Data lifecycle

Leave with your memory intact.

Hosted sync is optional. You can stop remote transfer, export hosted ciphertext and operational metadata, delete the remote workspace, and continue using every local Docmancer capability.

01

Export

  • Local export is always available from the CLI
  • Hosted export includes ciphertext, wrappers, public keys, cursors, and a checksummed manifest
  • Ready exports expire after a short download window
  • The server cannot turn ciphertext into readable memory

02

Subscription lapse

A failed renewal has a fixed 7-day upload grace period. New remote uploads then stop, while pull and export remain available for a 30-day read-only recovery window before hosted deletion. Local Ask, Shared Memory, Library, agent integrations, capture, and MCP continue.

03

Deletion

An owner can schedule remote workspace deletion. The service provides a cooling-off window and notification before deleting primary hosted rows. Backup copies expire according to the backup retention schedule.

04

Recovery limits

Deleting cloud ciphertext does not delete local copies. Losing every device key and the offline recovery kit makes existing ciphertext unrecoverable, including exported ciphertext.