Your biggest privacy risk usually isn't the apps you open every day, it's the dozens of accounts you forgot you ever made. The free trial from years ago, the store you used once, the forum from college. A lot of them are still holding your email, an old password, sometimes a saved card.
These are the exact prompts I used to find mine and clear them out. It's one calm afternoon of work, and it does more for your safety than another password change. You don't have to delete everything, clearing the risky ones already puts you ahead of almost everyone.
Takes an afternoon. You need: any AI chat, and your inbox. You end with: the ten riskiest doors closed.
Before you start (30 seconds)
- Any of these work: ChatGPT, Claude, or Gemini.
- On inbox access: if your AI is connected to your email, it can scan for you. If it isn't, that's fine, search your own inbox for the terms below, paste in what you find, and it'll do the rest.
- One rule: read what it gives you before you send or delete anything. You stay in control. The AI just does the digging and drafting.
- Never paste a password into the chat. Not to check it, not to see if you reused it. There is no step in this guide that needs one.
Step 1: Find the accounts you forgot
Ask it to comb your sign-up history and turn it into a list:
No inbox access? Search those four terms in your own email, copy the sender names into the chat, and ask it to build the same grouped list.
Step 2: Rank them by risk
Now find out which ones actually matter:
Step 3: Write the deletion requests
Have it do the tedious part for you:
Step 4: Keep it clean (bonus)
So you never have to do the big cleanup again:
The power move: your inbox is only one of three hiding places
Email search finds accounts that emailed you. It completely misses two other piles, and they're often the riskier ones.
Your password manager (or your browser's saved passwords) is a better list than your inbox, because it recorded the sign-up whether or not there was a welcome email. Open its saved-logins list and skim by date.
Your "sign in with" access lists are the ones nobody checks. Anything you signed into with Google, Apple, Facebook or Microsoft never sent you a welcome email at all, and those permissions are still live:
- Google: your account's Security page, "Your connections to third-party apps and services"
- Apple: Settings, your name, Sign in with Apple
- Facebook: Settings, Apps and Websites
Pull all three together and hand it over:
That last group is the one worth an afternoon. A dormant app with live access to your Google account is a bigger exposure than an old shopping login, and it's invisible from your inbox.
What you'll actually find
NO IDEA WHAT THIS IS - 14 accounts
incl. a 2019 meal-kit trial with a saved card
and a forum from a job you left
HIGH RISK - delete first
1. Meal-kit trial - saved payment details
2. Old freelance marketplace - address + ID upload
3. Photo app via Sign in with Apple - still has
access, hasn't been opened since 2021
STILL USE - 22, leave alone
Almost everyone finds a saved card somewhere they'd forgotten. That's the one that makes the afternoon worth it.
When it goes sideways
"It invented a deletion URL." It happens, and a wrong URL wastes your time or lands you somewhere unhelpful. Search the site's own name plus "delete account" and use their real page. Treat any link it gives you as a hint, not an instruction.
"The list is enormous and I've lost heart." Do the top ten and stop. The point is closing the worst doors, not achieving zero. You can do another ten next month.
"A site has no deletion option at all." Send the email it drafted, and if you're in a place with data-protection rules that apply to you, say so plainly in the message. Many companies handle those requests properly even when the button doesn't exist.
"I got a scary email after requesting deletion." Slow down. Deletion requests generate confirmation emails, which is exactly what a phishing message imitates. Don't click links in them — go to the site directly and check your account there.
"I found a password I reused on ten sites." Change it on the live accounts first, starting with email and banking, then delete the dead ones. Order matters: your email account is the master key to everything else.
How to run this
- Do it in one sitting with a coffee. It's calmer than it sounds.
- Start with the "no idea what this is" and highest-risk accounts. That's where the real exposure lives.
- Clearing the top 10 is a win. You don't need to zero out the whole list today.
- Review before you act. Skim each deletion email or page before you send or click, especially anything asking you to confirm.
What to expect
Almost everyone who runs this turns up at least a handful of accounts they'd completely forgotten, often still sitting on an old, reused password. Deleting those closes doors you didn't know were open. That's the whole point: less exposure, in an afternoon, with nothing to remember afterward.
Your cleanup checklist
- Ran the finder prompt and built the grouped list
- Checked the password manager and the "sign in with" lists too
- Ranked everything by risk
- Deleted (or requested deletion for) the top 10
- Changed any password I found reused on a live account
- Saved the monthly reminder note
Do this next
Block out two hours this weekend and start with step 1. If you only get through the "no idea what this is" pile, you've done the valuable part.
Next guide: Hand Off the Mental Load — so the monthly check from step 4 reminds you instead of becoming one more thing you're carrying.