Back to PhysiqueCoach

Privacy Policy

Last updated: April 14, 2026 · Version 1.0

⚠️ Beta Notice — This policy is in effect during the PhysiqueCoach beta period and is subject to change before public launch.

1. Introduction

PhysiqueCoach is committed to protecting your privacy. This Privacy Policy describes the personal information we collect, how we use and share it, and your rights. By using the Service you agree to the practices described in this Policy.

2. Information We Collect

Account and Identity Information

Name, email address, and encrypted password

Body and Health-Adjacent Profile Data

  • Date of birth, biological sex, height, body weight
  • Body measurements (shoulders, waist, biceps, quads, hamstrings), body fat percentage
  • Injuries and physical limitations
  • Medications and supplements (if disclosed)
  • Hormonal status and cycle tracking data (if enabled)
  • TRT status and level (if applicable)

Fitness and Performance Data

Workout logs (exercises, sets, reps, weights), personal records, session RPE and coach observations

Daily Check-In Data

Energy scores, stress scores, sleep scores, wellness notes

Goals and Preferences

Fitness goal, training schedule, equipment access, dietary preferences, activity level, occupation type

Coaching Conversations

All messages sent to and received from the AI coaching engine — used to personalize coaching and stored in our database

Usage and Technical Data (collected automatically)

Features accessed, pages visited, session duration, browser type, operating system, device type, IP address

Error and Performance Data

Crash reports and error logs via Sentry

We do not collect: financial information (handled by Stripe), biometric wearable data, precise location data, or information from individuals under 18.

3. How We Use Your Information

We use your information to:

  • Generate personalized AI coaching responses and exercise programs
  • Track fitness progress and display trends
  • Compute recovery scores and wellness metrics
  • Maintain session history and personal records
  • Authenticate your identity and manage your account
  • Process subscription payments through Stripe
  • Send transactional emails via Resend
  • Monitor Service performance and identify errors
  • Detect and prevent fraud and unauthorized access
  • Comply with legal obligations

We do not sell your personal data.

We do not use your data to serve third-party advertising.

We do not share your data with data brokers.

4. How We Share Your Information

We share data only with these service providers to operate the Service:

ProviderPurposeData Shared
Anthropic (anthropic.com)AI coaching engine — generates all responsesCoaching messages, profile context, goals, metrics, session history
Supabase (supabase.com)Database and authenticationAll account and fitness data (US-based infrastructure)
Stripe (stripe.com)Payment processingName, email, payment method
Vercel (vercel.com)HostingRequest logs, IP addresses
Resend (resend.com)Transactional email deliveryName and email address
Sentry (sentry.io)Error monitoringError logs, browser and device information

Important — Anthropic: Your coaching messages and profile context are processed by Anthropic's API to generate coaching responses. Anthropic does not use API-submitted data to train its models. See anthropic.com/privacy.

We do not share data for marketing or advertising. We may disclose data if required by law or to protect the rights, safety, or property of PhysiqueCoach, our users, or others.

5. Health Data — Special Notice

PhysiqueCoach collects health-adjacent data including body metrics, injury history, medication disclosures, and hormonal status. PhysiqueCoach is not a HIPAA-covered entity. Your fitness and wellness data has fewer legal protections than data held by a licensed healthcare provider. We implement strong technical security controls to protect it — see Section 7.

6. Data Retention

We retain your data while your account is active. Account deletion: personal data deleted within 30 days of a confirmed deletion request, except where retention is required by law.

7. Data Security

We implement the following security measures:

  • HTTPS (TLS encryption) for all data in transit
  • Supabase Row Level Security (RLS) — each user can only access their own data
  • Secure session management and encrypted passwords
  • Error monitoring to detect anomalies

No security system is completely secure. We cannot guarantee absolute security. We will notify you of any breach as required by law.

8. Your Rights

You have the following rights regarding your data:

  • Access: Request a copy of data we hold about you
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your account and data
  • Portability: Request data in machine-readable format

Contact: support@physiquecoach.app — We will respond within 30 days.

California residents: CCPA/CPRA rights section forthcoming before public launch.

EU and UK residents: GDPR rights section forthcoming before public launch.

9. Children's Privacy

The Service is not directed at individuals under 18. We do not knowingly collect personal data from minors. Contact support@physiquecoach.app if you believe a minor has an account.

10. Changes to This Policy

We will notify you of material changes by email or through the Service at least 14 days before changes take effect.

11. Contact

support@physiquecoach.app

physiquecoach.app