Privacy Policy
Last updated: April 23, 2026
This Privacy Policy describes how Forgd Fitness ("Forgd", "we", "us", or "the app") collects, uses, stores, and shares your personal information when you use our mobile application available through the Apple App Store.
We built Forgd with privacy as a core design principle. The app operates without our own backend servers. Your data stays on your device and in your personal iCloud account — we do not see it, store it, or transmit it to any server we control.
1. Information We Collect
1.1 Information you provide directly
When you sign in with Apple, we receive your Apple-issued user identifier and, at your option, your name and email address. If you choose to use Apple's Hide My Email feature, we receive a private relay email instead of your real address.
When you use Forgd, you may enter or log:
- Your name and display preferences
- Date of birth, sex, height, weight, and fitness goals
- Body measurements (e.g., waist, hips, arms)
- Workout entries, exercise logs, and training programs
- Nutrition entries, meal plans, and dietary preferences
- Hydration and step goals
- Gym locations you've saved
- Progress photos you've taken or uploaded
- Notes and custom content you've written
1.2 Health data from Apple HealthKit
If you grant permission, Forgd reads and writes fitness-related data through Apple's HealthKit framework. This may include steps, active energy, heart rate, heart rate variability, sleep, workout sessions, body mass, and VO₂ max. HealthKit data is stored by Apple, never by us, and is controlled through your device's Settings → Health → Data Access & Devices → Forgd at any time.
Per Apple's HealthKit policies, we do not sell, disclose, or use HealthKit data for advertising, data brokering, or any purpose unrelated to providing fitness and health features inside the app.
1.3 Photos
If you grant permission, Forgd can take progress photos using your device camera and store them locally on your device and (if iCloud sync is enabled) in your personal iCloud Private Database. We do not scan, analyze for faces, upload to third-party servers, or otherwise process your photos beyond storing them for your own use.
1.4 Location data
If you use the Gyms feature and grant location permission, Forgd uses your location once to find nearby gyms via Apple Maps and Google Maps directory lookups. We do not store your location, do not transmit it to any server we control, and do not track your location in the background.
1.5 Device and usage information
Forgd does not include third-party analytics SDKs. We do not collect crash reports to remote servers. If the app crashes, a crash report is saved locally to your device and offered to you for optional sharing — it never leaves your device unless you explicitly share it.
1.6 Subscription information
When you purchase a subscription, Apple processes the transaction and provides the app with a cryptographically-signed receipt indicating your entitlement status. We never see your payment details, card numbers, or billing address. Subscription status is verified on your device.
2. How We Use Information
We use the information above solely to operate the app's features for you:
- Personalize workout and nutrition recommendations
- Save and sync your training programs, logs, photos, and goals across your Apple devices
- Show your progress trends, streaks, badges, and achievements
- Integrate with Apple Health to reflect your real activity
- Enable in-app purchases and subscription features
- Respond to your support requests
We do not use your data for advertising, profiling across services, training machine-learning models, data brokering, or any purpose unrelated to the fitness features you've enabled.
3. Where Your Data Is Stored
On your device: app data is written to your device's local application sandbox. Identity tokens are stored in the iOS Keychain. This data is protected by iOS's standard file-system encryption when your device is locked.
In your iCloud account: when you're signed into iCloud and allow CloudKit sync, your app data is synced through Apple's CloudKit Private Database. This is end-to-end encrypted between your Apple devices, and Apple provides the storage and encryption infrastructure. We never have access to the contents of your private CloudKit zone.
With Apple: sign in, subscription, HealthKit, and CloudKit all flow through Apple's services per their privacy policies.
Not stored anywhere we control. Forgd has no backend servers that receive or retain your personal data.
4. How We Share Information
We do not sell, rent, license, or otherwise disclose your personal information to any third party for marketing or commercial purposes.
We share information only with:
- Apple, as necessary to provide Sign in with Apple, HealthKit, CloudKit sync, and In-App Purchase functionality. Apple's handling of this data is governed by Apple's Privacy Policy at apple.com/legal/privacy.
- Law enforcement or regulators, if required by a valid legal request. Because we do not retain your data on any server, we cannot disclose what we do not possess.
5. Your Rights and Choices
You control your data at all times:
- Access and export: from the Profile → Data → Export All Data screen, you can download a JSON archive containing everything the app has stored locally.
- Delete account and all data: from Profile → Account → Delete Account, you can permanently delete your iCloud zone, local data, and app session. This is immediate and irreversible.
- Revoke Apple sign-in: from iOS Settings → your Apple ID → Sign in with Apple → Forgd → Stop Using Apple ID, you can disconnect your Apple ID from the app at any time.
- Revoke HealthKit access: Settings → Health → Data Access & Devices → Forgd.
- Revoke location and photo access: Settings → Privacy & Security.
- Opt out of notifications: Settings → Notifications → Forgd or from the in-app Notifications settings.
- Cancel subscriptions: Settings → your Apple ID → Subscriptions, or via Profile → Subscription → Manage Subscription inside the app.
Residents of the European Economic Area, the United Kingdom, and the State of California have additional rights under GDPR, UK GDPR, and the CCPA respectively, including the right to access, correct, or erase your personal information and the right to lodge a complaint with a supervisory authority. To exercise these rights, email us using the contact address below.
6. Children
Forgd is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us information, please contact us and we will delete it.
7. Data Retention
Local and iCloud data are retained until you delete it. Because data lives in your own iCloud and on your device, we do not set retention limits — you do.
8. Security
We rely on Apple's platform security features: device-level encryption, Keychain-protected credentials, CloudKit's transport and at-rest encryption, and App Transport Security for any network calls. No system is perfectly secure; report suspected vulnerabilities to the contact email below.
9. International Transfers
Because your data stays in your iCloud account and on your device, international transfer provisions are governed by Apple's own data-handling policies, not by us.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top reflects the latest change. Material changes will be surfaced in the app before they take effect.
11. Contact
Questions, requests, or concerns: forgd.fit@gmail.com
Forgd Fitness is operated by Bryce Harr.