Privacy Policy
Last updated: 17 August 2026
The short version
- Your data lives in a database in Mumbai, India.
- We never sell your data, and we run no advertising.
- Voice recordings and food photos are never stored — they are analysed and discarded.
- We do not collect your location, contacts, or any advertising identifier.
- You can delete everything from inside the app, or from this page without installing it.
1. Who we are
Fitzo ("we", "our", "us") is a fitness and nutrition tracking app for gym members. This policy explains what we collect, where it is physically stored, who else processes it, and what you can do about it. It applies to the Fitzo mobile app and the Fitzo API.
For the purposes of the EU/UK GDPR we are the data controller. Under India's Digital Personal Data Protection Act 2023 we are the Data Fiduciary.
2. What we collect
2.1 Account information
- Name and email address, given at sign-up
- A password, stored only as a bcrypt hash — we cannot read it
- If you use Google Sign-In, the Google account identifier associated with you. We never receive your Google password
- Your chosen avatar. This is one of nine illustrations bundled with the app — there is no photo upload in Fitzo
2.2 Health and fitness data
- Height, weight, age, sex, activity level and goal — used to calculate your calorie and macronutrient targets
- Workouts: exercises, sets, reps, load, duration, effort
- Meals: foods, portions, calories and macronutrients
- Body measurements you record over time
- Gym check-ins, streaks and experience points
2.3 Data from Health Connect and Apple Health
Only if you explicitly grant permission, and only four categories: steps, heart rate, sleep, and active calories burned.
Steps and active calories set your daily calorie target from your real activity instead of an assumed average. Heart rate and sleep produce your recovery readiness score. We request nothing beyond these four, and Fitzo is fully usable if you decline. You can revoke access at any time in Health Connect (Android) or the Health app (iOS). We never use health data for advertising or marketing, and never sell it.
2.4 Microphone and camera
Both are optional and used only when you actively start the feature.
- Voice logging — a recording of up to 90 seconds is sent for transcription so you can log a meal or workout by speaking. It is not stored by Fitzo
- Food photos — a photo of a meal is analysed to estimate its macros, then discarded. It is never saved to our servers or database
- Gym QR check-in — the code is read on your device. No image leaves your phone
2.5 Technical data
- Server-side error reports and performance traces when something fails
- Basic usage of app features, to understand what is worth building
- A push notification token, if you enable notifications
3. What we do not collect
Stated plainly, because the absence is as important as the presence:
- No location data. The app requests no location permission of any kind
- No advertising identifiers, and no advertising. There is no ad SDK in the app
- No contacts, messages, call logs or calendar access
- No payment or financial information — there are no in-app purchases
- No third-party marketing or behavioural analytics trackers
- No photo library access, and no uploaded photos
4. Where your data is stored
Your account and all fitness history are stored in a PostgreSQL database hosted by Supabase on Amazon Web Services infrastructure in the ap-south-1 region — Mumbai, India. Backups remain in the same region.
The Fitzo API is hosted by Render. Data is encrypted in transit with TLS on every connection, and encrypted at rest by our database provider.
On your phone, your login token is held in the operating system's secure storage — the iOS Keychain or the Android Keystore.
Some of the processors listed below operate outside India. Where personal data is transferred internationally, it is transferred to processors bound by contractual data-protection obligations.
5. Who else processes your data
We do not sell your personal data, and we never will.
We use the following processors. Each receives only what its function requires:
| Processor | What it receives | Why |
|---|---|---|
| Google Cloud (Gemini AI API) | Transient voice recordings, transient food photos, and relevant workout and nutrition summaries | Voice logging, photo macro estimation, and the AI coach. Protected under enterprise terms with equal data protection as this policy; never used for model training |
| Google Identity | Your Google sign-in token | To verify Google Sign-In |
| Apple | Your Apple sign-in token | To verify Sign in with Apple |
| Supabase | All stored account and fitness data | Database hosting (Mumbai) |
| Render | API traffic | Application hosting |
| Expo | Push token and notification text | Delivering notifications |
| Resend | Your email address | Password resets and gym invitations |
| Sentry | Server error traces | Diagnosing crashes and failures |
| Food and exercise databases (FatSecret, USDA, Open Food Facts, API Ninjas, ExerciseDB, YouTube) | Only a search term or barcode — never your name, email or any identifier | Looking up nutrition facts, exercises and technique videos |
The food and exercise lookups deserve a specific note: when you search for a food, the search term travels alone. Those providers receive no way to connect it to you.
We may also disclose data where we are legally required to, or to protect the rights and safety of our users.
5b. Artificial intelligence, in plain terms
Three Fitzo features are powered by Google Cloud's Gemini AI API: the AI coach, voice logging, and photo macro estimation. To answer usefully, the coach is sent relevant workout metrics, nutrition summaries, and connected wearable stats. For photo macro estimation, meal photos are analyzed in real-time and immediately discarded (never stored). For voice logging, audio clips are sent for transcription and immediately discarded (never stored).
Third-Party Data Protection & Equal Safeguards: All data transmitted to Google Cloud (Google Gemini AI) is encrypted in transit (TLS 1.3) and at rest (AES-256). We confirm that Google Cloud provides equal or greater protection of user data as stated in this Privacy Policy and adheres to strict enterprise confidentiality standards. Under our paid enterprise API terms, customer fitness data is processed solely to provide real-time responses and is NOT used to train third-party AI models. Personal identity information (such as your name, email address, passwords, or payment information) is NEVER transmitted to the AI provider.
Your choice and consent: AI features in Fitzo are strictly opt-in and require your explicit upfront consent before any data is transmitted. If you decline or prefer that your data not be processed by AI, simply keep AI features disabled. Every other part of Fitzo — manual workout logging, nutrition tracking, progress charts, gym check-ins, and the exercise library — operates fully without AI and transmits zero data to Gemini. You can review or revoke your AI data sharing consent at any time in App Settings.
Fitzo does not train any model of its own on your data, and does not supply your data to anyone else for model training or marketing.
6. How long we keep it
| Data | Kept for |
|---|---|
| Account and all fitness history | Until you delete your account |
| Voice recordings | Not retained — analysed, then discarded |
| Food photos | Not retained — analysed, then discarded |
| Cached data | Temporary, expires automatically |
| Server error traces | Up to 90 days |
7. Deleting your data
Deleting your account removes your profile, workouts, meals, body measurements, check-ins and friendships. It is immediate and cannot be undone.
- In the app: Profile → Settings → Delete Account
- Without the app: fitzoapp.in/delete-account
8. Your rights
Depending on where you live, you have some or all of the following rights. Under India's DPDP Act 2023, the EU/UK GDPR and similar laws, you may:
- Access a copy of the data we hold about you
- Correct anything inaccurate
- Delete your account and its data
- Receive an export of your data in a portable format
- Withdraw consent — for example, revoking health data access
- Object to, or restrict, certain processing
- Complain to your data protection authority, or in India to the Data Protection Board
Email support@fitzoapp.in and we will respond within 30 days.
9. Age requirement
Fitzo is intended for people aged 18 and over. We do not knowingly collect data from anyone under 18. Calorie targets and training recommendations are designed for adults, and India's DPDP Act treats anyone under 18 as a child requiring verifiable parental consent.
If you believe a minor has created an account, contact us and we will delete it.
10. Security
Passwords are hashed with bcrypt and never stored in readable form. All traffic uses TLS. Access to production data is restricted, API requests are rate limited, and session tokens are held in hardware-backed device storage.
No system is perfectly secure. If we ever discover a breach affecting your personal data, we will notify affected users and the relevant authorities as required by law.
11. Changes to this policy
We will update this page and the date at the top when this policy changes. For changes that materially affect how we handle your data, we will notify you in the app.
12. Contact
Questions, requests, or complaints:
Fitzo Support
Email: support@fitzoapp.in