it is done. We aim to answer within a month and it is normally the same week.
If your account is anonymous, meaning you have never signed up, there is no address for us to match you against and the email route cannot work. Use the button in the app, which does work for an anonymous account.
4. What is deleted
Photographs go first, on purpose: if that step fails, nothing else is deleted and you can try again, rather than being left with files that no record points at. Then the rest, in one pass:
- Every photograph you uploaded from the app: bags, brews, equipment, recipes.
- Your brews, with their ratings, tasting notes, recipes and caffeine estimates.
- Your bags and your shelf history.
- Your equipment and its maintenance log.
- Your saved cafés, including your visit counts and notes.
- Your own drink recipes and your brew adjustments.
- Your scan history within this app.
- Your recorded analytics answer for this app. My Coffee Shelf keeps its own answer, in its own table, which no other Shelf app reads. The five other Shelf apps share a separate answer between them, and deleting here does not touch it. The privacy policy sets out the split in section 4.
- This app’s push token and notification history, so a kept sign-in stops receiving coffee reminders.
5. Your sign-in, and when it stays
One sign-in serves My Coffee Shelf, My Bar Shelf, My Whiskey Shelf, My Wine Shelf, My Beer Shelf, My Cigar Shelf and My Supply Shelf. Deleting here always erases the coffee data above. What happens to the sign-in itself depends on whether anything else is using it.
- If nothing else holds data for you, the sign-in is deleted too and the account is gone.
- If you also use My Bar Shelf, My Whiskey Shelf, My Wine Shelf, My Cigar Shelf, My Beer Shelf or My Supply Shelf, the sign-in stays alive so that those shelves are not destroyed along with your coffee. Only the coffee data goes.
- If the check itself fails, we keep the sign-in rather than guess. The app tells you that this happened, and you can write to us.
To remove the sign-in entirely, delete your account in each of the other Shelf apps that still holds data for you, or write to us and we will do it.
6. Export your data first, if you want it
In the app, go to Profile and choose the data export. It produces a JSON file with your account details, your bags, brews, equipment, maintenance, cafés, shopping list, scan history, your recorded analytics answer and your notification history, and gives you a link to download it. The link works for seven days.
Read the first item in section 7 before you use it. Deletion is permanent, so export first if there is anything you want to keep.
7. What survives, and how to get rid of it
Saying “nothing” here would be easier and it would not be true. These outlive the deletion. Write to hello@mycoffeeshelf.com and we will remove by hand what the button does not reach.
- Any data export you asked for. The export writes a real file to our storage and hands you a link to it. The link expires after seven days; the file does not. Nothing deletes it, including this deletion. It contains your email address, your account identifier, your sign-in timestamps and everything section 6 lists. Ask us and we will remove it.
- Analytics already sent. If you switched analytics on, the events already delivered stay with our analytics provider. They are keyed to your account identifier, which means they are pseudonymous, not anonymous and not aggregated. An earlier version of this page called them anonymised and aggregated, which was wrong. We can have them deleted on request.
- Your subscription record. RevenueCat holds a subscriber record keyed to your account identifier. It exists even if you never bought anything, because the app identifies your account to RevenueCat on every launch in order to ask what it is entitled to. Ask us and we will remove it.
- Crash reports. Held by our crash reporting provider on its own schedule. We do not attach your account to them, but the report can still contain your account identifier, because the library records the web addresses of network requests and many of ours filter on that identifier, and because a failed database write is reported with the database’s own message, which can quote the value that caused it. They do not contain “no personal identifiers”, which is what an earlier version of this page claimed. They are not filed under your account, so there is no reliable way to find yours: tell us roughly when a crash happened and we will look.
- Your free scan allowance ledger. One row per AI scan, holding your account identifier, the app, the kind of scan and the time. It is the ledger My Coffee Shelf, My Whiskey Shelf and My Cigar Shelf all count their five free scans against. It is not removed by a coffee deletion. It goes when the sign-in goes, so if the sign-in is kept, the ledger is kept.
- Your shopping list, if the sign-in is kept. It is missing from the list of tables the deletion clears. If the sign-in is removed it goes with it; if the sign-in is kept because another Shelf app holds data, the shopping list stays behind. That is a fault of ours rather than a decision, we are fixing it, and until then ask us and we will remove it.
- The record of which reminders fired for you, for the same reason: it carries no app label, so it is only removed when the sign-in is.
- Shared catalogue entries you contributed. A café, roaster or coffee you added and we approved stays in the shared catalogue, because other people’s brews point at it. An earlier version of this page said your name is removed from it so nothing on the row leads back to you. That was too broad. A café has your identifier cleared, but only when your sign-in is deleted; if the sign-in is kept because another Shelf app holds your data, it stays. A roaster or a coffee keeps your identifier on both paths, because nothing in the deletion clears those two. Ask us and we will clear all three by hand.
- Your deletion request, if you emailed us one. We keep the message, and it identifies you. It is the record that you asked and that we acted, which is the thing we would need if you or a regulator ever asked us to show it.
- Purchase records held by Apple and Google. They are the sellers of any subscription, they hold the payment details, and they keep the record on their own schedules for their own accounting obligations. We never see your payment details and we cannot delete or shorten what the stores keep.
- Backups. Deleted rows can remain in our database provider’s routine backups for a period until those backups age out. We are not going to quote a number, because it is our provider’s schedule rather than ours.
8. How long it takes, and how final it is
Immediately. There is no queue, no batch job and no thirty-day window: the deletion runs when you confirm it and finishes before the app tells you it is done. There is no recovery period. We cannot restore it afterwards, and the only copies that could outlive it are the ones section 7 names.
9. Subscriptions
Deleting your account does not cancel a subscription. Cancel it first in your App Store account settings or your Google Play subscriptions, or the store will keep billing you. We cannot cancel or refund it for you.
10. What changed on this page
Version 2.2, 1 September 2026. Section 5 said “one sign-in serves every Shelf app” and told you to delete your account in “every Shelf app you use” without naming any of them; both now name the seven apps and the second one asks only for the apps that still hold data. Section 7 described the scan ledger without saying which apps count against it; three do, and they are now named.
Version 2.1, 1 September 2026, was published without a note here, which was wrong. The page was re-dated and its version raised while this section still stopped at version 2.0, so a reader comparing the date to the changelog would have found nothing to explain the change. What that revision did, recorded here late, and matching version 2.1 of the privacy policy: it corrected the claim in section 7 that a shared catalogue entry you contributed has your name removed from it, so that nothing on the row leads back to you. A café has your identifier cleared only when your sign-in is deleted; a roaster or a coffee keeps it on both paths. And it added the note in section 4 explaining that this app's analytics answer is its own, stored in its own table, and that the other five Shelf apps share a separate answer that deleting here does not touch.
Version 2.0, 31 August 2026. This page was rewritten because parts of it were not true of the app that shipped:
- Removed “anonymised, aggregated usage data that cannot be linked back to you”. Analytics events are keyed to your account identifier. They are pseudonymous, and they can be deleted on request.
- Removed “crash and diagnostic logs, which contain no personal identifiers”, and the ninety-day figure attached to it. Section 7 now says what a crash report can actually contain and refuses to quote a retention period we cannot verify.
- Removed the claim that purchase records are kept by us for seven years under the Swedish Bookkeeping Act. We hold no purchase records about you at all. Apple and Google do, as the sellers, and RevenueCat holds a subscriber record, which section 7 now names.
- Added the export file to the survivors, because section 6 tells you to create one and nothing deletes it.
- Added the scan ledger, the notification history, the shared catalogue entries, the deletion-request email and the shopping list, which is a bug on our side and is named as one.
- Added the website route, which works and was not mentioned, and corrected the sign-in section to name all six other Shelf apps rather than only My Bar Shelf.
- Added photographs going first, and what happens if that step fails.
11. Questions
If anything here is unclear, or a deletion request has not been actioned, email hello@mycoffeeshelf.com and a person will reply.
Nisshagen Advisory AB, Stockholm, Sweden.