When a file is deleted, the database rows are removed and the logs report success, but the underlying objects stay in Cloud Storage indefinitely.
Attachments cleaned up and unreferenced blobs queued for reap, Starting async PDF cleanup, File deleted successfully.attachments/ prefix in the uploads bucket.uploads/ prefix — they do not appear to be removed by the delete path at all.This is a retention and data-protection gap, not just wasted storage. A customer who deletes their content — often the whole point of a redaction workflow — still has the original documents and attachments held on our infrastructure, including personal data belonging to third parties. Deletion must actually delete.
Verify the reap queue is receiving rows and is actually being drained, confirm the delete path removes the source upload as well as attachments, and backfill a cleanup for objects already orphaned by past deletions.
Please authenticate to join the conversation.
In Review
Bugs
About 23 hours ago

Harry Elliott
Get notified by email when there are changes.
In Review
Bugs
About 23 hours ago

Harry Elliott
Get notified by email when there are changes.