Privacy Policy

Workout Tracker  ·  Effective Date: April 19, 2026  ·  Last Updated: April 19, 2026

Plain-language summary: We collect only what the app needs to work. We do not sell your data, show ads, or share your information with marketers. Your workout data stays on your device and syncs securely to Firebase (Google). You can delete everything at any time.

1. Information We Collect

1.1 Account Information

When you create an account we collect:

We do not collect your legal name, phone number, or payment information.

1.2 Workout Data

When you log workouts we collect:

1.3 Body Statistics (Optional)

You may optionally enter your body weight and height. These fields are entirely optional. If not provided, no body-stat data is collected.

1.4 Social Interactions

If you use the social feed, we collect workout posts you share, likes and comments you make, and the users you follow and who follow you. Trainer–athlete relationships are also stored if you use the trainer role.

1.5 Technical and Usage Data

We do not operate third-party analytics pipelines. Firebase (our infrastructure provider) may collect limited technical information as described in their own privacy policy (see Section 3.2). This can include device type, operating system version, and crash reports.

We also collect anonymised, aggregated workout activity data (exercise names, muscle groups, sets, and repetitions) to improve workout recommendations. This analysis is performed on data that has been stripped of all identifying information — it cannot be traced back to you individually. You can opt out of this at any time from the app's Settings screen.

1.6 Location Data

We do not collect location data. A location feature has not launched. If that changes, you will be asked for explicit permission and this policy will be updated before any location data is ever collected.

2. How We Use Your Information

PurposeData Used
Authenticating your accountEmail address
Displaying your profileDisplay name, body stats (if provided)
Generating personalised workoutsGoal, equipment, training age, injuries, days per week
Logging and tracking progressExercises, sets, reps, weights, dates
Deload week detection & split cyclingWorkout dates, cycle week counter
Workout history displayWorkout data
Social feedPosts, likes, comments, follow relationships
Product improvement and personalised recommendationsAnonymised, aggregated workout activity (exercise names, muscle groups, sets, reps — no body stats, no personal identifiers)
Trainer–athlete collaborationRole, client list, shared workout history
Syncing across your devicesAll data listed above

We do not: sell your personal information  ·  show advertisements  ·  share your data with advertisers  ·  use your data for third-party marketing  ·  use your body statistics (height, weight) in any aggregate or analytics pipeline.

3. Where Your Data Is Stored

3.1 On Your Device

All workout data is stored locally in an SQLite database (via expo-sqlite) on your device. The app works fully offline. Local data is protected by your device's OS-level security (iOS sandbox + Secure Enclave encryption; Android app sandboxing).

3.2 Firebase Cloud (Google)

When you are signed in, your data is synced to Google Firebase (Firestore + Firebase Authentication). Firebase is operated by Google LLC under Google's privacy policy:

Firebase servers are located primarily in the United States. If you are outside the US, your data is transferred under Google's data-transfer safeguards (including Standard Contractual Clauses where applicable).

3.3 Exercise Data Source

Exercise names and metadata are sourced from the open-source free-exercise-db project. No personal data is sent to this service. This is a read-only, anonymous data source.

4. Data Sharing

We do not sell, rent, or share your personal data with third parties, except:

5. Your Rights and Choices

5.1 Access and Correction

You can view and edit your display name, body stats, training goal, equipment, injuries, and split preferences directly from the Profile and Settings screens.

5.2 Analytics Opt-Out

You can opt out of anonymised analytics at any time from the app's Settings screen under "Privacy". Opting out prevents your workout activity from being included in aggregate product improvement analysis. Your core workout tracking and social features are not affected by this choice.

5.3 Account and Data Deletion

You can delete your account at any time from the Profile screen. This permanently deletes:

Deletion is permanent and cannot be undone. Residual copies in Firebase automated backups are purged within 30 days.

If you cannot delete your account in-app, email rep.app.dev@gmail.com and we will complete deletion within 30 days.

5.4 California Residents (CCPA)

California residents may request to know what personal information we collect, request deletion, and opt out of the sale of personal information. We do not sell personal information. Contact rep.app.dev@gmail.com to exercise your rights.

5.5 European Residents (GDPR)

If you are in the EEA, UK, or Switzerland, you have rights under the GDPR including: access, rectification, erasure, restriction, objection, and data portability. Our lawful basis for processing is contract performance and legitimate interests. Contact rep.app.dev@gmail.com to exercise these rights.

6. Data Retention

We retain your data for as long as your account is active. When you delete your account, all associated data is deleted as described in Section 5.3. We do not retain data after deletion, except as may remain in automated backups (cleared within 30 days) or as required by law.

7. Data Security

No method of transmission over the internet is 100% secure. We take commercially reasonable steps to protect your data but cannot guarantee absolute security.

8. Children's Privacy

Workout Tracker is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe your child has provided us with personal data, contact us at rep.app.dev@gmail.com and we will delete that information promptly in compliance with COPPA.

Users aged 13–17 should review this policy with a parent or guardian before creating an account.

9. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes we will update the "Last Updated" date above and display an in-app notice (or notify you by email) before the changes take effect. Continued use of the app after an update constitutes acceptance of the revised policy. If you disagree, you may delete your account before the changes take effect.

10. Contact Us

Questions, concerns, or data requests? We will respond within 30 days.


Email: rep.app.dev@gmail.com