Legal

Privacy Policy

Last updated: May 20, 2026

1. Introduction

Welcome to Gym Buddies ("the App"), operated by Nolancode ("we," "us," or "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application available on iOS and Android.

By downloading, installing, or using Gym Buddies, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the App.

We are committed to protecting your personal information and your right to privacy. If you have any questions or concerns about this policy or our practices, please contact us at support@gymbuddies.nolancode.com.

2. Information We Collect

Information you provide directly:

  • Account registration information: name, email address, and username provided through Clerk authentication (including Google OAuth if used)
  • Profile information: profile photo, cover image, bio, location (city/region only), fitness interests, fitness level, and fitness goals
  • Workout data: exercises, sets, reps, weights, duration, completion status, and personal records
  • Nutrition data: food entries, calorie counts, macro breakdowns (protein, carbs, fats), and water intake logs
  • Social content: posts, comments, reactions, chat messages, voice notes, and any media you upload (images and videos)
  • Plan data: workout plans and diet plans you create or save, including AI-generated plans
  • Achievement and streak data: earned badges, milestone progress, and workout streak history
  • Push notification token: to deliver notifications to your device

Information collected automatically:

  • Device information: device type, operating system version, and unique device identifiers
  • Usage data: features accessed, screens viewed, and interaction patterns within the App
  • Log data: IP address, access times, and error reports

3. How We Use Your Information

We use the information we collect to:

  • Create and manage your account and authenticate your identity via Clerk
  • Provide, operate, and maintain the App and all its features
  • Generate AI-powered workout and diet plans personalised to your goals and fitness level
  • Enable social features including posts, comments, reactions, group chats, and buddy connections
  • Send push notifications about activity related to your account (reactions, messages, achievements, streak reminders) — you can manage these in your device settings
  • Track and display your workout history, personal records, streaks, and achievements
  • Provide nutrition tracking and calorie/macro analysis
  • Process and store media files (images and videos) you upload via Cloudinary
  • Enable real-time chat and social features via Socket.io
  • Analyse usage patterns to improve the App and develop new features
  • Respond to your support requests and communications
  • Enforce our Terms of Service and community guidelines
  • Comply with applicable laws and regulations

4. Third-Party Services

We use the following third-party services to operate Gym Buddies. Each has its own privacy policy governing their use of your data:

  • Clerk (clerk.com) — Authentication and user identity management. Clerk processes your email address and OAuth tokens. View their privacy policy at clerk.com/privacy
  • Cloudinary (cloudinary.com) — Cloud storage and delivery of images and videos you upload. View their privacy policy at cloudinary.com/privacy
  • MongoDB Atlas — Secure cloud database storage for your app data, hosted on MongoDB's infrastructure
  • Inngest (inngest.com) — Background job processing for features such as AI plan generation and notifications
  • Sevalla — Application hosting and infrastructure provider
  • Expo (expo.dev) — Mobile app framework and push notification delivery (via Expo Push Notification Service)
  • OpenAI / Anthropic — AI services used to generate personalised workout and diet plans. Plan prompts and your fitness preferences are sent to these services; no personally identifiable information beyond fitness goals and preferences is transmitted

We do not sell your personal data to any third party. Third-party services we use receive only the minimum data required to perform their specific function.

5. Data Storage and Security

Your data is stored securely on MongoDB Atlas servers. Media files are stored on Cloudinary's secure cloud infrastructure. Authentication data is managed by Clerk.

We implement industry-standard security measures including HTTPS/TLS encryption for all data in transit, access controls, and regular security reviews. However, no method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security.

We retain your personal data for as long as your account is active or as needed to provide services. If you delete your account, we will delete or anonymise your personal data within 30 days, except where we are required to retain it for legal compliance purposes.

6. Social Features and Public Content

Gym Buddies is a social application. Please be aware of the following regarding content you share:

  • Posts you share on the feed are visible to other users in the community
  • Your profile information (name, username, profile photo, bio, and any fields you choose to make public) is visible to other users
  • Workout stats, personal records, achievements, and streak information can be made public or private via your privacy settings
  • Chat messages in group chats are visible to all members of that group
  • Content you post cannot be guaranteed to remain private once shared, even if you later delete it, as other users may have seen or interacted with it

You can control the visibility of most profile fields in the App's privacy settings.

7. Children's Privacy

Gym Buddies is not directed to children under the age of 13, and we do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child under 13 has provided us with personal information, please contact us immediately at support@gymbuddies.nolancode.com. If we become aware that we have collected personal information from a child under 13 without parental consent, we will take steps to remove that information.

Users between the ages of 13 and 17 should obtain parental consent before using the App.

8. Your Rights and Choices

Depending on your location, you may have the following rights regarding your personal data:

  • Access: request a copy of the personal data we hold about you
  • Correction: request that we correct inaccurate or incomplete data
  • Deletion: request that we delete your personal data ("right to be forgotten")
  • Portability: request that we provide your data in a portable format
  • Restriction: request that we restrict processing of your data in certain circumstances
  • Objection: object to our processing of your data for certain purposes

You can manage most of your data directly within the App. To request account deletion or exercise other rights, contact us at support@gymbuddies.nolancode.com. We will respond to your request within 30 days.

Push Notifications: You can opt out of push notifications at any time through your device's notification settings.

Account Deletion: You can delete your account from within the App settings. Upon deletion, your profile, posts, and personal data will be removed within 30 days.

9. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • The right to know what personal information we collect, use, disclose, and sell
  • The right to delete personal information we have collected
  • The right to opt-out of the sale of personal information — we do not sell personal information
  • The right to non-discrimination for exercising your CCPA rights

To exercise your California privacy rights, contact us at support@gymbuddies.nolancode.com.

10. International Users and GDPR

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have rights under the General Data Protection Regulation (GDPR) or applicable local law.

Our legal bases for processing your data include: performance of a contract (providing the App's services), legitimate interests (improving the App, preventing fraud), consent (for optional features and marketing communications), and legal obligation.

Data may be transferred to and processed in the United States and other countries where our service providers operate. We ensure appropriate safeguards are in place for international transfers.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. We will notify you of any material changes by updating the "Last updated" date at the top of this policy and, where appropriate, by sending you a push notification or email.

We encourage you to review this Privacy Policy periodically. Your continued use of the App after any changes constitutes your acceptance of the updated policy.

12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

Nolancode
Email: support@gymbuddies.nolancode.com
Henderson, Nevada, United States

© 2026 Nolancode. All rights reserved. · Terms of Service