Metlivi Blog

Audit one AI conversation from creation to deletion

When an AI assistant saves chat history, check more than whether the title appears in a sidebar. Follow one ordinary conversation from the moment it is created through account storage, optional sharing, export and deletion. Record who controls the account, which attachments and metadata travel with the chat, how long each copy remains, and which settings are separate. Product rules differ, so a visible deletion must be verified against shared links, saved memories, connected services and downloaded copies.

August 27, 20268 min readHome, Safety, Pets & Sustainable LivingBy Metlivi Editorial Team
Section 1

Confirm the account and workspace owner

Start by identifying whether the conversation belongs to a personal account, family device, employer or school workspace, and which administrator can change settings. The same app can expose different controls under managed and consumer accounts. Record the login email, workspace name, subscription type and devices currently signed in without copying passwords. Check whether browser sync, mobile backups or a shared operating-system profile creates another copy. If the account is not solely yours, do not assume that deleting an item from your screen removes an administrator’s retention path or another device’s cached view.

Section 2

Inventory the complete conversation record

List prompts, responses, uploaded images or documents, voice transcripts, feedback, generated files, conversation title, timestamps and any location or device metadata described by the service. Separate the visible transcript from saved memory, profile instructions, project files and connected-app data. OpenAI’s current memory guidance explains that these sources can be distinct. A harmless-looking chat may still contain a private filename, another person’s message or a document excerpt. Before saving, remove fields that are unnecessary for the task and use a temporary mode only after confirming what that mode actually stores.

Section 3

Read retention and human-access conditions

Read the current privacy notice and help page for default saving, auto-delete choices, security retention, abuse review, service-provider review and what happens when feedback is submitted. Do not turn one company’s period into a universal number. Google currently describes separate behavior for Activity, temporary chats, feedback and managed accounts; Anthropic publishes its own deletion process. Write the date you checked because interfaces and policies change. If the wording distinguishes removal from history, back-end deletion and retained exceptions, copy those distinctions into your lifecycle card instead of reducing them to “kept” or “deleted.”

Section 4

Test sharing, export and local copies

Create a low-sensitivity test chat. If sharing exists, generate a link, open it signed out, revoke it and test again. Google notes that deleting activity may not delete a related public link, illustrating why the link needs its own control. Export the test if available and inspect the files, names and dates included. Store the export in a private folder, not a shared downloads directory, then delete the test copy. Check screenshots, clipboard history, email notifications and cloud backup. Export is useful for portability, but it also creates a new copy that the service’s delete button cannot reach.

Section 5

Close the conversation with a deletion receipt

Delete the test conversation through the documented control and record the time. Refresh on another signed-in device, search history, inspect shared links, projects, uploaded-file areas and memory settings, then wait the stated processing period before the final check. Anthropic distinguishes immediate removal from visible history from later back-end deletion; other products use different wording. Keep only a short receipt containing date, account, item identifier and result, never the conversation text. If a detail still appears, trace its source rather than repeatedly deleting the same chat. The result is a verified lifecycle, not a promise that every provider behaves alike.

Related questions

Common questions

Does deleting a chat also delete a shared link?

Not always. Revoke or delete the share separately and test the link while signed out.

Is an export safer than online history?

It gives you control of a copy, but also makes you responsible for its storage, backups and deletion.

Can a work administrator control retention?

Possibly. Managed accounts may have organization settings, so verify the workspace policy and available controls.

Related reading

Keep exploring this topic