Privacy policy
Effective 9 September 2026 · Version 1.1
This notice describes personal information handled for the Fitonomy Mobility app, its Mobility website and blog pages, and requests you send to us. Appostafat GmbH, Rothusstrasse 23, 6331 Hünenberg, Switzerland, is the controller responsible for this processing. Contact support@fitonomyapp.com about privacy or your information. The separate Fitonomy app has its own Privacy Policy at https://fitonomyapp.com/en/privacy/ .
This notice explains our practices. Reading it or accepting the Terms of Use does not, by itself, provide consent where a separate permission is required.
Account and sign-in information
Our account service uses Firebase Authentication. It handles your email address, account identifier, sign-in credentials and security information such as IP addresses and sign-in activity. Password authentication is handled by Firebase; we do not maintain a separate plain-text password database.
If you choose Google or Apple sign-in, the provider supplies the identifiers and profile information permitted by that sign-in method, such as an email address or display name. Apple can supply a private relay address if you choose Hide My Email. These providers also handle information under their own privacy notices.
Movement, health and activity information
You provide goals, preferences and answers about injuries, surgery, acute pain, pregnancy or other health considerations during onboarding. These health flags can make exercise selection more conservative; they do not guarantee that unsuitable movements are excluded. They can reveal health information. Do not include more detail than the app requests; contact us if you want to change or remove saved answers.
Assessments save normalized scores and their dates so the app can show progress and select a routine. In the current ten-position assessment, two positions use the accelerometer and gyroscope; the other eight use your slider responses. Motion readings and intermediate angles are processed on the device. The assessment history stores normalized scores, rather than a recording of raw motion readings or a video of you.
We also process completed sessions, completion dates, movement feedback, streaks, and session-length or rest preferences. This supports your history and future exercise selection. Scores and recommendations are fitness estimates, not diagnoses or clinical findings.
The current Mobility assessment does not request camera, microphone, contact-list or precise-location access. It does not connect to Apple Health, Health Connect or Fitbit. These statements describe Mobility, not the separate Fitonomy app or an attachment you voluntarily send to support.
Purchases and subscription access
Apple or Google processes your store payment. RevenueCat helps validate purchases and manage subscription access. We process the account identifiers associated with a purchase, product or plan, order or transaction identifiers, entitlement status and relevant expiry dates. Some purchase-association records also contain the email address used to match an order to a Mobility account for restoration.
We record free-workout use and access status. We do not receive full card numbers from your app-store purchase. Apple, Google and RevenueCat can retain transaction information under their respective policies and legal obligations. Deleting a Mobility account does not cancel a store subscription.
Analytics, diagnostics and service security
The app uses Firebase Analytics and Crashlytics to understand usage, diagnose crashes and improve reliability. These services process app or installation identifiers, device and operating-system information, events, timestamps and crash information. These identifiers should not be confused with anonymous records.
Firebase Remote Config supplies app settings. Firebase App Check uses Apple App Attest or Google Play Integrity to help verify app or device integrity. Attestation signals and tokens are processed by the relevant platform and Firebase. Network services can also process IP addresses and technical logs when responding to requests.
We do not sell personal information or display third-party advertising in the Mobility app. Mobility health answers and assessment scores are not provided for advertisers to target you. Your phone's privacy controls may limit some platform data uses; browser cookie settings do not switch off app SDKs.
Website, support and optional newsletters
Visiting the website sends ordinary request information to our hosting infrastructure, such as an IP address, requested page, browser information and time of access. This is used to deliver pages, maintain the service and investigate abuse or errors. Optional analytics or marketing technologies require the applicable disclosures and permissions; this notice is not permission to enable them.
If you contact support, we receive the contact details, message and attachments you choose to provide. Avoid sending passwords, full payment-card details or unnecessary health information. We use support correspondence to respond, investigate the issue and manage related records.
Where a newsletter signup is available, we collect the email address, language, originating blog, weekly or monthly preference, confirmation record and any separate choice to receive offers. A Mobility blog signup selects Mobility; a Fitonomy blog signup selects Fitonomy. Resend provides email delivery and contact-preference services. Signing up to a newsletter does not create an app account or enroll you in an app-onboarding campaign. You can withdraw through an unsubscribe link or contact us. An offers choice is separate from a request for the editorial digest.
Why information is processed
For ordinary account, subscription and service information, we rely on providing the service you request. Security, proportionate diagnostics and support administration may rely on legitimate interests, balanced against your rights. Records needed to meet a legal obligation are processed for that obligation.
Where applicable law requires consent for a particular use, including special protection for health information or optional marketing, a valid separate permission is required. The general fitness disclaimer and acceptance of this notice do not replace that permission. You may contact us to withdraw a consent or object to a use; withdrawal does not make earlier lawful processing unlawful. Some requested functions may be unavailable without the information needed to provide them.
Providers and other disclosures
The service uses Google Firebase for authentication, cloud database and storage, app configuration, analytics, diagnostics and integrity checks; RevenueCat for subscription management; Apple and Google for platform sign-in, integrity and purchases; and Resend when newsletter delivery is enabled. Our website host and support-email services also process information needed to deliver those services.
Providers act under their applicable service and data-processing terms. App stores and sign-in providers may also act for their own purposes, such as maintaining their accounts, preventing fraud or meeting legal requirements. See Firebase's information at https://firebase.google.com/support/privacy and RevenueCat's notice at https://www.revenuecat.com/privacy/ .
We may disclose information where legally required, to establish or defend legal rights, or as necessary in a business transfer subject to applicable privacy protections. We do not make your health answers or assessment history a public profile.
International processing
Our business is based in Switzerland. Service providers may process information in other countries, including the United States; the location varies by service and configuration. We do not represent that every record is stored only in one country.
International transfers must meet applicable data-protection requirements. Google's published terms describe its data-processing safeguards and applicable international-transfer mechanisms. You may ask support@fitonomyapp.com for information about the safeguards applicable to a transfer of your data. A provider's certification does not replace our responsibilities to you.
Retention
Account-linked answers, assessment scores and activity records remain in cloud storage while the account is used and, under the current deletion process below, until the separate stored-data erasure request is completed. We do not describe deletion of the sign-in credential as deletion of those records.
Purchase, support, security and consent or withdrawal records may need to be retained to resolve requests, prevent repeated unwanted messages, address disputes or comply with applicable legal duties. Their retention depends on those purposes and the relevant provider's obligations. We seek to keep only the information needed for the remaining purpose.
Analytics, diagnostic and backup retention differs between services and configured settings. Removing a live record may be followed by the provider's separate backup-deletion cycle. Contact us for the retention information relevant to your request.
Account deletion and erasure requests
In the app, open Profile, Delete account and follow the confirmation and any recent-sign-in requirement. In the current implementation this deletes the Firebase sign-in account and clears specified local account state. It does not automatically erase every cloud database record, subscription association or provider record.
The cloud records linked to your former account can remain after the sign-in account is deleted. They may still be accessible to system administrators and service providers with the relevant privileges. Closing sign-in access does not make retained records anonymous or prove that they have been erased. Please request removal of those records using the contact details below.
You can request deletion without installing or reopening the app at https://fitonomyapp.com/mobility/accountdeletion/ or by writing to support@fitonomyapp.com. Use the email associated with the account where possible. We may need proportionate verification before disclosing or erasing information. We aim to complete verified erasure requests within 30 days, subject to applicable extensions and necessary retention, which we will explain. Cancel a paid subscription separately through the store.
Your choices and rights
Depending on the law that applies to you, you may request access, correction, deletion, restriction or a portable copy of your information, object to certain processing, and withdraw consent. You may also raise a concern with your local data-protection authority, including the Swiss Federal Data Protection and Information Commissioner where appropriate.
Contact support@fitonomyapp.com to exercise a right or ask about a decision. We respond within the applicable legal period and explain any permitted extension or reason a request cannot be fully granted. We do not require you to buy a subscription to make a privacy request.
Children
Fitonomy Mobility is intended for users aged 16 and over, subject to local requirements and parental or guardian involvement where necessary. We do not knowingly seek personal information from children below that age. If you believe a child has provided information, contact support@fitonomyapp.com so we can investigate and arrange appropriate removal.
Changes and contact
We identify revisions with the date and version above and provide notice of material changes as required. If a change needs a new permission, a policy update alone does not grant it.
- Appostafat GmbH
- Rothusstrasse 23, 6331 Hünenberg, Switzerland
- Company identification: CHE-494.386.051
- support@fitonomyapp.com
Appostafat GmbH · Version 1.1 · Effective 9 September 2026