Privacy Policy
Stryde Fitness ("we", "us", "our") takes your privacy seriously. This Privacy Policy explains, in plain English, exactly what information we collect, why we collect it, how we use it to generate your personalized training, where it is stored, how long we keep it, and how you can access or delete it at any time.
This policy is written to accurately describe how the Stryde Fitness application actually behaves. If any statement here does not match the current application, we treat that as a bug and fix it.
1. Information we collect
We only collect information that is genuinely required to personalise your training.
Account information
- Email address
- First name
- A securely hashed password (managed by our authentication provider — we never see or store your password in plain text), or a Google sign-in identifier if you choose to sign in with Google
Profile information
- Primary training goal (e.g. build muscle, lose fat, improve fitness)
- Experience level and preferred training style
- Available equipment and training environment
- Preferred training days and session length
- Age, sex and units preference (metric or imperial)
Body measurements
- Height and weight
- Any body-metric entries you voluntarily log over time
Strength assessment data
- Estimated or tested one-rep-max values for key lifts, if you provide them
- Personal records automatically detected from your logged workouts
Workout preferences
- Exercise likes, dislikes and tolerances
- Exercise swaps you make within a plan
Progress tracking, workout logs and check-ins
- Generated workout plans and plan versions
- Logged workouts: sets, reps, loads, RPE, completion status and dates
- Weekly recovery and adherence check-ins
- Achievements, streaks and progress metrics
Health information you choose to provide
- Injuries, surgeries, movement limitations, joint sensitivities
- Chronic health conditions relevant to safe exercise selection
- Lifestyle inputs such as sleep, stress and general activity level
Providing health information is voluntary. If you provide it, we use it exclusively to make your training safer — for example by avoiding contraindicated exercises, reducing loads or intensity, and suggesting safer variations. You can update or remove this information at any time in Settings.
Minimal technical information
- Basic device / browser information collected by our infrastructure for security, reliability and abuse prevention
2. Why we collect it and how it personalises your training
Every field above feeds directly into how your program is generated and adapted. There is no human reviewing your inputs — recommendations are automatically generated by our programming engine using deterministic logic.
- Goal, experience and style shape the overall program structure, split and intensity.
- Equipment, days and session length determine which exercises are available and how each session is built.
- Body measurements and strength data calibrate starting loads and progression.
- Injuries, surgeries and health conditions filter out unsafe movements and select safer variations.
- Workout logs and check-ins feed adaptive coaching so subsequent weeks progress or deload appropriately.
We only collect what the application actually uses. If a field is not needed to personalise your training, we do not ask for it.
3. Where your data is stored
Stryde Fitness runs on managed cloud infrastructure provided by Supabase, which hosts our database and authentication service.
- Supabase Authentication stores your login credentials. Passwords are hashed by the provider — Stryde Fitness never stores your password directly and never sees it in plain text.
- User profile data (goal, experience, equipment, preferences, body measurements, health inputs) is stored separately in our application database.
- Workout plans, plan versions, logged workouts, progress metrics, check-ins, achievements, personal records are stored in our application database, linked to your account.
All data is transmitted over HTTPS and encrypted at rest by the provider. Access is protected by row-level security policies so that each user can only read and write their own data.
4. Service providers
We rely on a small number of trusted service providers strictly to run the application:
- Supabase — database, authentication and file storage.
- Google Sign-In — only if you choose to sign in with Google.
- Transactional email provider — sign-in confirmations, password resets and other account-related emails.
- Hosting / CDN — serving the web application to your device.
These providers process data on our behalf only to deliver the service. They do not receive your training data for their own purposes.
5. We never sell your data
We do not sell, rent, trade or share your personal information with advertisers or data brokers. We do not run third-party advertising or cross-site tracking.
We may use fully anonymous, aggregated statistics (e.g. "X% of users selected Build Muscle as their goal") to improve the programming engine. Aggregated data of this kind cannot be traced back to you.
6. Data retention
Your data is retained for as long as your account exists so that your program, history and progress remain available to you.
- When you delete your account, your data is removed from the live application immediately (see below).
- Encrypted infrastructure backups maintained by our hosting provider may retain a copy for a short rolling window (typically up to 30 days) before being overwritten. These backups are used only for disaster recovery.
- We may retain minimal records (such as legal acceptances) where required to comply with legal obligations.
7. Your rights and controls
You are in control of your data. From within the application you can:
- View and edit your profile, body measurements and preferences in Settings.
- Update your email address and password.
- Update or remove health-related information at any time.
- Export or receive a copy of your data by contacting us at the address below.
- Permanently delete your account and all associated data (see the next section).
8. Deleting your account
You can permanently delete your account at any time from Settings → Account → Danger zone → Delete account. You will be asked to type DELETE to confirm.
Deleting your account permanently removes:
- Your authentication account (email and hashed password)
- Your profile, preferences and health information
- Your workout plans and plan version history
- Your logged workouts, sets, reps, loads and RPE
- Your progress metrics, body-metric entries and personal records
- Your recovery check-ins and adherence history
- Your achievements, streaks and daily insights history
- Your exercise preferences, tolerances and swap history
Deletion is permanent and cannot be undone. Encrypted infrastructure backups may retain a copy for a short rolling window as described in section 6 before being overwritten. If you would prefer written confirmation of deletion, contact us at the email below.
9. How we protect your data
Data is transmitted over HTTPS, encrypted at rest, and protected by row-level security policies scoped to your account. Access to production systems is restricted to a small number of authorised maintainers, and privileged operations run through audited server functions rather than the browser.
10. Children
Stryde Fitness is not directed at children under 16. If you believe a child has created an account, contact us and we will delete the account.
11. Privacy contact
For privacy questions, data access requests, correction requests, or account deletion assistance, contact our privacy team:
We aim to respond to privacy requests within a reasonable timeframe.
12. Changes to this policy
If we materially change this Privacy Policy we will update the version and effective date at the top of this page and ask you to review and re-acknowledge it on next sign-in.