Privacy Policy

Last updated: April 7, 2026

What we collect

When you sign in with Google or Apple, we store your name, email address, and profile picture. When you connect Strava, we access your activity data (runs, rides, hikes) from the last 3-4 months including distance, duration, heart rate, pace, elevation, and detailed lap/split data. We also store the answers you provide in the training profile form.

How we use it

Your Strava data and profile answers are analysed to generate personalised training advice. Your activity data is sent to Anthropic's Claude API for analysis alongside our running knowledge base. We do not sell your data or share it with third parties for marketing purposes.

Data storage

Your data is stored in a PostgreSQL database hosted on Railway. Strava OAuth tokens are stored encrypted at rest. We retain your data for as long as your account is active.

Third-party services

  • Google OAuth — for authentication
  • Apple OAuth — for authentication
  • Strava API — to access your training data
  • Anthropic Claude API — to generate training advice
  • Railway — for hosting and database

Your rights

You can request deletion of your account and all associated data at any time by contacting us. You can disconnect Strava at any time through your Strava settings, which revokes our access to new data.

Cookies

We use essential cookies only: a session cookie for authentication and temporary cookies during the OAuth login flow. We do not use analytics or tracking cookies.

Contact

For privacy questions, email ryan.a.anderson@gmail.com.