Delete user
What happens when an account is deleted?
When a user's account is deleted, that person is no longer known as a registered user in OpenOlat and can no longer be found.
When an account is deleted, it is not physically removed from the database but anonymised: the login name is replaced by an anonymous identifier and the profile data is cleared. Objects that are technically linked to the account (e.g. posts, certificates, booking orders) therefore remain, but only refer to the anonymised account, which can no longer be resolved. The table below therefore distinguishes between deleted, anonymised and retained/orphaned.
Work results created by that person are subject to their own rules when the account is deleted. See below: What is deleted?
Who may delete user accounts?
To delete an account, access to user management is required. The following roles have this access:
- User manager
- Administrator
- System administrator (no direct access to user management, but can trigger deletions via the account lifecycle)
Option 1
Step 1:
In the user management, use the account search to find the users whose accounts are to be deleted.
Step 2:
In the search results, mark the users to be deleted using the checkbox at the beginning of the row. As soon as at least 1 person is marked, the "Delete account" button appears above the list.

Step 3:
After clicking this button, a confirmation dialog appears which you must confirm.

Option 2: Search for inactive / deactivated accounts
Step 1:
Users can also be selected and their OpenOlat accounts deleted via the "Delete accounts" link.

Step 2:
Candidates for deletion are pre-sorted into 3 tabs, corresponding to the phases of the user account lifecycle:
Tab "Accounts without activity": Users who have not been active for a configured period of time. The inactivity period is set by the administration.
Tab "Deactivated accounts": Users whose account has already been deactivated automatically or manually, as well as accounts with upcoming deactivation.
Tab "Ready to delete": Users whose account has exceeded the configured deactivation period and is ready for permanent deletion.
Configuration of the user account lifecycle
The lifecycle runs in three phases: Account expiry, Deactivation and Deletion. The applicable deadlines and notifications are configured under Administration > Life Cycles > Account.
Details on the user account lifecycle

Step 3:
Mark the users to be deleted using the checkbox at the beginning of the row. As soon as at least 1 person is marked, the "Delete account" button appears above the list.

Step 4:
After clicking this button, a confirmation dialog appears which you must confirm.
Option 3: Automatic deletion
Users can also be deleted fully automatically by an activated user lifecycle.
Details on the user lifecycle >
How do I manage lifecycles of groups, courses or user accounts? >
What is deleted?
When a user is deleted:
- some information must be irreversibly deleted (e.g. phone number)
- some information can/should be retained without a name (e.g. a forum post without which a discussion thread would lose its meaning)
- some information must be retained (e.g. billing address → retention obligation)
It must be taken into account that information is technically linked to different objects:
= Information is directly linked to the person
= Information is stored together with a course/group/etc.
= Information is stored in the OpenOlat system
| Information | What happens to it? |
|---|---|
| User management > Profile | Deleted: Login name, first name, last name, email, email signature, date of birth, gender, private phone, mobile phone, business phone, Skype ID, XING profile name, ICQ, homepage, street, address supplement, PO box, postal code, region/canton, city, country, institution, institution number (matriculation number), institution email, organisational unit, study group, field of study, personal text "About me", personal profile picture. Exceptions: For persons with administrative permissions, first and last name are retained so that actions can continue to be traced. |
| User management > Business card | All details on the business card are taken from the profile, so after the profile is deleted they are no longer available for the business card either. The user's business card is no longer displayed in OpenOlat (e.g. in forums or comments). |
| User management > System settings | All system settings are deleted: general system settings (e.g. language), special system settings (e.g. the start page) and personal tools. |
| User management > Account | Account type, account creation date, last login and account expiry are deleted. The account is set to the status "deleted". |
| Roles | The roles and permissions assigned in user management are deleted. |
| User management > Password | The password of deleted users is irreversibly deleted. |
| User management > Authentications | All authentication options are deleted. |
| User management > Properties | Properties are completely deleted. |
| User management > GUI settings | GUI settings are completely deleted. |
| Booking orders | Booking orders are retained, including those of the type "Invoice". The name is not stored separately in the booking order but comes from the profile; after deletion it is therefore anonymised. |
| Billing address | To be able to trace payments (e.g. for tax authorities), billing addresses are retained. |
| Reasonable adjustments | Recorded reasonable adjustments are not deleted; they remain linked to the anonymised account. |
| Subscriptions | All subscriptions are deleted. |
| Relationships | Relationships to other users are not dissolved. They remain and refer to the anonymised account. |
| Organisational membership | Membership in organisations is deleted. |
| Quota | The personal storage space (quota) and its associated settings are deleted. |
| Lectures | Participation in lectures/absences is deleted. |
| Competences | Competences are deleted. |
| User management > Course Planner roles | The Course Planner / Curriculum roles are deleted together with the account, as they are memberships. |
| Personal calendar | The personal calendar is deleted. |
| Chat history | Chats (messages, settings) are anonymised. |
| Personal folder | The personal folder is deleted. |
| Portfolio | Binders, sections and entries created in an ePortfolio are deleted. If binders were shared with other users, they are no longer accessible there either. |
| Personal to-dos | The assignment to the deleted account is removed; the to-do entry itself remains but is then no longer assigned to anyone. (to-dos in projects: see below) |
| Mailbox | Emails listed in the mailbox of the personal menu are deleted. (The internal email inbox is completely deleted.) |
| Recipient of a reminder email | If the deleted user was a potential recipient of a reminder email, the email will no longer be sent to the deleted person. (The recipient list is created at the time the rules are checked, so a deleted person no longer appears on the mailing list.) |
| Group membership | Group memberships are deleted. (The groups themselves are not deleted, even if they were created by the deleted user and they were the only member. Only the deleted user is removed as a group member. If the deleted user was the only group coach, an administrator is entered as a substitute group coach. As a rule, groups without members will then be deleted at a later point in time by the Group Life Cycle process.) |
| Project membership | Project membership is deleted and the person is no longer found in the list of project members. (To-dos created by the deleted user in a project are retained, however.) |
| To-dos in projects | In projects, the to-dos of a deleted user are retained but are no longer assigned to anyone. Completed to-dos are also retained (without specifying the user who was supposed to complete the to-do). The progress of projects remains visible. Uncompleted to-dos must be reassigned. |
| Course membership | Course memberships are deleted, even if the role in that course was "Owner" or "Coach". If the deleted user was the creator and sole owner, an administrator is entered as a substitute owner. |
| Data in the course element Task | Documents created and uploaded within a task by the deleted person are deleted (e.g. draw.io, Word, Excel, ppt). |
| Peer review data in the course element Task | The files submitted or uploaded by the person are deleted. The peer review records (assignments, assessments) are retained and refer to the anonymised account. |
| Data in the course element Participant folder | The person's files in the Participant folder course element are deleted. |
| Data in the course element Forum | Personal forum posts and comments are anonymised after the user is deleted and displayed as "unknown user". |
| Data in the course element BBB | Participants in BBB meetings are deleted. |
| Data in the course element Adobe Connect | All data stored by OpenOlat in the background is deleted. |
| Data in the course element Vitero | All data stored by OpenOlat in the background is deleted. |
| Office for the web | All data stored by OpenOlat in the background is deleted. |
| Test results | All test results (test sessions including answers and results) are deleted. |
| Evidence of achievements | All evidence of achievements of the person is deleted. |
| Certificates | Certificates are not deleted when an account is deleted, regardless of whether they carry a QR code or a verification URL. They are retained and refer to the anonymised account, so that their authenticity can still be confirmed (host-based / signed verification). It is nevertheless advisable to inform users whose accounts are to be deleted in advance so that they can download their earned certificates from the personal menu before their account is deleted. |
| Externally acquired certificates | OpenOlat users can also upload externally acquired certificates to OpenOlat to complete their profile. These certificates uploaded by the person themselves are likewise not deleted when the account is deleted and are retained. |
| User management > Badges | Badges are retained so that authenticity can be confirmed (host-based verification, signed verification). It is nevertheless advisable to inform users whose accounts are to be deleted in advance so that they can download their earned badges from the personal menu. If global badges were awarded, the recipient's name is replaced by "unknown user" in the list of awarded global badges (accessible by administrators under Administration > e-Assessment > OpenBadges > tab "Awarded global badges"). It remains visible when and by whom a global badge was once awarded. Even if the badge is revoked by clicking "Revoke", it remains as a list entry with the status "Revoked" in the list of awarded global badges. |
| Owner role in learning resources and courses | Learning resources and courses are not deleted when their owner is deleted, regardless of whether the learning resource was published, shared with other authors, or not referenced/used anywhere. If the deleted user was the sole owner, an administrator is entered as a substitute owner. This also applies to test learning resources. |
| Questions in the question bank | Questions from the question bank are only deleted if the person is their sole author and the setting "Delete questions when author deleted" is enabled. Questions with additional authors, as well as all questions when the setting is disabled, are retained. |
| Elements created in the Media Center | If a media item in the Media Center was used in a course, it is not deleted. If it was not used anywhere, it is deleted. (Even if it was shared but then not used.) |
| External graders | If accounts of external graders are deleted, they are no longer listed by name. The associated grading assignment records are removed; the data relevant for remuneration (grading time, close date) is retained in the "Archive" worksheet of the Excel report. |
| Grading assignments | If users who had grading assignments as external graders are deleted, the following rules apply: 1) Already completed grading assignments appear accordingly assigned in the course owner's assessment tool. 2) Not yet completed grading assignments appear on the "Open assessments" list in the course owner's assessment tool. 3) Course owners can check in the change log (link at the bottom of the screen) who performed a correction after selecting the relevant test course element and a participant. The names of users who have since been deleted are still visible there. The grading assignment records themselves are removed on deletion; the data relevant for remuneration (grading time, close date) is retained in the "Archive" worksheet of the Excel report (see Test settings, Correction workflow). |
| Statistics | Deleted users are no longer included in the statistics of visited courses. |
| Survey results from quality management | Forms completed as part of quality management are stored anonymously and therefore do not need to be deleted when a user account is deleted. |
| Log tables | Log entries are not changed on deletion. They contain no name, only the internal user ID; whether logging is personalised or anonymous depends on the server setting for anonymous logging. |
When can a user not be deleted?
Accounts with the status "Active and not deletable" cannot be deleted, neither manually nor automatically. They are not even offered for deletion in the account search. This status is typically assigned to system accounts such as the administrator account.
For automatic deletion via the user account lifecycle, an additional safeguard against mass deletion applies: if the proportion of accounts to be deleted at once would exceed a configured percentage, the automatic deletion run is aborted completely.