Privacy Policy
Evo iOS App
Effective Date: September 18, 2026
Evo ("the App") is developed and operated by Viraj Chandra, an individual developer. This Privacy Policy describes how your personal information is collected, used, and protected when you use the App.
By using Evo, you agree to the collection and use of information as described in this policy.
1. Information We Collect
Account Information
When you create an account, we collect:
- Email address and password -- used for authentication via Firebase Auth. Your password is securely hashed and never stored in plain text.
Fitness Profile Data
During onboarding and profile setup, you provide:
- Age, weight, and height
- Fitness goals and experience level
- Workout preferences and available training days
- Motivation style and past barriers
Workout & Training Data
- Completed workouts and exercise logs
- Set, rep, and weight tracking per exercise
- RPE (Rate of Perceived Exertion) ratings
- Exercise preferences and saved routines
Check-In Data
- Daily readiness information including sleep quality, energy level, and nutrition quality
Nutrition Data
- Meal logs and macro tracking (calories, protein, carbohydrates, fat)
Progress Data
- Body weight history and lift personal records
- Body measurements you choose to log
Apple HealthKit Data
With your explicit permission, the App may read the following data from Apple HealthKit:
- Sleep analysis data
- Resting heart rate
- Heart rate variability (HRV)
- Body weight
- Active energy burned
This data is used to personalize your workouts and recovery recommendations. See Section 5 for details on HealthKit data handling, including how it interacts with our AI features.
AI Conversation Data
When you interact with the AI coaching features (workout generation, check-ins, coaching conversations), your messages are processed server-side through Firebase Cloud Functions and the Anthropic Claude API. These messages are used to generate personalized responses and are not stored permanently by Anthropic.
Camera, Photo Library & Microphone
The App may request access to your camera, photo library, and microphone:
- Camera and photo library -- to take or select meal photos. Meal photos are sent transiently to the AI for analysis and are not retained.
- Microphone -- to power voice-to-text logging during workouts. The transcribed text is used by the App and may be sent to the AI; the raw audio is not stored.
Crash & Diagnostic Data
The App uses Sentry for crash reporting. Crash reports include diagnostic information such as a stable user identifier, device model, OS version, and a stack trace. They do not include your name, email, photos, health data, or workout content.
2. How We Use Your Information
Your information is used exclusively to provide and improve the App's core functionality:
- Account management -- to authenticate you and maintain your account
- Personalized workout generation -- to create AI-powered workouts tailored to your fitness level, goals, available equipment, and current readiness
- Recovery recommendations -- to adjust workout intensity based on your check-in data and HealthKit metrics
- Progress tracking -- to track your strength gains, body composition changes, and workout consistency over time
- Nutrition guidance -- to calculate TDEE and macro targets based on your profile and goals
- AI coaching -- to deliver conversational coaching experiences for onboarding, daily check-ins, and workout adjustments
We do not use your data for advertising, marketing to third parties, or any purpose unrelated to your fitness coaching experience.
3. Data Storage & Security
Your data is stored and protected as follows:
- Cloud storage: Account information, fitness profiles, workout logs, check-in data, and nutrition data are stored in Google Firebase Firestore. Firebase provides encryption at rest and in transit.
- Authentication: Firebase Authentication handles account credentials with industry-standard security practices including bcrypt password hashing.
- Local storage: Certain cached data (such as HealthKit metrics and exercise guides) is stored locally on your device using standard iOS storage mechanisms.
- Data transmission: All data transmitted between the App and our servers is encrypted using TLS/HTTPS.
While we implement reasonable security measures to protect your data, no method of electronic storage or transmission over the internet is 100% secure. We cannot guarantee absolute security.
4. Third-Party Services
The App uses the following third-party services to function:
- Firebase (Google) -- for authentication, database storage, file storage, and cloud functions. See Firebase Privacy Policy.
- Anthropic (Claude API) -- for AI-powered workout generation, coaching conversations, and check-in processing. Messages are processed to generate responses and are not retained for training by Anthropic. See Anthropic Privacy Policy.
- Apple HealthKit -- for reading health and fitness data from your device, with your explicit permission.
- RevenueCat -- for managing in-app purchases and subscriptions. RevenueCat receives a stable, anonymous user identifier and purchase events. See RevenueCat Privacy Policy.
- Sentry -- for crash reporting and stability monitoring. See Sentry Privacy Policy.
- Mixpanel -- for product analytics that help us understand how features are used (events such as "workout completed" or "paywall viewed", tied to your account's user identifier). These events do not include your name, email, coaching conversations, nutrition details, or health data. See Mixpanel Privacy Policy.
The App does not integrate any third-party advertising or behavioral tracking SDKs. We do not sell, rent, or share your personal data with third parties for their marketing or advertising purposes.
5. Apple HealthKit Data
Evo complies with Apple's HealthKit guidelines:
- HealthKit data is only accessed with your explicit permission and can be revoked at any time through iOS Settings > Health > Data Access & Devices.
- HealthKit data is used solely to personalize your workouts and recovery recommendations within the App.
- HealthKit data is not sold, shared with third parties, or used for advertising.
- HealthKit data is not stored on our servers in a HealthKit-attributed form. It is read on-demand and cached locally on your device for up to 30 minutes to reduce repeated queries.
- HealthKit-derived metrics (such as last night's sleep duration or HRV) may be included in AI prompts sent to Anthropic to generate workout and recovery recommendations. This data is processed transiently and is not retained for training by Anthropic. You can disable HealthKit integration at any time in Settings.
6. Children's Privacy
Evo is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at the email below, and we will take steps to delete such information.
7. Data Retention & Deletion
Your data is retained for as long as your account is active. You have full control over your data:
- Account deletion: You can delete your account and all associated data directly from within the App (Train tab > Settings > Account > Delete account). This permanently removes your account, fitness profile, workout history, check-in data, nutrition logs, progress records, saved routines, and any progress photos saved in earlier versions of the App from our servers.
- Local data: Cached data stored on your device can be removed by deleting the App.
- HealthKit permissions: You can revoke HealthKit access at any time through iOS Settings.
Upon account deletion, your data is permanently removed from Firebase and cannot be recovered.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Export your data (available through the App's data export feature)
- Withdraw consent for optional data processing (e.g., HealthKit access)
To exercise any of these rights, please contact us using the information below.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated effective date. We encourage you to review this policy periodically. Continued use of the App after changes constitutes acceptance of the updated policy.
10. Contact
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact: