Privacy Policy

Last Updated: May 21, 2026 | Effective: May 21, 2026

Introduction

Welcome to PersonalWorkout. We are committed to protecting your privacy and the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our fitness tracking mobile application and related services.

Please read this Privacy Policy carefully. By using PersonalWorkout, you agree to the collection, use, and sharing of your information as described in this policy.

1. Information We Collect

Account Information

When you create an account, we collect:

Health and Fitness Data

Collected via Apple HealthKit:

⚠️ IMPORTANT: Health data is considered "sensitive personal information" under many laws. Ensure HealthKit authorization flows comply with Apple's guidelines and local regulations.

Subscription and Billing Information

Processed securely through RevenueCat:

Note: Payment information is processed by Apple through App Store transactions. We do not collect or store your credit card details.

Device and Usage Information

Analytics Data

Through Firebase Analytics (Google):

Firebase Analytics may collect information about your device, app usage, and general location (region-level). Firebase does not collect personally identifiable information without your consent.

2. How We Use Your Information

Purpose Data Used Legal Basis (GDPR)
Provide and maintain the Service Account info, workout data Contractual necessity
Track and display your fitness progress Health data, workout history Contractual necessity
Manage your subscription Subscription status, device ID Contractual necessity
Sync with Apple Health Health data Contractual necessity
Provide customer support Account info, usage data Legitimate interests
Improve app performance Crash reports, analytics Legitimate interests
Develop new features Aggregated usage data Legitimate interests
Never Sell Your Data: We do not sell, rent, or trade your personal information to third parties for their marketing purposes.

3. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA) or United Kingdom, we process your data on the following legal bases:

  1. Contractual Necessity — Processing necessary to provide our Service under our terms
  2. Legitimate Interests — Processing for analytics, security, and service improvement
  3. Consent — Processing of HealthKit data (you can withdraw consent at any time)
⚠️ LEGAL REVIEW REQUIRED: GDPR compliance requires specific data processing records and potentially a Data Protection Impact Assessment (DPIA) for health data processing.

4. Data Sharing and Third Parties

We Share Your Data With:

1. RevenueCat (Subscription Management)

2. Firebase Analytics (Google LLC)

3. Apple Inc. (HealthKit Integration)

We Do NOT Share Your Data With:

5. Data Retention and Deletion

Retention Periods

Data Type Retention Period Reason
Account information While account is active Service functionality
Workout history Free tier: 30 days | Pro tier: Indefinite Feature tier limitations
Health data Stored locally on device HealthKit guidelines
Analytics data 24 months (aggregated) Service improvement
Subscription records 3 years after subscription ends Legal and tax requirements

Your Right to Deletion

You may request deletion of your personal data at any time. Upon receipt:

  1. Free tier workout history is immediately deleted from our servers
  2. Account information is removed within 30 days
  3. Health data on your device can be deleted through HealthKit settings

Note: We may retain certain information as required by law or for legitimate business purposes (e.g., fraud prevention).

6. Your Privacy Rights

For All Users

Right Description How to Exercise
Access Request a copy of your data Email privacy@pworkoutapp.com
Correction Update inaccurate information In-app settings or email request
Deletion Request deletion of your data Delete account in settings or email
Objections Object to certain processing Email privacy@pworkoutapp.com
Restriction Limit how we use your data Email privacy@pworkoutapp.com
Portability Receive your data in a structured format Email privacy@pworkoutapp.com

Additional Rights for California Residents (CCPA)

If you are a California resident, you have the right to:

Additional Rights for EU/UK Residents (GDPR)

If you are an EEA or UK resident, you have the right to:

7. Health Data and HealthKit

HealthKit Integration

PersonalWorkout uses Apple's HealthKit framework to:

  1. Read health data from the Health app (if authorized)
  2. Write workout data to the Health app
  3. Access heart rate, active energy, and other metrics during workouts

Your Control

You decide what health data PersonalWorkout can access:

⚠️ Important HealthKit Disclosures

  • Health data is never transmitted to our servers without your explicit consent
  • Health data is never used for advertising purposes
  • Health data is never sold to third parties
  • You control what data is shared through HealthKit permissions

8. Data Security

We implement industry-standard security measures to protect your information:

Security Measures

Data Breach Notification

In the event of a data breach affecting your personal information, we will:

  1. Notify you within 72 hours (GDPR) or as otherwise required by law
  2. Provide details of what happened and what data was affected
  3. Explain steps we're taking to address the situation

9. Children's Privacy

PersonalWorkout is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

COPPA Compliance: We do not target our services to children and do not collect information from users under 13.

10. Governing Law and Jurisdiction

This Privacy Policy and any disputes arising from it or your use of PersonalWorkout are governed by:

For International Users:

⚠️ LEGAL REVIEW REQUIRED: Jurisdiction clauses should be reviewed by legal counsel to ensure enforceability and compliance with local laws.

11. Contact Us

Privacy Contact Information

Email: privacy@pworkoutapp.com

Developer: Danilo Silveira

Address: Canada

Data Protection Officer: Not designated (under PIPEDA threshold)

For EU/UK Residents:

12. Additional Disclosures

Subscription Data

Subscription and billing data is processed through RevenueCat. See RevenueCat's Privacy Policy for details on how they handle subscription data.

Apple App Store

This app is distributed through the Apple App Store. Apple's privacy policy and terms also apply to your use of this app: Apple Privacy Policy

⚠️ IMPORTANT

This Privacy Policy is a template and does not constitute legal advice. Health and fitness apps handle sensitive personal information and are subject to complex regulations. Consult with qualified legal counsel before publishing this policy.