← Purgewell
DocumentationPrivacyEULASupport

Purgewell for Webflow: documentation

Purgewell shows which of your Webflow forms collect personal data, deletes old submissions on a schedule, and handles the requests people send for a copy or deletion of their data. It's a tool, not legal advice: which rules apply to you and how you answer a request are your decisions.

Install

  1. Install Purgewell from the Webflow Apps marketplace and press Approve for your site. (Agencies: install it on each client site, or buy the workspace plan for up to 10 sites in one workspace.)
  2. Open the site in the Designer and open Purgewell from the Apps panel.

Nothing is added to your published site.

Forms: what each form collects

The Forms tab lists every form on the site, plus forms you've removed whose submissions Webflow still stores. Each field gets a label: email, phone, name, postal address, date of birth, government ID number, payment details, password, free text, file upload, other personal data, or not personal.

  • Labels come from Webflow's field type (Email, Phone, Password), then the field's name and placeholder, then a sample of recent submissions (upload links make a field a file upload). Purgewell reads that sample and keeps none of it.
  • Change any label with the dropdown; yours is kept. "Auto" puts Purgewell's label back.
  • A warning shows when recent submissions to a form contain card or US social security numbers in a field that isn't meant for them.
  • "Kept forever" means the form has no retention rule.

Retention: deleting old submissions

  1. In the Retention tab, pick how long to keep each form's submissions: 30, 90 or 180 days, 1 or 2 years, or a custom number of days (1 to 3,650).
  2. Press Dry run. Purgewell reads every submission on the site and shows, per form, how many are past the limit and from when to when. Nothing is deleted.
  3. Press Purge now to delete them. It's only available after a dry run of the same rules in the last 24 hours.
  4. To purge every day, pick an hour (UTC) and press Turn on with these rules. If you change a rule later, the schedule pauses until you run a dry run and turn it on again.

Notes:

  • Legal hold on a form skips it in every purge until you lift it.
  • Deletions are permanent. Export what you need from Webflow's Forms tab first.
  • Webflow deletes one submission per request, so Purgewell paces itself: up to 5,000 deletions per run, the rest on the next day's run. Up to 100,000 submissions are read per pass.
  • Every rule change, dry run and purge is in the audit log (Records tab).

Requests: access and erasure

Webflow refers your visitors' privacy requests to you. A request in Purgewell goes through four steps.

Receiving it.

  • Request page: in the Requests tab, press Turn on and put the link in your privacy policy or footer. People choose "A copy of my data" or "Delete my data", give the email (and optionally phone) they used on your site, and where they live. Replace link retires the old link.
  • Log a request for one that arrived by email, phone or letter. Give the received date if it wasn't today.
  • Due dates: GDPR or UK GDPR one month (Purgewell counts the earlier of 30 days and one calendar month), CCPA 45 days, others 30 days. Extend deadline once, with the reason you'll tell the requester (GDPR: two more months; CCPA: 45 more days).

1. Confirm it's them. Before you send or delete anyone's data, check the request came from them.

  • Prepare a confirmation email gives you a message with a one-time link (valid 7 days) to send from your own mailbox. When they press Confirm on that page, the request updates. (Once Purgewell sends email itself, requests from the request page get this email automatically.)
  • Or Mark confirmed and say how you checked (for the record).

2. Search. Purgewell reads every form submission for the person's email addresses and phone numbers, and if you tick them, your CMS items and store orders (read only). Results show exact matches (a field equals their email or phone) and mentions (it appears inside a longer text, so the submission may belong to someone else). Names are never searched on their own.

3. Send or delete.

  • Access: download what was found as PDF, CSV or JSON and send it to them securely.
  • Erasure: tick the submissions to delete (exact matches start ticked, mentions don't), type DELETE and press Delete. Failures stay listed so you can try again. Store orders can't be deleted through Webflow's API, and Purgewell doesn't edit CMS items: handle those in the Designer.

4. Close. Pick the outcome (completed, no data found, refused, withdrawn) and close. Purgewell writes the certificate and deletes the person's contact details and everything the search found. Download the certificate (PDF or JSON) and keep it.

The erasure certificate lists the submissions deleted, any that couldn't be, what was found but can't be deleted through Webflow's API (orders, CMS items) and places outside Webflow that may hold copies (notification emails, integrations, backups). Contact details on it are masked and hashed with SHA-256: to check an email address against it, hash the lowercased address.

Records

  • Record of processing: add your organization, and for each form its purpose, lawful basis and who receives the data. Purgewell fills in the personal data, counts and retention. Download as PDF or CSV.
  • Audit log: every action with who did it, kept 2 years. Download as CSV.

Plans

  • $39 a month or $390 a year per site; $149 a month or $1,490 a year for up to 10 sites in one workspace.
  • 14-day free trial per site, starting at your first purge or request. Reading the inventory and dry runs don't start it.
  • When the trial or plan ends, purges, searches and erasures pause; nothing is deleted; reading stays available for 30 days.
  • Plan tab > Choose opens Stripe Checkout in a new tab. Manage billing opens Stripe's billing portal. EU and UK buyers can cancel within 14 days of first purchase for a full refund.

Privacy and removal

  • Purgewell keeps no copy of your submissions, only an open request's encrypted matches, deleted when you close it or 30 days after the search. Details: https://greatwork.company/apps/purgewell-for-webflow/privacy
  • Remove Purgewell (Settings) deletes everything it stored for the site and revokes its access. Download certificates you want to keep first.

Troubleshooting

  • "Run a dry run of these rules first": a purge needs a dry run of the exact same rules within 24 hours.
  • Schedule paused: a rule changed since you turned it on. Dry run, then Turn on again.
  • "Store orders couldn't be read": the site doesn't have Webflow Ecommerce.
  • Missing permission: remove Purgewell in Settings and connect the site again.

Questions: hello@greatwork.company. A person replies within one business day.