Last Updated
December 23, 2025
Privacy Policy
GymBeat ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.
By using GymBeat, you agree to the collection and use of information in accordance with this policy.
Information We Collect
1.1 Account Information
When you create an account, we collect:
- Email address
- Name (first and last)
- Authentication credentials (securely managed by Clerk)
1.2 Profile Information
To provide personalized fitness recommendations, we collect:
- Height and weight
- Age and date of birth
- Gender
- Profile photo (optional)
- Fitness goals (weight loss, muscle gain, or maintenance)
- Activity level
1.3 Health & Fitness Data
We collect and store:
- Weight history and progress tracking
- Body measurements
- TDEE (Total Daily Energy Expenditure) calculations
- Calorie recommendations
- Nutrition logs (meals, foods, calories, macros)
- Custom foods and saved meals you create
- Barcode scan data for food lookup
1.4 Location Information
We collect location data to show you nearby gyms:
- Precise GPS location (only while using the app - "When In Use" permission)
- Approximate location via IP address (if GPS is unavailable)
Location data is stored temporarily in memory only and is cleared when you close the app. We do NOT track your location in the background or store it permanently.
1.5 Camera Access
We request camera access to scan food barcodes for nutrition tracking:
- Camera is only activated when you open the barcode scanner
- Images are processed locally on your device
- We do NOT store photos or video from the camera
- You can revoke camera permission at any time in device settings
How We Use Your Information
We use your information to:
- Create and manage your account
- Provide personalized fitness recommendations (TDEE, calorie targets)
- Show nearby gyms based on your location
- Track your fitness progress over time
- Improve app performance and user experience
- Send important service updates (e.g., policy changes)
- Comply with legal obligations
Third-Party Services
We use the following third-party services to operate our app:
3.1 Clerk (Authentication)
- Manages user authentication and login
- Stores email addresses and authentication credentials
- Privacy Policy: https://clerk.com/privacy
3.2 Convex (Database & Storage)
- Stores your profile data, fitness data, and photos
- Provides real-time data synchronization
- Privacy Policy: https://www.convex.dev/privacy
3.3 ipapi.co (IP Geolocation)
- Provides approximate location when GPS is unavailable
- Only used as a fallback when location permission is denied
- Privacy Policy: https://ipapi.co/privacy
3.4 Expo (Mobile Framework)
- Provides mobile development infrastructure
- Handles app updates and notifications
- Privacy Policy: https://expo.dev/privacy
3.5 OpenFoodFacts (Food Database)
- Provides food nutrition information from barcode scans and searches
- Open-source, community-driven food database
- We send barcode numbers and search queries to their API
- Privacy Policy: https://world.openfoodfacts.org/privacy
Data Sharing and Disclosure
We do NOT sell your personal information to third parties. We may share your information only in the following circumstances:
- With service providers listed above (Clerk, Convex, etc.)
- If required by law or to protect our rights
- In connection with a merger, acquisition, or sale of assets
We do NOT share your fitness data, weight history, or personal information with gyms or fitness facilities.
Data Security
We implement industry-standard security measures to protect your data:
- Encrypted data transmission (HTTPS/TLS)
- Secure authentication via Clerk
- Regular security updates
- Limited employee access to personal data
However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
Data Retention
We retain your information for as long as your account is active or as needed to provide services.
- Account data: Retained until you delete your account
- Location data: Cleared automatically when you close the app (session-only)
- Deleted account data: Removed within 30 days of deletion request
Your Privacy Rights
You have the right to:
- Access your personal data
- Correct inaccurate data (via Edit Profile)
- Delete your account and data
- Revoke location permissions at any time
- Opt out of non-essential data collection
- Export your data (contact us)
7.1 How to Delete Your Data
You can delete your account and all associated data using any of these methods:
- In the App: Go to Profile → Settings → Delete Account
- By Email: Send a deletion request to support@gymbeat.app
- Via Social Login: If you signed up with Google or Facebook, you can also use their "Remove App" features, then contact us to complete the deletion
When you delete your account:
- All your data is permanently removed within 30 days
- This includes: profile information, workouts, posts, photos, fitness history, and all associated content
- Your authentication account (Clerk) is also deleted
- This action cannot be undone
For EU users (GDPR): You have additional rights including data portability and the right to object to processing.
For California users (CCPA): You have the right to know what personal information is collected and request deletion.
Children's Privacy
GymBeat is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
Users aged 13-17 should use the app with parental guidance, especially when sharing health and fitness information.
International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable laws.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Updating the "Last Updated" date
- Sending a notification through the app
- Sending an email to your registered address
Your continued use of the app after changes become effective constitutes acceptance of the updated policy.
Contact Us
If you have questions about this Privacy Policy or want to exercise your privacy rights, contact us:
Email: support@gymbeat.app
Response time: We aim to respond within 48 hours.
Your Consent
By using GymBeat, you consent to this Privacy Policy and agree to its terms.