Privacy Policy
Effective [Effective date — TBD]
AI Forge Coach is a mobile web application for personal trainers and their clients. We take user data seriously and collect only what is necessary to operate the service. This document explains what data we collect, how we store it, and with whom we share it.
1. Data we collect
- Account: email, name, role (trainer / client), date of registration.
- Client profile (optional): sex, date of birth, height, fitness goal, fitness level, current weight, and weight history.
- Workouts: plans, exercises, completed sets (weight, reps, time), trainer notes and client feedback, per-exercise video uploads.
- Trainer↔client links: invitations and active subscriptions between accounts.
- Technical data: error logs and basic page performance telemetry.
2. How we use your data
- Creating and executing training programs.
- Computing progress: completion %, total volume in kg·reps, per-muscle-group training frequency.
- Sharing data with your trainer (only the trainer with whom you have an active link).
- Providing relevant context to the AI assistant when generating workouts (data does not leave our server for model training).
- Technical support and troubleshooting.
3. Where data is stored
All data is stored in Supabase (PostgreSQL) with Row-Level Security enabled. Video uploads are kept in private Supabase Storage buckets. The application is hosted on a server in the EU region.
4. Who we share data with
We do not sell your data. Data is shared only with:
- Your trainer — only within an active trainer↔client subscription and only the data permitted by the role model.
- Infrastructure providers (Supabase, Anthropic for the AI assistant) — to the extent required to run the service. Anthropic does not retain request bodies after the request completes.
5. AI and context handling
The AI assistant (Claude by Anthropic) receives a limited context to generate workouts: your goal, level, recent history. Requests to Anthropic use zero data retention — the model does not store your context and does not use it for training.
6. Your rights
- Access: request a copy of all your data.
- Correction: most fields are editable directly in your profile.
- Deletion: request full deletion of your account and associated data (workouts, videos, body metrics). You can also delete the account yourself from Profile → “Delete account”.
Submit requests to [contact-email-TBD@example.com]. We respond within 30 days.
7. Retention
Data is retained while your account is active. After account deletion, data is removed within 30 days, except where retention is required by law.
8. Contact
For privacy questions, contact [contact-email-TBD@example.com].