← Back to RepFlows

Privacy Policy

Last updated: April 12, 2026

1. Information We Collect

When you use RepFlows, we collect:

  • Account information — your email address and name when you sign up.
  • Workout data — exercises, sets, reps, weights, and training history you log.
  • Profile preferences — fitness goals, experience level, equipment, and focus areas from onboarding.
  • Usage data — features you use, pages visited, and interactions with the app.
  • Payment information — processed securely by Stripe. We never store card details.

2. Apple HealthKit Data

When you use the RepFlows iOS app, you may choose to connect Apple HealthKit. If you grant permission:

  • Data we write — workout sessions (exercise type, duration, calories) are saved to HealthKit so your workouts appear in the Apple Health app.
  • Data we read — we may read workout metrics from HealthKit to display your activity in the RepFlows dashboard.
  • Data stays on device — HealthKit data is stored locally on your device by Apple. RepFlows does not upload HealthKit data to our servers or share it with any third party.
  • No advertising use — HealthKit data is never used for advertising, marketing, or data mining purposes.

3. How We Use Your Information

We use your data to:

  • Generate personalized AI workout recommendations based on your training history
  • Track your progress, PRs, and performance over time
  • Provide and improve the RepFlows service
  • Process subscription payments via Stripe
  • Send important service updates (no marketing spam)

4. Data Storage

Your data is stored securely using Supabase (PostgreSQL) hosted on AWS infrastructure. All data is encrypted in transit (HTTPS) and at rest. Workout data and personal information are protected by row-level security — only you can access your own data.

5. Third-Party Services

RepFlows uses the following third-party services:

  • Supabase — database and authentication
  • Stripe — payment processing
  • Anthropic (Claude) — AI workout generation (workout context is sent to generate recommendations)
  • Vercel — hosting and deployment
  • Expo (EAS) — mobile app build and distribution

We do not sell your data to any third party.

6. Your Rights

You have the right to:

  • Access all data we hold about you
  • Export your workout history
  • Delete your account and all associated data
  • Opt out of any non-essential communications

To exercise these rights, email us at support@repflows.ai.

7. Cookies

We use only essential cookies required for authentication (session tokens). We do not use advertising or tracking cookies.

8. Contact

Questions about this policy? Email support@repflows.ai.

Privacy Policy — RepFlows | RepFlows