Privacy
Policy
Last updated 9 September 2026
The short version
- Your training, nutrition and body-weight data is yours. It is stored against your account and is never sold.
- We collect what the app needs to work, plus crash diagnostics. There is no advertising and no ad tracking.
- Food photos you send for AI recognition can be deleted, and so can your entire account — both from inside the app.
01 Who this covers
This policy explains how the RepMax iPhone app and this website handle your information. RepMax is operated by Maxwell Krause ("we", "us").
By creating an account you agree to this policy and to the Terms of Use. If you do not agree, do not create an account — and if you already have one, you can delete it from inside the app at any time.
02 What we collect
We only collect what the app needs in order to function. There is no advertising SDK in RepMax, no third-party analytics tracker, no cross-app tracking, and no data broker relationship.
Account credentials
- What
- Email address and password.
- Why
- To create your account, sign you in, verify your email and let you reset a forgotten password.
Profile details
- What
- First and last name, gender, date of birth, height, and a profile photo if you add one.
- Why
- To personalise the app and to calculate calorie and macro targets, which depend on age, sex, height and weight.
Training data
- What
- Exercises, sets, reps, weights, session duration, your notes, personal records, streaks and program position.
- Why
- This is the product. It powers your history, your PRs, your charts and your place in a program, and it is what syncs between your devices.
Body weight
- What
- Body-weight entries you log, with their dates.
- Why
- To show your weight trend and to keep calorie targets accurate as your weight changes.
Nutrition data
- What
- Food entries, saved foods and meals, macro and calorie totals per day, and your goals.
- Why
- To show today's totals, your trends, and the foods you log most often.
Food photos
- What
- Photos you choose to upload for AI food recognition.
- Why
- To identify the food and estimate its macros. Uploaded only when you use the photo feature — see AI features.
Subscription status
- What
- Whether your subscription is active, its renewal state, and an anonymous subscriber identifier, via RevenueCat.
- Why
- To unlock the app for paying subscribers and to restore purchases on a new device. We never receive your card number — Apple handles payment.
Push token
- What
- A Firebase Cloud Messaging device token.
- Why
- To send the training reminders you turn on in Settings. Turn reminders off and we stop using it.
Crash diagnostics
- What
- Crash and error reports via Firebase Crashlytics: stack traces, device model, OS version, app version and an installation identifier.
- Why
- To find and fix the bugs that break sessions. These reports are diagnostic, not behavioural — they are not used for advertising or profiling.
We do not collect your precise location, your contacts, your microphone, or data from Apple Health. RepMax does not read from or write to HealthKit.
03 How we use it
- To run the app — show your program, log your sets, compute PRs and macros, sync across your devices.
- To keep your account secure — authenticate you and verify your email address.
- To deliver what you paid for — check your subscription entitlement.
- To send what you asked for — training reminders, if you enabled them.
- To fix problems — diagnose crashes and respond when you contact support.
- To meet legal obligations — tax, accounting and lawful requests.
We do not sell your personal information, we do not share it for cross-context behavioural advertising, and we do not build advertising profiles from it.
05 AI food features
Two features send data to an AI model: parsing food you describe in plain text, and recognising food in a photo. Both are optional and both only run when you actively use them.
- Photos are uploaded to Firebase Storage and a reference is passed to the AI provider for analysis.
- If you cancel before saving a result, the uploaded photo is removed.
- You can delete previously uploaded food photos from inside the app.
- We do not use your photos or food notes to train our own models.
Estimates, not measurements. AI-generated calories and macros are approximations. Check anything that matters, and see the Terms of Use for the full disclaimer.
06 Where it lives and how long we keep it
Your data is stored on Google Cloud infrastructure and is scoped to your user account — one user's records are not readable by another. The app also keeps a copy on your device so that sessions work offline; that local copy is cleared when you sign out.
We keep your data for as long as your account exists. When you delete your account, we delete your account record and its associated training, nutrition and photo data from our active systems. Backups and provider logs may retain copies for a short period before they age out. We keep the minimum records we need for tax and accounting purposes.
Our providers operate globally, so your information may be processed in the United States and other countries. Where required, transfers rely on the safeguards in those providers' data processing terms.
07 Your choices and rights
- Review and edit — your profile, workouts, nutrition entries and body weight are all editable in the app.
- Delete your account — available in the app's Settings. This removes your account and its data; it does not cancel your subscription, which you must cancel through Apple.
- Delete food photos — individually, in the app.
- Turn off notifications — in the app's Settings, or in iOS Settings.
- Export or get a copy — email us and we will provide a copy of your data.
Depending on where you live, you may have additional rights — to access, correct, delete, restrict or object to processing, to data portability, or to withdraw consent (EEA/UK GDPR), and to know, delete, correct and opt out of sale or sharing (California CCPA/CPRA). We do not sell or share personal information as those laws define it, so there is nothing to opt out of, and we will not discriminate against you for exercising any right. To make a request, contact us at the address below; we may need to verify that the account is yours.
08 Security
Data is encrypted in transit. Passwords are handled by Firebase Authentication and are never stored by us in readable form. Access to your records is restricted by server-side security rules tied to your authenticated user ID.
No system is perfectly secure. Use a strong, unique password, and tell us promptly if you think your account has been compromised.
09 Children
RepMax is not intended for children under 13, and we do not knowingly collect information from them. If you believe a child has created an account, contact us and we will delete it. Heavy resistance training and calorie targeting are not appropriate for young children.
10 Changes to this policy
If we change how we handle your information we will update this page and the date at the top. Material changes will also be surfaced in the app. Continuing to use RepMax after a change means you accept the updated policy.
11 Contact
Privacy questions, data requests and complaints: support@example.com
If you are in the EEA or UK and are not satisfied with our response, you may complain to your local data protection authority.
Not legal advice. This policy is a good-faith, accurate description of how RepMax handles data, drafted to be reviewed by a qualified lawyer before launch. It is not a substitute for that review.