FitApp Privacy Policy
Effective date: July 12, 2026
FitApp ("the app") is developed by Lee Kotton ("we", "I"). This policy explains what data the app collects, why, and what control you have over it. The short version: your data is used to run the app's features for you — it is never sold, and there are no ads and no advertising or analytics trackers in the app.
Data we collect
| Category | What | Why |
|---|---|---|
| Account | Email address, name, username (handle), and — if you sign in with Apple or Google — the identity token those services provide | Creating and securing your account |
| Profile | Avatar photo, bio, privacy setting (public/private) | Your profile in the app's social features |
| Health & fitness | Workouts, sets, personal records, body weight and measurements, food diary entries (calories and nutrients), fitness goals, age, sex, height | The app's core tracking features |
| Photos & videos | Progress photos, meal photos, and photos/videos you attach to posts or stories | Only when you choose to add them |
| Step count | Daily step count from your device's motion sensor | Showing daily activity; read on-device |
| Purchases | Subscription status and purchase history (no card numbers — payment is processed entirely by Apple/Google) | Unlocking paid features |
Where your data lives
Your data is stored on your device and synced to your account in our database, hosted by Supabase, so you can restore it and use social features. Content you deliberately share — posts, stories, comments, your public profile, and any photos attached to them — is visible to other users according to your privacy settings; note that media files attached to shared content are served from a public storage bucket.
Services we use
- Supabase — database, authentication, and file storage for everything above.
- OpenAI — powers the optional AI Coach and meal-photo scanning. When you use these features, relevant context (such as your stats, goals, recent training, and — for the scanner — the meal photo you submit) is sent to OpenAI to generate the response. AI coach chats are stored only on your device.
- RevenueCat — manages subscriptions, identified by your account ID.
- WorkoutX — provides exercise demonstration images. Requests contain only exercise names, never personal data.
- Open Food Facts — looks up product information when you scan a food barcode. Only the scanned barcode number is sent, never personal data.
- Sentry — crash reporting (stack traces only, no personal profile data), used to fix bugs when enabled.
These providers process data on our behalf to run the app. We do not sell your data or share it with anyone for advertising or marketing.
Data kept only on your device
- AI Coach chat history (deleted when you sign out or delete your account)
- Cached exercise images
- Your session token
Deleting your data
You can permanently delete your account and all associated data (workouts, photos, posts, food logs — everything) at any time inside the app: Settings → Delete Account. Deletion is immediate and irreversible. You can also request deletion by email — see Account deletion.
Children
FitApp is not directed at children under 13, and we do not knowingly collect data from them.
Your rights
Depending on where you live, you may have rights to access, correct, export, or erase your personal data. For any such request, contact us at the address below and we will respond as required by applicable law.
Changes
If this policy changes, the new version will be posted at this address with an updated effective date.
Contact
Lee Kotton — lkotton@icloud.com