Delete and recover a workspace
Use scheduled deletion when your organization is finished with a DVARA workspace but needs a short recovery window before its data is erased. DVARA Flightdeck suspends governed traffic immediately, shows the purge date, and lets you restore the workspace until that date.
Not included in DVARA Open Source.
You must have the workspace admin role. A developer or viewer cannot open
or submit the deletion form.
Export what you need first
Open the workspace danger zone and review Deletion impact before scheduling anything. Flightdeck counts the primary records in each group:
| Erased at purge | Examples included in the count |
|---|---|
| Users | Workspace users |
| API keys and personal tokens | Workspace API keys and Flightdeck personal access tokens |
| Provider credentials | Stored credentials and references owned by the workspace |
| Policies | LLM and A2A policies, approval requests, and shadow-policy records |
| Prompts and experiments | Templates, experiments, and experiment events |
| Budget caps | Budget limits and workspace spend records |
| Integrations and agents | Webhooks, MCP servers and approvals, A2A agents and approvals, and guardrail plugins |
| Usage and cost records | Token usage, costs, reports, killed sessions, cache configuration, and other workspace history |
| PII tokens | Token values and their workspace keys |
The panel separately shows how many audit and MCP tool-call evidence records will be retained. These records remain tamper-evident evidence after the workspace data is purged; they are not included in the erased-record total.
Before you continue, use Export configuration for a restorable record of the workspace setup. Review and export the audit evidence your organization must retain. An audit export is a protected action and needs approval from a second authorized person.
Schedule deletion
Open Manage account → Delete workspace, then:
- Check the deletion-impact counts and displayed purge date.
- Resolve any active paid subscription. In DVARA Cloud, Flightdeck refuses deletion while the subscription is active.
- Sign in again if your current sign-in is more than 10 minutes old. This recent-sign-in rule applies to password, OIDC, and SAML sessions.
- Type the workspace name exactly and choose Schedule workspace deletion.
Flightdeck changes the workspace to SUSPENDED immediately. Its API keys stop
serving governed traffic, and workspace members cannot use it. No workspace
data is erased at this point.
The default recovery window is 30 days. Your deployment can use a different
window, so treat the purge date shown in Flightdeck as authoritative. The
request records WORKSPACE_SELF_DELETE_REQUESTED with the workspace, actor,
and purge time.
After the displayed purge date, DVARA erases the workspace-owned records in the impact table. There is no restore action after the purge runs.
Cancel and recover the workspace
Return to Manage account → Delete workspace before the purge date. The page shows who requested deletion, when it was requested, and the scheduled purge date. Choose Cancel deletion and restore this workspace.
DVARA clears the pending-deletion markers and returns the workspace to
ACTIVE. Its data is unchanged because the purge has not run. The cancellation
records WORKSPACE_SELF_DELETE_CANCELED with the workspace and actor.
Cancellation does not require a second approval. If the workspace was suspended for another reason, such as an operator action or an abuse review, DVARA refuses the deletion workflow until that separate suspension is lifted; canceling deletion cannot override it.
Know the operator deletion difference
A platform owner can permanently delete a workspace from the platform-wide
workspace list. That is an immediate operator action and has no recovery
window. The scheduled workflow on this page is the workspace-admin path.
For the wider account workflow, see Manage a workspace account. For platform-level workspace administration, see Manage workspaces and users.