Privacy Policy

Last updated: July 30, 2026 · LiftWeight 1.0

Our approach

LiftWeight is built privacy-first. We collect only what the app needs to give you a training plan, log your workouts, and show your progress. We do not sell your data, and nothing about your training is shared with third parties for advertising.

What we store

Your account details (email and display name), your training plans and logged workouts, the body metrics you record, any progress photos you add (stored locally on your device — see below), your subscription status, and your app settings.

Your app settings include the training profile the plan builder asks for — your goal, experience level, any movement limitations you tick, and your bodyweight if you enter one. These are saved so the builder can fill them in for you next time instead of asking again every time you make a plan. They stay until you change them, they are included in your data export, and they are deleted with your account.

Progress photos

Progress photos are stored locally on your device only — the photo itself is never uploaded to our servers. We store only a small metadata record (a local file reference, category, and capture date) so the app can list and organize your photos; this record is encrypted at rest like the rest of your account data.

Health data (Apple Health / Health Connect)

If you turn on Health sync in Settings, LiftWeight reads workout and activity data from Apple Health (iOS) or Health Connect (Android) to show it alongside your logged training, and can write your completed LiftWeight workouts back to Apple Health / Health Connect so your other fitness apps see them too. This sync is off by default, on-device, and only runs while you actively use the app — nothing is synced in the background without your action. Health data is never used for advertising, never sold, and never shared with any third party other than Apple's or Google's own health platform on your device. You can turn sync off at any time in Settings, which stops all future reads and writes; it does not retroactively delete data already written to Apple Health / Health Connect, which you can remove yourself from within those apps.

Automated decision-making (your training plan)

Your training plan, progression suggestions, and stagnation/revision flags are generated by Coach, our own deterministic rules engine — not a machine-learning model trained on user data, and not a general AI making judgment calls. It reads your stated goal, experience level, equipment, logged workout sets, and, optionally, your bodyweight; it never reads your name, photos, or your broader body-measurement trends. Every suggestion it produces is proposed to you for review — it never changes your saved plan by itself.

Coach also calls two external AI models in narrowly scoped ways. Both are advisory only — nothing they return gates a feature or changes what Coach actually prescribes. When you build or revise a plan, "Coach check" sends your stated goal, experience level, days-per-week, and the movement-limitations you selected — including any free-text detail you add under "Other," which may include medical or injury information you choose to share — to Anthropic's Claude Sonnet 5 API to generate or sanity-check the plan. After you complete a workout, "Coach's note" sends that session's stats (sets completed, total volume, duration) and any new personal best you set (the exercise, weight, and reps) to Google's Gemini 3.5 Flash-Lite API to write a short note about it.

Separately, in one narrow, optional case, a short explanatory sentence (“why this plan”) may be reworded by a language model for readability; that model never receives your identity or raw workout data and never influences what’s actually prescribed. See How your plan is built for the full explanation.

Analytics

LiftWeight does not use advertising SDKs, and there is no analytics toggle to manage in Settings today. We log a small number of anonymous, aggregate product-usage events (for example, that a subscription screen was viewed or a purchase completed) so we can understand how the app is used and fix problems — never the contents of your workouts, plans, or body metrics, and never linked to advertising or sold to anyone.

Third-party services

Apple and Google handle sign-in (Sign in with Apple / Google) and, if you subscribe on mobile, in-app purchases — they see your sign-in identity and purchase records, not your training data. RevenueCat manages subscription entitlements across devices (it sees your purchase/subscription status, not your training data). Stripe processes payment if you subscribe on the web (it sees payment details directly; we never see or store your card number). None of these four providers receive your workouts, body metrics, or plans.

Two providers are different, because they power the AI parts of Coach — see "Automated decision-making" above for the full description of when each is called and what it's used for. Anthropic's Claude Sonnet 5 API receives your goal, experience level, days-per-week, and movement-limitations answers (including any free-text "Other" detail, which may include medical or injury information) when Coach check generates or sanity-checks a plan. Google's Gemini 3.5 Flash-Lite API receives a completed workout's session stats (sets completed, total volume, duration) and any new personal-best detail (exercise, weight, reps) when Coach's note writes a note about it.

Your controls

You can export everything we hold about you as a single JSON archive (or your workout history as a CSV), or permanently delete your account and all associated data, at any time from Settings → Your data. Both are free on every plan, and the export is your complete history regardless of the in-app history limit on the free plan. Deletion is immediate and cannot be undone. If you delete your account while subscribed through the web, we also cancel your subscription so you are not billed again.

Data retention

We keep your account data for as long as your account is active. If you delete your account, your data is removed immediately as described above. Backup copies of the database (used only for disaster recovery) are retained for a limited period after deletion and are not used for any other purpose.

Your privacy rights (GDPR, CCPA, and similar laws)

Depending on where you live, you may have the right to access, correct, export, or delete your personal data; to object to or restrict certain processing; and to not be discriminated against for exercising these rights. The export and deletion tools above are the fastest way to exercise your access and deletion rights yourself. For anything else — a correction, a question about what we hold, or any other privacy request — contact us at privacy@himalayantales.com. We do not sell personal information and have not sold personal information in the preceding 12 months, so there is no "opt out of sale" action needed.

Changes

This policy may change as the app evolves. Material changes will be reflected here with an updated date. Your use of LiftWeight is also governed by our Terms of Service.