Privacy Policy

Last updated: February 2026

1. Information We Collect

Account Information

When you sign up for Sandy, we collect the information provided through your authentication method (Google OAuth), including your name and email address. We do not store or have access to your Google password.

Fitness & Health Data

We collect fitness-related data that you provide or that is generated through your use of the app, including:

  • Physical attributes (height, weight, age, fitness level)
  • Workout preferences (goals, available equipment, time constraints)
  • Exercise performance data (sets, reps, weights, duration)
  • Workout history and session feedback

Usage Data

We collect basic usage information such as when you use the app, which features you interact with, and device information necessary for the app to function properly.

2. How We Use Your Information

We use your information to:

  • Generate personalized AI-powered workout plans tailored to your goals and abilities
  • Track your progress and adapt future workouts based on your performance
  • Authenticate your identity and maintain your account
  • Improve the app and our AI workout generation algorithms
  • Communicate important updates about the service

3. AI-Generated Content

Sandy uses artificial intelligence to generate personalized workout plans. Your fitness data, preferences, and workout history are sent to AI services to create these plans. We do not share your personal identity (name, email) with AI providers — only anonymized fitness context necessary for workout generation.

4. Data Storage & Security

Your data is stored securely using industry-standard cloud infrastructure with encryption at rest and in transit. We use Supabase for data storage, which provides row-level security policies to ensure your data is only accessible to you.

5. Data Sharing

We do not sell your personal data. We may share data with:

  • Service providers: Cloud hosting, authentication, and AI services necessary to operate Sandy
  • Legal requirements: When required by law or to protect our rights

6. Your Rights

You have the right to:

  • Access your personal data stored in Sandy
  • Request correction of inaccurate data
  • Request deletion of your account and associated data
  • Export your workout data

7. Cookies & Local Storage

Sandy uses essential cookies and local storage for authentication and app functionality. We do not use tracking cookies or third-party advertising cookies.

8. Children

Sandy is not intended for use by children under 16. We do not knowingly collect data from children under 16.

9. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of significant changes through the app or via email.

10. Contact

If you have questions about this privacy policy or your data, please reach out through the feedback feature in the app.