Privacy Policy
Your privacy matters. This policy explains how Hypro collects, uses, and protects your information. It forms part of our Terms of Service.
1. Introduction
Hypro (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and web services (collectively, the “Service”).
2. Information We Collect
We collect different types of information to provide and improve our Service. Many fields are optional — providing them helps us personalize your experience and enables trainers to create better programs for you.
Account Information
- Required: Email address (for login and account verification)
- Optional: Name, profile picture, phone number, date of birth, biological sex. Providing these helps trainers know you better and personalize your experience.
Fitness and Health Data (Optional)
All fitness data is optional. Providing it enables better training recommendations and progress tracking:
- Fitness Profile: Height, weight, fitness level, activity level, goals, allergies
- Body Measurements: Circumference measurements, body fat percentage
- Training Data: Workout logs, exercises performed, sets, reps, weights
- Nutrition Data: Meal plans, nutritional targets, dietary preferences
- Images: Avatar photos (publicly visible), progress photos (private, only visible to you and your trainer)
Technical Data (Automatic)
Collected automatically to ensure the Service works properly:
- Device Information: Device type, operating system, app version
- Usage Data: App usage patterns, feature interactions
- Authentication: Session tokens for keeping you logged in
3. How We Use Your Information
Primary Uses
- Service Provision: Deliver core app functionality and features
- Personalization: Customize workouts, nutrition plans, and recommendations
- Trainer Matching: Connect you with suitable personal trainers
- Progress Tracking: Monitor and display your fitness journey
Secondary Uses
- Improvement: Analyze usage to enhance app features and performance
- Support: Provide customer service and technical assistance
- Communication: Send relevant updates and notifications
- Legal Compliance: Meet legal obligations and enforce our terms
4. Information Sharing
We Share Information With
- Trainers: When you work with a trainer, we share your profile, fitness data, and progress
- Service Providers: Cloud storage, analytics, email, and notification services
- Legal Requirements: When required by law or to protect rights and safety
We Do Not
- Sell your personal information to third parties
- Share your data with social media platforms
- Provide identifying information to advertisers
- Share progress photos without explicit consent
5. Analytics
We use cookieless analytics to understand how our app is used and to improve your experience:
- No cookies: We do not set tracking cookies on your device
- Session-only: Analytics data is collected only during your current session
- No cross-site tracking: We do not track you across other websites
- Do Not Track: We respect your browser’s Do Not Track setting
6. Data Security
We implement multiple layers of security to protect your personal information:
- Secure authentication methods
- HTTPS encryption for all data transmission
- Progress photos secured with time-limited access URLs
- Role-based access controls
- Automatic session management
- Data minimization practices
7. Mobile App
Push Notifications
- Mobile-only push notifications
- Push tokens stored securely with your account
- You can disable notifications in app settings
Camera and Photos
- Camera access for progress photos only
- Progress photos are private to your account
- Avatar photos are publicly visible
8. Your Rights
- Access and Export: Export all your personal data from Settings
- Correction: Update your profile information directly in the app
- Deletion: Delete your account via Settings or contact support
- Portability: Export your fitness data from Settings
9. Children’s Privacy
Hypro is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@hypro.app and we will promptly delete that information.
Users between 13 and 16 years of age in the EU/EEA may need parental or guardian consent to use the Service, depending on local laws. We rely on users to provide accurate age information during registration.
10. For Users in the EU/EEA (GDPR)
If you are located in the European Union or European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR). Hypro is operated by Hypertro AS, registered in Norway, which serves as the data controller for your personal data.
Legal Basis for Processing
- Contract: Processing necessary to provide the Service you signed up for (account management, workout tracking, trainer connections)
- Legitimate Interest: Analytics to improve the Service, fraud prevention, and security measures
- Consent: Push notifications, optional fitness data collection, and progress photos
- Legal Obligation: Tax reporting, responding to lawful requests from authorities
Your Additional GDPR Rights
- Right to Restrict Processing: Request that we limit how we use your data
- Right to Object: Object to processing based on legitimate interest
- Right to Withdraw Consent: Withdraw consent at any time for consent-based processing
- Right to Lodge a Complaint: File a complaint with your local data protection authority. For Norway, this is Datatilsynet (datatilsynet.no)
International Data Transfers
Your data may be transferred to and processed in countries outside the EU/EEA (e.g., for cloud hosting and analytics services). When we transfer data outside the EU/EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission.
Data Retention
We retain your personal data for as long as your account is active or as needed to provide you the Service. When you delete your account, we delete your personal data within 30 days, except where we are required to retain it for legal obligations (e.g., tax records for up to 5 years).
Data Breach Notification
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach is likely to result in a high risk to you, we will also notify you directly without undue delay, describing the nature of the breach and the measures taken to address it.
11. For California Users (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA).
Your CCPA Rights
- Right to Know: Request details about the categories and specific pieces of personal information we have collected about you
- Right to Delete: Request deletion of your personal information (via Settings or by contacting support)
- Right to Opt-Out: Opt out of the sale of your personal information
- Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights
Do Not Sell My Personal Information
Hypro does not sell your personal information to third parties. We do not share your data for cross-context behavioral advertising.
To exercise your CCPA rights, contact us at support@hypro.app. We will respond to verified requests within 45 days.
12. Contact Information
If you have questions about this Privacy Policy or our privacy practices, contact us at support@hypro.app or visit our Support Center.
This Privacy Policy is legally binding and forms part of our Terms of Service.