Back to Intr

Intr Privacy Policy

Last updated: 13 June 2026

This Privacy Policy explains how Omar Labidi ("we", "us") collects, uses, and protects your information when you use the Intr mobile application (the "App"). Omar Labidi is the data controller responsible for your personal data. If you have any questions, contact us at labidiomar04@gmail.com.

1. Information we collect

We only collect data needed to run the App and personalize your training. We do not sell your personal data.

CategoryExamplesWhy
Account & authenticationEmail address; password (stored only as a secure hash); Google sign-in identifier if you use itCreate and secure your account, let you log in
ProfileFitness level, training days per week, split preference, goal, usernameGenerate and adapt your training plan
Training dataWorkout sessions, exercises performed, weights lifted, reps-in-reserve, and a pre-workout energy rating (1–5) for each sessionTrack progress, prescribe loads, assess your recovery/training-status trends, and power the coaching features
Body metricsBodyweight entries you logShow progress over time
Journal entriesFree-text reflections you choose to write, and any mood/energy you recordProvide journaling and (optional) reflective coaching. This is sensitive data; we treat it accordingly.
Subscription dataPurchase and entitlement status (managed by RevenueCat and the Google Play billing system)Provide and restore any paid features
Technical & diagnosticCrash logs, error reports, basic device/app version info; in-app analytics events (e.g. "workout completed", "plan ready", "subscription started")Keep the App stable and improve it

We do not collect precise location, contacts, photos, or advertising identifiers. The App does not display third-party ads.

2. How we use your information

3. Legal bases (GDPR)

For users in the EEA/UK, we process data on these bases: performance of a contract (running the App and your account), your consent (notifications, optional AI features, and any sensitive journal data — withdrawable at any time), and our legitimate interests (security, crash diagnostics, and improving the App).

4. Third-party services (subprocessors)

We use the following providers to operate the App. Each processes data on our behalf under their own terms and data-processing agreements:

ProviderPurposeData involved
SupabaseAuthentication, database, and backend hostingAccount and all training/journal data
Google (Play Billing & Sign-In)Sign-in and in-app purchasesAuth identifier, purchase status
RevenueCatSubscription managementPurchase/entitlement status, anonymized user ID
SentryCrash and error reportingDiagnostic/technical data; error context
ExpoApp delivery and push notificationsNotification token, device info
Anthropic (only when optional AI coaching is enabled)Generates natural-language coaching textStructured training facts only (e.g. lift, weight, sessions)
How AI coaching handles your data. When the optional AI coaching feature is enabled, we send Anthropic only structured training facts — for example, an exercise name, a weight, and a number of sessions. We never send your journal entries, free-text reflections, mood notes, email, or any other personal identifiers to Anthropic. Data sent to Anthropic through its API is not used to train Anthropic's models. If AI coaching is turned off, no data is sent to Anthropic at all.

5. Data sharing

We share data only with the subprocessors above to run the App, or when required by law. We do not sell or share your personal information for advertising, and we do not engage in any "sale" of personal data as defined by applicable privacy laws.

6. Data retention & deletion timeframe

We keep your data while your account is active. When you delete your account, your data is removed from our active systems immediately, and is fully and permanently deleted across all systems and backups within 72 hours (deletion cascades across our database). Diagnostic logs are retained for a limited period and then automatically discarded.

7. Security

Data is encrypted in transit. Database access is protected by row-level security so each user can only access their own records. Passwords are stored only as secure hashes. No method of transmission or storage is 100% secure, but we take reasonable measures to protect your data.

8. Your rights

You can:

EEA/UK users may lodge a complaint with their local data protection authority. California residents have rights under the CCPA/CPRA, including the right to know and to delete; we honor these and do not sell personal information.

9. Account & data deletion

To delete your account and all associated data, open the App, go to Profile → Delete Account, and confirm. This permanently removes your profile, workouts, logs, and journal entries — immediately from our active systems, and in all cases within 72 hours across backups. Alternatively, email labidiomar04@gmail.com with the subject "Delete my account" from your registered email address, and we will complete the deletion within the same window.

10. Children

The App is intended for users aged 16 and older. We do not knowingly collect data from anyone under 16. If you believe a child has provided us data, contact us and we will delete it.

11. International transfers

Your data may be processed in countries other than your own (including by the providers listed above). Where required, transfers are protected by appropriate safeguards such as Standard Contractual Clauses.

12. Changes to this policy

We may update this policy. We will revise the "Last updated" date above and, for material changes, notify you in the App.

13. Contact

Omar Labidi — labidiomar04@gmail.com