Privacy Policy
Effective date: 14 August 2026
This Privacy Policy explains what data the FitBeyond AI app (the "App") collects, how it is used, and the choices you have. The App is operated by an independent developer based in Thailand ("we", "us", "our"). Contact: support@fitbeyond.app.
The short version: we collect only what the App needs to work. We measure how the App is used (which screens and features), but never what you eat, what you weigh, or your goals. There is no advertising, we do not track you across other apps or websites, and we never sell your data.
Data we collect
Everything below is provided by you, generated from what you log, or recorded as you use the App. We do not collect anything about you from outside the App.
- Account. When you sign in with Apple or by email link, we store your email address and, if provided, a display name. Sign in with Apple's private relay addresses are fully supported, so you can hide your real email from us.
- Profile and goals. Gender, birthday, height, weight, activity level, your nutrition and weight goals, unit preference, and your time zone (used to roll your day over at local midnight). Onboarding answers such as how you heard about the App may also be stored.
- Food log. The meals you log, including names, portions, ingredients, and the calorie and nutrient estimates the App produces, plus any saved foods and any feedback text you submit about an analysis.
- Meal photos. Photos you take or pick to analyze a meal or nutrition label.
- Activity entries. Water intake, exercise sessions, and body-weight entries you record.
- Subscription status. Whether you have an active subscription, via RevenueCat (see below). We also pass RevenueCat your email address and display name so we can identify your subscription when you contact support. Payment details never reach us; they stay with Apple.
- Usage analytics. Which screens and features you use, so we can see where the App works well and where it doesn't. See the Analytics section below for exactly what this does and does not include.
How we use your data
We use your data only to provide and improve the App: to analyze the food you submit, keep your log in sync across your devices, calculate your goals and progress, manage your subscription, and understand which parts of the App people use so we can make them better. We do not use it for advertising, we do not sell it, and we do not share it except with the service providers listed below, who process it on our behalf.
AI food analysis
When you analyze a meal, the photo, nutrition-label photo, or food description you submit is sent to OpenRouter, which routes it to a Google Gemini model to produce the nutrition estimate. If you describe food by voice, the audio is transcribed on your device where your device supports it, and only the resulting text is sent for analysis. Submitted content is used to generate your result, not to build a profile of you.
Meal photo storage
Meal photos are stored in a private Google Cloud Storage bucket in the United States with public access blocked. Photos taken for a scan you never save are deleted automatically within one day. Photos attached to saved meals are kept until you delete the meal or your account. The App accesses photos only through short-lived signed links.
Food database searches
When you search for a food or scan a barcode, the search text or barcode is sent to the USDA FoodData Central and Open Food Facts databases to find matches. These requests do not include your account information.
Apple Health
With your permission, the App reads your step count and active energy from Apple Health to refine your daily calorie goal, and writes the nutrition and weight you log back to Apple Health. Apple Health data stays on your device. It is never sent to our servers, never shared with third parties, and never used for advertising or marketing. You can change Health permissions at any time in your device settings.
Analytics
The App uses PostHog, hosted on PostHog's EU Cloud, so analytics data is processed and stored in the European Union. Analytics tells us how the App is used, not what you log in it.
What analytics collects: interaction events (for example, which onboarding step you reached, which logging method you used, or that a meal was logged), basic device and app information (device model and type, operating system version, app version, language, time zone, screen size, and whether you are on Wi-Fi or cellular), the country your device connects from, and a pseudonymous user identifier that links your events to your account.
The country is worked out from your IP address so we can see which markets the App is used in. We keep only the country: your IP address itself is discarded rather than stored, and we do not collect your city, your postal code, or any precise location.
What analytics never collects: food names or descriptions, meal photos, calorie or nutrient values, your weight, your goals, and anything read from Apple Health. Events describe actions ("a meal was logged by photo"), never content.
Analytics is not used for advertising and does not track you across other apps or websites. Deleting your account deletes your analytics data too, and you can otherwise object to analytics by emailing support@fitbeyond.app, in which case we will exclude and delete your data.
Service providers
We use a small number of providers to run the App, each only for the purpose described:
- Google Cloud Platform (United States): hosts our servers, database, and photo storage.
- OpenRouter and Google: process submitted photos and text to produce AI nutrition estimates.
- RevenueCat: manages subscription status, using your account identifier along with your email address and display name.
- PostHog (European Union): stores the usage analytics described above.
- USDA FoodData Central and Open Food Facts: receive food-search queries and barcodes.
Data retention and deletion
We keep your data for as long as your account exists. You can delete your account at any time in the App under Settings, Delete Account. Deletion is immediate and permanent: it removes your account, profile, food log, activity entries, and all stored photos from our servers, and deletes your usage analytics from PostHog and your customer record from RevenueCat. You can also request deletion, or a copy of your data, by emailing support@fitbeyond.app.
Security
Data is encrypted in transit using TLS. Sign-in tokens are stored hashed and rotated regularly, photo storage is private with access only via short-lived signed links, and our infrastructure runs on Google Cloud with access controls. No system is perfectly secure, but we design for the minimum data and the minimum access needed.
International transfers
We operate from Thailand and host data in the United States on Google Cloud. Usage analytics is the exception: it is processed and stored in the European Union. Wherever your data is processed, it is protected by the terms of this policy.
Your rights
Depending on where you live, including under Thailand's Personal Data Protection Act and the EU's GDPR, you may have the right to access, correct, export, or delete your personal data, to object to or restrict its processing, and to withdraw consent. You can exercise deletion and access directly in the App, or contact us at support@fitbeyond.app for any request. You may also lodge a complaint with your local data-protection authority.
Children
The App is intended for adults aged 18 and over. It is not directed at children, and we do not knowingly collect data from anyone under 18. If you believe a child has provided us with personal data, contact us and we will delete it.
Changes to this policy
We may update this policy as the App evolves. If a change is material, we will give you reasonable notice, for example in the App or by email. The effective date at the top of this page always shows the current version.
Contact
Privacy questions or requests: support@fitbeyond.app