Introduction
Welcome to RunXP. This Privacy Policy explains how Jesse Hunt ("we", "our", or "us") collects, uses, discloses, and protects your personal information when you use the RunXP mobile application (the "App").
We are committed to protecting your privacy and ensuring you have a positive experience when using our App. This policy outlines our practices concerning the collection and use of your personal data.
By using RunXP, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with this policy, please do not use the App.
Information We Collect
Account Information
- Name and email address (provided through Apple or Google authentication)
- Profile information including age, gender, running experience level
- Training goals, race dates, and fitness objectives
- Selected AI coach preference
Health and Fitness Data
- Running activity data (distance, pace, duration, routes)
- Location data during runs (foreground and background GPS coordinates while tracking)
- General location for weather and route suggestions
- Heart rate data (if connected via Bluetooth devices or Apple Health)
- Workout completion status and training plan adherence
- Injury and recovery information you provide
- Motion and fitness data from your device sensors
Communication Data
- Chat messages with your AI coach
- Workout feedback and notes
- Training summaries and conversation history
Device and Usage Information
- Device type, operating system, and unique device identifiers
- App usage statistics and interaction patterns
- Crash reports and error logs
- Bluetooth device metadata when connecting heart rate sensors
- Push notification preferences
Permissions and Settings
- Location permission status (foreground/background)
- Health, Bluetooth, and notification permission status
- Your preferences for reminders and training notifications
How We Use Your Information
- Provide personalized AI coaching and training plans
- Track and record your running activities
- Generate adaptive weekly training schedules
- Analyze your performance and provide feedback
- Send workout reminders and motivational notifications
- Improve our AI models and coaching algorithms
- Provide customer support and respond to your inquiries
- Detect and prevent technical issues and bugs
- Ensure the security and integrity of the App
- Comply with legal obligations
Third‑Party Services
We use the following third‑party services to operate our App:
Supabase (Database and Authentication)
- Stores your profile, training plans, and chat history
- Manages authentication through Apple and Google
- Data is encrypted in transit and at rest
- Privacy Policy: https://supabase.com/privacy
OpenAI (AI Coaching)
- Processes your messages and training data to generate coaching responses
- We do not use your data to train OpenAI's general models
- Privacy Policy: https://openai.com/privacy
Apple Health (Optional)
- Syncs workout data with Apple Health
- Reads heart rate data from connected devices
- You control what data is shared through iOS permissions
Apple Sign‑In / Google Sign‑In
- Handles secure authentication
- We receive only basic profile information (name, email)
These services have their own privacy policies and we encourage you to review them.
Data Storage and Security
- All data is transmitted using secure HTTPS encryption
- Data at rest is encrypted in our secure database
- We use industry‑standard security practices
- Access to personal data is restricted to authorized personnel only
- Regular security audits and updates
- However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.
Data Retention
We retain your personal information for as long as necessary to provide you with our services and as required by law:
- Account information: Retained until you delete your account
- Training data and chat history: Retained for the duration of your account
- Voice conversations: Not available in this version
- Location data: Retained as part of your workout history
When you delete your account, we permanently delete all associated personal data within 30 days, except where we are required to retain it by law.
Your Rights and Choices
Depending on your location, you may have the following rights:
Access and Portability
- Request a copy of the personal data we hold about you by contacting [email protected]
- Request export of your training data and chat history via [email protected]
Correction
- Update or correct your personal information through the App
- Edit your profile details at any time
Deletion
- Delete your account and all associated data through Settings
- Request deletion of specific data by contacting us
Opt‑Out
- Disable push notifications in your device settings
- Revoke location or health data permissions at any time
Object to Processing
- Object to certain data processing activities
- Withdraw consent for optional data collection
To exercise these rights, contact us at [email protected] or use the in‑app account deletion feature.
International Data Transfers
RunXP is operated from Australia, but our service providers may process data in other countries, including the United States (Supabase, OpenAI).
When we transfer personal data internationally, we ensure appropriate safeguards are in place, including:
- Standard contractual clauses
- Data processing agreements with service providers
- Compliance with applicable data protection laws
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, your data may be transferred to countries that do not have the same data protection laws. We take steps to ensure your data receives adequate protection.
Children's Privacy
RunXP is not intended for use by children under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children under these ages.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us at [email protected]. We will take steps to delete such information from our systems.
GDPR (European Users)
- Legal basis for processing: We process your data based on contract performance, legitimate interests, and your consent
- Right to lodge a complaint with your local supervisory authority
- Right to restrict processing in certain circumstances
- Right to data portability
For GDPR‑related inquiries, contact us at [email protected].
CCPA (California Residents)
- Right to know what personal information we collect and how it is used
- Right to request deletion of your personal information
- Right to opt‑out of the "sale" of personal information (Note: We do not sell your personal information)
- Right to non‑discrimination for exercising your CCPA rights
To exercise these rights, contact us at [email protected].
Australian Privacy Principles
- Open and transparent management of personal information
- Ensuring the quality and security of personal information
- Allowing you to access and correct your personal information
- Providing clear notice about cross‑border disclosures
If you have a complaint about how we handle your personal information, please contact us at [email protected]. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC).
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons.
When we make material changes, we will notify you by:
- Displaying a prominent notice in the App
- Sending you an email notification (if you have provided an email address)
- Updating the "Last Updated" date at the top of this policy
Your continued use of the App after changes are made constitutes your acceptance of the updated Privacy Policy.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: [email protected]
- App: Through the in‑app support feature
- Operator: Jesse Hunt
- Location: Australia
We will respond to your inquiry within a reasonable timeframe, typically within 30 days.