Privacy policy
Effective 10 August 2026 · Version 1.0
This explains what Fitonomy Mobility collects, why, where it goes, and how to get rid of it. It describes what the app actually does — every item below corresponds to something the app stores or sends.
Appostafat GmbH (Rothusstrasse 23, 6331 Hünenberg, Switzerland) is the controller of this data.
What we collect
Your account. An email address, and a password we never see — Firebase Authentication stores it hashed. If you sign in with Google we receive your email address, name and profile picture URL from Google. If you sign in with Apple we receive an Apple user identifier and an email address, which is a private relay address if you chose to hide yours. We do not store your name or picture.
Health information you give us. During onboarding you tell us your goals, any areas of your body you want left alone, and whether you have relevant health conditions or injuries. That last answer is health data. We collect it for one reason: to remove positions from your test and movements from your programme that you should not be doing. It is never used for anything else.
Measurements. Each assessment records, for each of the ten positions, a score and — where the position is measured with the phone's sensors — an angle in degrees. From these we derive a mobility index, a score per body zone, and a starting and current range for each joint.
How the assessment uses your phone's sensors. For seven of the ten positions you rest the phone against a limb and the app reads the accelerometer and gyroscope to work out the angle. Those sensor readings are processed on your device, in the moment, and are never sent anywhere or written down. What is stored is the single number the position ended at.
Your activity. Which sessions you completed and on which days, your streak, how hard you said each movement felt, and your session length and rest preferences. This is what rewrites tomorrow's programme.
Your subscription. When your free trial started, whether you currently have access, and a record of each access decision and which check granted it. Payment itself is handled entirely by Apple or Google — we never receive your card details.
Diagnostics. If the app crashes, Firebase Crashlytics sends us the crash, your device model, OS version and app version. Firebase Analytics records basic usage — app opens, screens viewed — so we can tell whether the app is working. Neither is enabled in development builds.
Device integrity. Firebase App Check asks Apple or Google to confirm the request came from a genuine, unmodified copy of the app, so our content cannot be scraped. This produces a token about the app, not about you.
What we do not collect
No location. No contacts. No photos, camera or microphone. No advertising identifiers, and no advertising or third-party tracking of any kind. We do not sell or share your data with anyone for their own purposes.
Where it is stored
Google Firebase, in the United States. If you are outside the United States your data is transferred there. Google's infrastructure is covered by the EU–US Data Privacy Framework and by standard contractual clauses.
Our processors are Google (Firebase Authentication, Firestore, Storage, Analytics, Crashlytics, Remote Config, App Check) and, for subscriptions, RevenueCat together with Apple or Google as the payment processor. Apple is also a processor when you use Sign in with Apple.
How long we keep it
Your data stays while your account exists. Crash and analytics records expire on Google's own schedule, at most 14 months.
Deleting your account
You can delete your account from Profile → Delete account, and you do not have to ask us.
Deleting removes your sign-in credential immediately and irreversibly. You will not be able to sign in again, and because every document is readable only by the account that owns it, nobody — including us — can read your data afterwards.
The documents behind your account — your answers, measurements, sessions and access history — are not erased by that action today. They are left unreadable, behind an identifier nobody can authenticate as. If you want them actually erased, write to support@fitonomyapp.com and we will do it by hand within 30 days. We are installing an automatic erasure step and will say so here when it is live.
Your rights
You can ask us for a copy of your data, ask us to correct it, ask us to erase it, ask us to restrict or object to how we use it, and ask for it in a portable form. Where we rely on your consent — the health answers — you can withdraw it at any time by changing those answers or deleting your account. Write to support@fitonomyapp.com. We will answer within 30 days. If you are unhappy with the answer you can complain to your national data protection authority.
Why we are allowed to use it
Your account, measurements, activity and subscription: to perform the contract you entered when you signed up. Health answers: your explicit consent. Diagnostics and device integrity: our legitimate interest in the app working and not being scraped.
Children
Fitonomy Mobility is not for children under 16, and we do not knowingly collect their data. If you believe a child has given us data, write to support@fitonomyapp.com and we will delete it.
Changes
If we change this policy we will change the version and date at the top, and tell you in the app before the change takes effect if it materially affects you.
Contact
- Appostafat GmbH
- Rothusstrasse 23, 6331 Hünenberg, Switzerland
- Commercial register: CHE-494.386.051
- support@fitonomyapp.com
Appostafat GmbH · Version 1.0 · Effective 10 August 2026