Privacy Policy
Last updated: May 2026
1. Who we are
TrackPro is operated by Cody Tarrant ("we", "us"). We act as the data controller for personal data collected from trainers using the platform. For questions about your data, contact us at codytarrant992@gmail.com.
2. What we collect
- Account data: name, email, password (encrypted), display name.
- Profile data: business name, tagline, brand colour, avatar.
- Client data you enter: client names, ages, goals, fitness level, injuries, progress measurements, workout plans, session notes.
- Usage data: log-in times, features used, technical info (IP address, browser, device).
- Communications: messages you send us via email, Instagram DM, or other channels.
3. Why we use it
- To provide and operate the TrackPro service (contract performance);
- To authenticate you and keep your account secure (legitimate interest);
- To respond to your support requests (legitimate interest);
- To improve the product and fix bugs (legitimate interest);
- To send essential service emails (e.g. password reset, account notifications) (contract);
- To comply with legal obligations.
4. Client data
Information you enter about your clients is stored on our infrastructure but you (the trainer) are the data controller for that information. You are responsible for telling your clients how their data will be used and for having a legal basis to store it. We process this data on your behalf.
5. Who we share data with
We do not sell your data. We share it only with trusted service providers who help us run TrackPro:
- Hosting & database: Lovable Cloud (powered by Supabase) for storing data and authentication.
- AI processing: Lovable AI Gateway (using Google Gemini and OpenAI models) for generating workouts and summaries. Inputs are processed transiently and not used to train models.
- Email delivery: our email provider for sending account and authentication emails.
- Authorities: if required by law or court order.
6. International transfers
Our infrastructure providers may store and process data outside your country. Where this happens, we rely on standard contractual safeguards (such as Standard Contractual Clauses) to protect your data.
7. How long we keep data
We keep your account data for as long as your account is active. If you cancel, we keep it for up to 30 days to allow account recovery, then permanently delete or anonymise it. Logs and backups may persist for up to 90 days.
8. Your rights
Depending on your location (UK/EEA users have these under GDPR), you have the right to:
- Access the personal data we hold about you;
- Correct inaccurate data;
- Request deletion of your data ("right to be forgotten");
- Restrict or object to certain processing;
- Data portability (receive your data in a portable format);
- Withdraw consent at any time;
- Lodge a complaint with your local data protection authority.
To exercise any right, email codytarrant992@gmail.com and we'll respond within one month.
9. Security
We use industry-standard security measures including encryption in transit (HTTPS), encrypted password storage, and row-level security on the database to ensure each trainer can only access their own data. No system is 100% secure, but we work hard to protect your information.
10. Cookies
TrackPro uses essential cookies and local storage to keep you logged in and remember your preferences. We do not use advertising or tracking cookies.
11. Children
TrackPro is not intended for use by anyone under 18. If you believe a minor has created an account, contact us and we'll remove it.
12. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-app. The "Last updated" date at the top reflects the most recent revision.
13. Contact
Questions or concerns about your privacy? Reach out at codytarrant992@gmail.com.