Privacy Policy

Last updated: January 2025

Most fitness apps have lengthy privacy policies explaining all the data they collect. Here's ours:

We collect nothing.

Period. No personal information, no location data, no analytics, no tracking. This isn't a policy decision—it's technically impossible for us to access your data.

What the Big Fitness Apps Collect

All major fitness tracking apps follow similar data collection patterns. Here's what they typically gather:

Personal Information:

  • Name, email, date of birth, gender, weight, height
  • Profile photos and social connections
  • Payment information for subscriptions

Location & Activity Data:

  • Precise GPS routes showing where you exercise
  • Home and work addresses (often inferred from patterns)
  • All workout metrics: pace, heart rate, calories, duration
  • When and how often you exercise

Device & Technical Data:

  • Device identifiers, IP addresses, browser information
  • How you use the app (what screens you visit, when)
  • Crash reports and performance data

Examples from Public Privacy Policies

Strava Privacy Policy ↗

Collects "geolocation data, such as the physical location, direction and speed of your recorded activity" plus personal details and device information.

Nike Run Club, MyFitnessPal, Garmin Connect

All collect similar or more extensive data including health metrics, social connections, and behavioral analytics.

The Industry Pattern

Most share "anonymized" data with third parties for analytics and advertising purposes.

The Pattern: Whether it's Strava, Nike, Garmin, or Under Armour apps—they all follow the same playbook: collect everything, store it indefinitely, and monetize it somehow.

What PrivStep Collects

Nothing.

Here's the complete list of personal data we collect, store, or have access to:

This space intentionally left blank.

How We Made This Possible

🏠 Local-Only Storage

All your workout data is stored using iOS CoreData directly on your iPhone. We never built servers to receive your data.

🚫 No User Accounts

No sign-ups, no login screens, no email addresses. You can't give us personal information because we don't ask for it.

📱 iOS Permissions We Use

Location: Only while using the app to record GPS routes—stored locally on your device.
Motion: To detect workout types and improve GPS accuracy.
That's it. No contacts, photos, camera, or other access.

🔒 Privacy by Design

This isn't "privacy by policy"—it's privacy by architecture. We literally cannot access your data even if we wanted to.

What About Crash Reports?

The only technical data we might receive:

  • iOS Crash Reports - Only if you enable them in your iPhone's Settings > Privacy & Security > Analytics & Improvements
  • These contain no personal data—just technical info about app crashes
  • Apple controls this, not us
  • We use them only to fix bugs and improve stability

You can disable crash reporting anytime in your iPhone settings.

Your Data Rights

📤 Export Your Data

Use PrivStep's export feature to save all your workout data to your Files app anytime.

🗑️ Delete Your Data

Delete the app and everything is gone forever. We can't recover it because we never had it.

👀 Access Your Data

It's all right there in the app, on your device, under your complete control.

✏️ Correct Your Data

Edit any workout details directly in the app—no permission needed from us.

Third-Party Services

We don't integrate with any third-party analytics, advertising, or tracking services. No Google Analytics, no Facebook SDK, no data brokers. Nothing.

The only third party involved is Apple, who distributes the app through TestFlight and the App Store according to their own privacy policies.

International Data Transfers

Since we don't collect any data, there are no international transfers to worry about. Your data stays on your iPhone, in your country, under your control.

Changes to This Policy

This privacy policy might change as PrivStep evolves, but our core principle won't: we collect nothing.

If we ever needed to collect any data (which we can't imagine), we'd update this policy and notify users clearly. Any data collection would require rebuilding the app architecture and explicit user consent.

Contact Us

Questions about our privacy practices? We're happy to explain our technical approach or clarify anything about how PrivStep protects your privacy.

You can reach us through TestFlight feedback or the contact information on our main website.