I would like to clarify the scope of section 5.1.1 (ix) of the app privacy policy, related to account sign-in.
"If your app supports account creation, you must also offer account deletion within the app."
I understand that this will take effect from January 2022 https://developer.apple.com/news/?id=mdkbobfo
Is there an exception for financial apps that include account creation / registration (e.g. banking apps)?
The objective of the policy change seems to be to offer users a convenient and transparent option of unregistering from a service and deleting any related data. However, deleting a login for a banking app has more implications than just de-registering from the service (e.g. what to do with account balance, regulatory requirements may apply). Therefore direct interaction between the app user and the financial institution is likely to occur irrespective of any in-app options.
Would either of these options be sufficient to comply with the iOS App Privacy Policy?
Option 1 - include within the app a link to, or summary of, the bank's policy on how to close an account (e.g. contact bank directly over telephone, email, or in person).
Option 2 - deactivation of login access via the mobile app (vs full closure of account). If so, does the deactivation have to be performed within the app itself or could it be performed on a similar basis to account closure? (e.g. over telephone/email).