This policy explains what FitPlus AI collects, where it lives, who we share it with, and the controls you have. We keep it short and in plain English.
Account info: name, email, hashed password, and (for trainers) a certification ID you provide.
Profile data you enter yourself: goal, age, injuries, body metrics, workout ratings, wellness check-ins, before/after photos.
Device-generated data while you use the app: workouts completed and AI chats you send.
Health and activity data, only from sources you connect yourself: readings from a Bluetooth heart-rate device you pair, and — where you grant permission — steps, heart rate, sleep, workouts and energy from Apple Health. We read only the types the app asks permission for, and you can revoke access at any time in iPhone Settings → Privacy & Security → Health.
Payment details are never stored by FitPlus and never reach our servers — a purchase is handled entirely by the store or payment provider that processes it.
Your data is stored on your device and synced to your account in our cloud database (Google Firebase — Authentication, Firestore and Storage) so that your profile, program, workout history and progress photos follow you across devices and survive a reinstall.
Firebase stores this data on our behalf under your account; see firebase.google.com/support/privacy. Signing out leaves your synced copy intact; deleting your account removes it (see "Your rights").
Anthropic (Claude AI): powers the AI Coach, programme generation, weekly reviews and nutrition plans. Depending on the feature, we send your chat message, fitness profile (goal, experience level, injuries, equipment), body metrics (weight, body-fat %, Bio Age), workout history and performance summaries, readiness/sleep summaries, dietary preferences, activity from connected health sources (steps, heart rate, sleep, workouts from Apple Health / Health Connect / wearables), cycle phase if you track it, and meal photos you submit for food analysis — so the AI can personalise its answer. We only send this after you allow it on the in-app AI consent sheet. Anthropic processes this on our behalf to generate the response and does not use it to train its models. See anthropic.com/privacy.
Google Firebase: account authentication and encrypted cloud sync of the data described above. See firebase.google.com/support/privacy.
RevenueCat (iOS app only): manages App Store in-app purchases; receives your account email and purchase receipts to link your subscription to your account. See revenuecat.com/privacy.
EmailJS: when a trainer invites a client, or when you send an abuse report or unlink request, the relevant name, email and message are forwarded so the email can be delivered.
Stripe: card payment and subscription processing for purchases made outside this app, handled entirely on Stripe's secure pages. We never see your card details. See stripe.com/privacy.
Polar Flow (only if you connect it): we exchange an access token with Polar to read the training sessions, heart-rate and training-load data you have recorded. Disconnect at any time from Wearables. See polar.com/en/legal/privacy-policy.
Google Calendar (only if you connect it): when you connect it we create calendar events for your scheduled sessions in your own calendar. We read nothing else. Disconnect at any time from Wearables. See policies.google.com/privacy.
Open Food Facts: barcode food look-ups send the barcode number only.
Unsplash: hero images are loaded from Unsplash's CDN — standard IP-address logging applies.
We do NOT use analytics SDKs (Sentry, PostHog, Mixpanel, Google Analytics). No behavioural tracking.
Right to access: Account → Data & Privacy → Export My Data. You get a JSON file with a copy of the data the app stores on this device.
Right to delete: Account → Data & Privacy → Delete My Account. This deletes your sign-in account and your synced data from our servers, and wipes your profile, program, photos, chats and wellness log from this device.
Right to object: disconnect Bluetooth, disable notifications, or stop using the AI Coach at any time — each is opt-in.
FitPlus is not intended for anyone under 16. Please don't create an account if you're younger than that.
We'll update the "last updated" date at the top of this page and show a one-time banner when material changes happen.
Questions? Use Contact Developer in the top bar or email contact@fitplusai.com.
| Service | What it's used for | Data shared |
|---|---|---|
| Anthropic (Claude) | AI Coach, programme generation, weekly review, nutrition plans. | Chat messages, fitness profile & goals, body metrics (weight / body-fat / Bio Age), workout history & performance summaries, readiness & dietary preferences, connected health-source activity (steps / heart rate / sleep / workouts, cycle phase if tracked), meal photos you submit. Sent only after you allow it in-app. Processed on our behalf; not used for model training. |
| Google Firebase | Sign-in and cloud sync of your account data. | Account credentials, profile, program, workout history, readiness, subscription status, progress photos. |
| RevenueCat (iOS) | App Store in-app purchase management. | Account email, App Store purchase receipts. |
| EmailJS | Trainer → client invites, abuse reports, unlink requests. | Name, email, the message body. |
| Stripe | Card payments + subscription billing for purchases made outside this app. | Handled entirely on Stripe — we never see your card. |
| Polar Flow | Reads the workouts you recorded on a Polar device — only if you connect it. | An access token, plus the training sessions, heart-rate and training-load data Polar holds for you. |
| Google Calendar | Writes your scheduled sessions into your own calendar — only if you connect it. | The session title, date and time. We read nothing else from your calendar. |
| Open Food Facts | Barcode food look-ups. | The barcode number you scan. |
| Unsplash | Hero / background photos. | Your IP address (standard CDN log). |