Privacy Policy

1. Introduction

JOINFIZ LTD ("Fiz", "we", "us", or "our") operates the Fiz mobile application and website at joinfiz.com. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform. By using Fiz, you consent to the practices described in this policy. If you do not agree, please discontinue use of the app.

2. Information We Collect

We collect the following categories of information:

Account Information

Email address, password (hashed), first and last name, username, and profile picture.

Profile Information

Bio, location, unit preferences (metric/imperial), timezone, profile links, and affiliate codes.

Health & Fitness Data

When you connect Apple HealthKit or Google Health Connect, we may read:

Fitness Activity Data

Workout scores, training metrics, personal records, activity images, comments on activities, strain and load calculations, muscle group breakdowns, and achievement badges.

Location Data

If you provide a location on your profile, we use Google Geocoding API to convert it to coordinates for features such as timezone detection. We do not continuously track your location.

Device Information

Device push notification tokens for delivering notifications. We do not collect device identifiers for advertising purposes.

Usage Data

Timestamps of when you accepted our Terms of Service and Privacy Policy, marketing consent preferences, and general usage patterns within the app.

3. How We Collect Information

4. Legal Basis for Processing

We process your personal data on the following legal bases:

5. How We Use Your Information

We use the information we collect to:

6. Health Data

Health and fitness data receives special protection under our policy:

7. AI-Generated Content

Fiz uses Google Gemini API to generate workouts and programmes based on your text prompts. When you use the AI workout creator:

8. Location Data

When you add a location to your profile, we use Google Geocoding API to convert the place name to geographic coordinates. This is used for timezone detection and displaying your location on your profile. We do not track your real-time GPS location or create movement profiles.

9. Information Sharing with Other Users

Depending on your privacy settings:

10. Third-Party Service Providers

We use the following third-party services to operate Fiz:

11. Data Storage & Security

We implement appropriate technical and organisational measures to protect your data:

12. Data Retention

We retain your personal data for as long as your account is active or as needed to provide you with our services. When you delete your account, we permanently delete your personal data, including activities, workouts, scores, comments, likes, saves, follows, and health data. Some anonymised, aggregated data may be retained for analytics purposes. We may retain certain data as required by law or for legitimate business purposes such as resolving disputes.

13. Your Rights

Depending on your jurisdiction, you may have the following rights:

14. Data Export

You can request a full export of your personal data at any time. Fiz provides a GDPR-compliant data export feature that compiles your profile information, workouts, activities, scores, social data, and health data into a downloadable format. To request an export, contact us at hello@joinfiz.com.

15. Account Deletion

You can delete your account at any time. Deletion is permanent and cascading — it removes your profile, all workouts you created, activities, scores, comments, likes, saves, follows, blocked users, collections, challenge participations, notification tokens, and any associated health data. This action cannot be undone.

16. Children's Privacy

Fiz is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will take steps to delete such information promptly. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at hello@joinfiz.com.

17. International Data Transfers

Your data may be transferred to and processed in countries other than your own. Our service providers, including Supabase, Google, and RevenueCat, may process data in various jurisdictions. Where data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or adequacy decisions.

18. Cookies & Tracking

The Fiz mobile app does not use cookies. Our website (joinfiz.com) may use essential cookies for basic functionality. We do not use third-party analytics trackers, advertising cookies, or tracking pixels. We do not sell your data to advertisers or data brokers.

19. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy within the app and updating the "Last updated" date. Your continued use of Fiz after changes are posted constitutes acceptance of the updated policy.

20. Contact Us

If you have any questions about this Privacy Policy, wish to exercise your rights, or have concerns about our data practices, please contact us:

JOINFIZ LTD
Email: hello@joinfiz.com
Website: joinfiz.com