Privacy Policy
Last updated: March 22, 2026
1. Introduction
Repload ("we", "our", or "us") is a fitness tracking application developed by an independent developer. This Privacy Policy explains what information we collect when you use the Repload iOS app, how we use it, and your rights regarding that information.
By using Repload, you agree to the collection and use of information as described in this policy.
2. Information We Collect
2.1 Account Information
When you create an account, we collect your email address and a password (stored as a secure hash — we never see your plaintext password). This is processed through Supabase, our authentication and backend provider.
2.2 Profile Information
You may optionally provide a display name, gender, body weight, height, and a profile photo. Profile data is stored both on your device and synced to our cloud backend (Supabase) so it is available across devices. Profile photos are uploaded to Supabase Storage.
2.3 Fitness Data
Repload stores your workout sessions, including:
- Exercise names, sets, reps, and weights
- Cardio duration and distance
- Session duration and estimated calories burned
- Session type (strength or cardio), dates, and optional notes
- Personal records (estimated 1-rep max using the Epley formula)
- Distance milestones (5K, 10K, half-marathon, marathon)
- Custom exercises and session templates you create
This data is stored locally on your device and automatically synced to our cloud backend (Supabase) for backup and cross-device access. The app works offline and queues changes until a connection is available.
2.4 Device Permissions
Repload may request the following device permissions:
- Camera & Photo Library — to set a profile photo (optional, requested only when you choose to add a photo)
- Notifications — to send streak reminders and workout prompts (optional, can be disabled in Settings)
2.5 Device Information
We do not collect device identifiers, advertising IDs, or use any analytics or tracking SDKs. Standard iOS system information may be accessed by the Expo framework for app functionality (e.g. checking available disk space, file timestamps) as declared in our Apple Privacy Manifest.
3. How We Use Your Information
- To authenticate your account and keep your session secure
- To store and sync your workout history across your devices
- To display analytics, personal records, streaks, and training statistics
- To estimate calorie expenditure using standard MET formulas
- To send optional push notifications (streak reminders, workout prompts)
We do not use your data for advertising, sell it to third parties, or share it with anyone outside of the services listed below.
4. Third-Party Services
4.1 Supabase
We use Supabase(supabase.com) for user authentication, cloud data storage, and file storage (profile photos). Your email, fitness data, personal records, templates, and profile information are stored on Supabase servers. All data is isolated per user via row-level security policies. You can review Supabase's privacy policy at supabase.com/privacy.
4.2 Expo
Repload is built with the Expoframework. Expo provides push notification delivery infrastructure when notifications are enabled. No personal fitness data is shared with Expo. You can review Expo's privacy policy at expo.dev/privacy.
4.3 Apple App Store
Repload is distributed through the Apple App Store. Apple may collect standard analytics about app downloads and crashes as described in Apple's Privacy Policy.
5. Data Storage & Security
Your fitness data is stored locally on your device using AsyncStorage and synced to Supabasecloud servers for backup and cross-device access. Authentication tokens are stored in your device's secure keychain using expo-secure-store.
We implement industry-standard security practices, including:
- HTTPS encryption for all network communication
- Secure token storage via iOS Keychain
- Row-level security on all database tables (data isolated per user)
- Password hashing handled by Supabase (we never store or see plaintext passwords)
However, no method of transmission or storage is 100% secure.
6. Data Retention & Deletion
Your data is retained as long as your account exists. You can:
- Delete individual sessions from the app at any time
- Reset all app data from Profile, which removes all sessions, personal records, templates, custom exercises, and your profile photo from both your device and our servers
- Sign out to remove all locally cached data from your device (cloud data is preserved for when you sign back in)
- Request full account deletion by contacting us at privacy@repload.app, which will permanently remove your authentication record and all associated data from our servers
- Uninstall the app to remove all locally stored data from your device
7. No Tracking
Repload does not track you across other apps or websites. We do not use any analytics SDKs, advertising frameworks, crash reporting services, or third-party tracking tools. Our Apple Privacy Manifest explicitly declares NSPrivacyTracking = false.
8. Children's Privacy
Repload is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us at privacy@repload.app and we will promptly delete it.
9. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data and account
- Object to or restrict processing of your data
- Data portability
To exercise any of these rights, contact us at privacy@repload.app.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by updating the "Last updated" date at the top of this page. Continued use of the app after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please contact us at:
Repload
privacy@repload.app