How to request data deletion
Updated 2 September 2026
Brolly holds two different kinds of information, and the deletion path depends on which one your request concerns.
1. Your Brolly account and dealings with Brolly
This covers information Brolly controls: your account profile and authentication information, information you submitted through our websites and forms, marketing records and support correspondence.
Email privacy@brolly.com.au with the subject line “Data Deletion Request”, including your Brolly account email address and a description of the information you would like deleted, or contact support@brolly.com.au. We take reasonable steps to verify identity before acting, delete the information we are permitted and required to delete, and confirm when it is done. Some records are kept where required or authorised by law — including for taxation, regulatory, fraud prevention, security or dispute resolution purposes — and remain protected under our Privacy Policy until lawful disposal.
2. Content in a customer's archive
Social media records captured for a Brolly customer — for example a council or agency archiving its official pages — are controlled by that customer. Brolly processes them on the customer’s instructions and generally cannot delete customer-controlled records solely in response to a third-party request: those records can be subject to state records legislation and retention authorities that the customer administers. Where deletion is required by applicable law or by a platform’s terms — including the Meta Platform Terms — Brolly will take the required action. Otherwise we refer the request to the customer and act in accordance with applicable law and, where relevant, the customer’s lawful instructions.
If your request concerns a post, comment or message that appears in a customer's archive, contact that organisation directly — it is the records custodian and is responsible for responding. If you send the request to us, we will refer it to the relevant customer and assist them as the law and our agreement require.
Data associated with your Meta connection
If you used Facebook or Instagram to authorise a connection to Brolly, you may request deletion of personal information associated with that connection. This may include your Meta app-scoped user identifier, stored access token, granted permissions, connection metadata and authorisation records controlled by Brolly.
Email privacy@brolly.com.au from your Brolly account email address with the subject “Meta Data Deletion Request”. Include your organisation and the Facebook Page or Instagram account you connected. Do not send passwords, access tokens or other credentials with your request.
We will take reasonable steps to verify your identity or authority and process the request in accordance with applicable law and the Meta Platform Terms. After verification, Brolly deletes Meta connection credentials and other Brolly-controlled connection data that are no longer required, subject to applicable security, legal and contractual requirements. We confirm the outcome when the request has been completed.
Archived content and organisational records
Deleting the personal information associated with your Meta connection does not necessarily delete content already preserved in an organisation’s Brolly archive. Requests concerning archived content are assessed separately based on the nature of the information, the customer’s lawful instructions, applicable law and Brolly’s obligations under the Meta Platform Terms.
If your request concerns a post, comment or message held in a customer’s archive, you may contact the relevant organisation or email privacy@brolly.com.au. Brolly will refer the request to the customer where appropriate and take any action required under applicable law and the Meta Platform Terms.
Customers: deleting your own data, including Meta Platform Data
If you are the customer (or its authorised administrator), deletion of your own archive — including Meta Platform Data such as Facebook Page content, Instagram business account content and Page inbox messages — follows your subscription, your instructions and the applicable agreement. Send instructions through the channels above. After paid services end, standard export functions remain available for 90 days, after which Customer Data may be deleted from active systems through our documented deletion cycle.
Revoking Brolly's access from your Meta account
If you have connected a Facebook Page or Instagram business account to Brolly and wish to revoke Brolly's access directly through Meta, you may do so at any time.
- Go to Settings & Privacy → Settings
- Open Business Integrations
- Locate Brolly
- Click Remove
- Go to Settings
- Open Apps and Websites
- Locate Brolly
- Revoke access
Revoking access stops Brolly retrieving further data from that account and invalidates or prevents further use of the relevant Meta authorisation. Brolly will cease using the connection and delete stored access credentials when they are no longer required. Records already preserved for a customer remain subject to applicable law, the Meta Platform Terms and, where relevant, the customer’s lawful instructions and retention requirements.
Response timeframes
We will acknowledge your request within a reasonable timeframe and act within the timeframes required by applicable law and, where relevant, the Meta Platform Terms. If you do not receive an acknowledgement within five business days, please contact us again at privacy@brolly.com.au.
Related
For how Brolly collects, uses and protects personal information, see the Privacy Policy.