Privacy Policy
Last updated: February 22, 2026
Strength Programs ("we," "us," or "our") operates the strength-programs.com website and related mobile applications (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
By accessing or using the Service, you agree to this Privacy Policy. If you do not agree, please do not access or use the Service.
1. Information We Collect
1.1 Information You Provide
- Account data: email address, display name, and authentication credentials (managed by Supabase Auth and Google OAuth)
- Training data: exercise records, workout sessions, personal records, body weight, training maxes, and program configurations
- Profile data: training experience level, goals, and preferences set during onboarding
- Payment data: processed securely by LemonSqueezy and RevenueCat — we never store credit card numbers
- Communications: messages sent via our contact form
1.2 Information Collected Automatically
- Device type, operating system, and browser information
- IP address (anonymized for analytics)
- Pages viewed, features used, and interaction patterns
- Cookies and similar tracking technologies (see Section 5)
2. How We Use Your Information
- Provide, operate, and maintain the Service
- Calculate workout weights, track progress, and generate analytics
- Process subscriptions and manage your account
- Send transactional emails (magic links, subscription confirmations)
- Improve service quality through aggregated, anonymized analytics
- Prevent fraud, abuse, and unauthorized access
- Comply with legal obligations
We do not use your data for targeted advertising or sell your information to third parties.
3. Information Sharing
We share information only in these limited circumstances:
- Service providers: Supabase (database/auth), LemonSqueezy (payments), RevenueCat (mobile subscriptions), Google Analytics (anonymized usage)
- Legal compliance: when required by law, regulation, or valid legal process
- Safety: to protect the rights, property, or safety of our users or the public
- Business transfers: in connection with a merger, acquisition, or sale of assets (with prior notice)
We do not sell, rent, or trade your personal information.
4. Data Security
We implement industry-standard security measures including TLS encryption in transit, encrypted data at rest, Row Level Security (RLS) policies on all database tables, and regular security audits. Authentication is handled by Supabase Auth with OAuth 2.0 and PKCE.
However, no method of transmission or storage is 100% secure. We cannot guarantee absolute security of your data. You are responsible for maintaining the confidentiality of your account.
5. Cookies & Tracking
We use:
- Essential cookies: authentication session tokens (required for the Service to function)
- Analytics cookies: Google Analytics with IP anonymization to understand aggregate usage patterns
You may disable non-essential cookies through your browser settings, though this may affect functionality.
6. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you
- Correct inaccurate or incomplete information
- Delete your account and associated data
- Export your training data in a portable format
- Object to or restrict certain processing activities
- Withdraw consent where processing is based on consent
To exercise any of these rights, contact us at support@strength-programs.com. We will respond within 30 days.
7. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. If you delete your account, we will delete your personal data within 30 days, except where retention is required by law or for legitimate business purposes (e.g., fraud prevention, dispute resolution).
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.
9. Children's Privacy
The Service is not intended for individuals under the age of 16. We do not knowingly collect personal information from children. If we learn that we have collected information from a child under 16, we will delete that information promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date. Continued use of the Service after changes constitutes acceptance of the revised policy.
11. Contact Us
If you have any questions about this Privacy Policy, please contact us at support@strength-programs.com or use our contact form.
