Overview
OPTAL does not sell personal information, show third-party ads, use advertising networks, or track you across apps or websites. Workout and profile data is stored in the app's local database and may sync through your private iCloud database when iCloud is available. OPTAL's authentication service separately receives the limited identity information needed to create and secure your account.
Scope
This Privacy Policy describes how OPTAL ("OPTAL," "we," "us," or "our") processes personal information when you use the OPTAL iOS app, the OPTAL website, or contact OPTAL. It does not govern services operated independently by Apple, Google, Supabase, or another third party.
By using OPTAL, you acknowledge the practices described in this policy. Where consent is required by law, OPTAL will request it separately.
Information OPTAL processes
Depending on the features you use, OPTAL processes the following categories:
- Account information: your account identifier, sign-in provider, email address, and name or display name. Apple or Google provides permitted identity information when you choose that sign-in method. You may also add or edit your name and contact email in the app.
- Profile and fitness information: training goal and experience, unit preferences, bodyweight, height, body measurements, selected strong or weak muscle groups, workouts, exercises, sets, repetitions, weight, effort, routines, schedules, and custom exercises.
- Calculated information: training recommendations and metrics such as estimated one-repetition maximum, stimulus, fatigue, overload, plateau, imbalance, progress, and similar insights calculated from your entries.
- App settings: preferences such as appearance, units, default effort, tuning choices, onboarding status, and Live Activity state.
- Authentication and security information: Supabase automatically records authentication events and related technical information such as the event time, account identifier, sign-in provider, IP address, user-agent information, and request or response metadata. This information supports authentication, rate limiting, abuse prevention, security auditing, and troubleshooting.
- Diagnostic information: Apple may provide crash, hang, performance, and other diagnostic information under your device and App Store analytics settings. OPTAL also writes MetricKit diagnostics to the device's unified system log. OPTAL does not include a third-party analytics or crash-reporting SDK.
- Support communications: if you email OPTAL, we receive the address, message, attachments, and other information you choose to send.
- Website technical information: website and hosting providers may process standard request information such as IP address, request time, browser type, and requested page to deliver and secure the site. The OPTAL landing and privacy pages do not include an advertising or behavioral analytics tracker.
OPTAL does not request access to your location, contacts, camera, photo library, microphone, HealthKit data, or payment-card information in the current version.
How information is collected
Information comes directly from you when you create an account, complete your profile, log training, change settings, export or share content, or contact support. OPTAL also creates calculations from your entries on your device.
When you sign in, the selected provider supplies authentication credentials and permitted profile details. OPTAL sends the credentials needed to verify the sign-in to Supabase, which creates and maintains the OPTAL authentication record and session.
How information is used
OPTAL uses information only for the following purposes:
- Provide the app: authenticate you, store workout history, build routines, calculate training insights, personalize units and recommendations, and support Live Activities, exports, and user-requested sharing.
- Synchronize: keep app data available across your devices through Apple's iCloud and CloudKit services when they are available.
- Protect and improve OPTAL: maintain account security, troubleshoot failures, respond to support requests, and understand reliability using diagnostics Apple makes available.
- Comply with obligations: enforce applicable terms, protect rights and safety, prevent abuse or fraud, and comply with valid legal requirements.
OPTAL's automated calculations are fitness and training information. They are not medical advice, diagnosis, or treatment.
Storage and service providers
- Your device: the app stores training, profile, settings, and calculated data locally using Apple platform storage. Sign-in credentials and sessions use Keychain-backed storage.
- Apple: Sign in with Apple authenticates users who select it. iCloud and CloudKit may store and synchronize app data in the user's private iCloud database. Apple also provides the App Store, operating-system diagnostics, widgets, Live Activities, and related platform services. See Apple's Privacy Policy.
- Supabase: OPTAL uses Supabase for account authentication, session management, security controls, account deletion, and authentication audit logs. Supabase receives the authentication credentials, limited identity information, and related technical request information needed for those functions. See the Supabase Privacy Policy.
- Google: Google Sign-In authenticates users who select it and provides the account identifier, email address, and profile name permitted by the user and Google account settings. See the Google Privacy Policy.
- Cloudflare and support providers: Cloudflare hosts and secures the public OPTAL website and processes standard website request information needed to deliver it. Email providers process information needed to deliver support messages. See Cloudflare's Privacy Policy.
OPTAL requires service providers that process personal information on its behalf to protect it consistently with this policy and applicable law. Their own services are also governed by their privacy terms. Providers may process information in the United States or other countries where they operate.
Retention and deletion
Training and profile information stays in the app's local database and, when iCloud is available, your private iCloud database until it is deleted. Removing the app deletes its local database but may not delete copies synchronized to iCloud or an authentication record held by Supabase.
Delete Local Data in Settings > Account removes this account's workouts, routines, bodyweight entries, and custom exercises from the device. Because the current app database is CloudKit-enabled when iCloud is available, those deletions may synchronize to iCloud.
Delete Account in Settings > Account first asks OPTAL's backend to permanently delete the Supabase authentication account and attempts to disconnect or revoke supported sign-in provider access. After the backend confirms deletion, the app removes the profile and account-scoped app data from the local and CloudKit-enabled database, clears the stored app credential, and signs you out. Provider revocation may require separate action in your Apple or Google account settings. If the backend cannot confirm deletion, the app keeps you signed in and preserves local data so you can retry.
OPTAL and its providers may retain support communications and limited security, audit-log, or backup information while reasonably needed to maintain security, resolve disputes, comply with legal obligations, or complete normal backup rotation.
Your choices and rights
- Review and correct: review or edit your name, email, profile, and training information in the app.
- Export: export training data from Settings and choose whether and where to share it.
- Delete: use Delete Account in Settings > Account to delete your OPTAL authentication account and account-scoped app data. Contact OPTAL if you need help or want to make an additional privacy request.
- iCloud: manage OPTAL's iCloud access and stored data through your device's Apple Account and iCloud settings.
- Provider access: manage or revoke Sign in with Apple or Google access through the applicable account provider. Revoking provider access may prevent future sign-in but does not itself delete the OPTAL authentication record.
- Diagnostics: manage sharing of device analytics with developers in iOS Settings under Privacy & Security > Analytics & Improvements.
Depending on where you live, you may have rights to request access, correction, deletion, portability, restriction, objection, or an appeal concerning personal information controlled by OPTAL. Email support@hyprtraining.com to make a request. OPTAL may verify your identity before acting and will not discriminate against you for exercising a privacy right.
Security
OPTAL uses reasonable administrative and technical safeguards designed to protect information, including the iOS app sandbox, Keychain-backed credential storage, encrypted network connections, and the access controls provided by Apple and Supabase. No method of storage or transmission is completely secure, so absolute security cannot be guaranteed.
Children
OPTAL is not directed to children under 13, and OPTAL does not knowingly collect personal information from a child under 13. If you believe a child has provided personal information, email support@hyprtraining.com so it can be reviewed and deleted as appropriate.
Changes to this policy
This policy may change as OPTAL evolves or legal requirements change. The effective date will be updated when the policy changes. If a change materially affects how personal information is used, OPTAL will provide additional notice when appropriate and obtain consent when required by law.
Contact
Questions, privacy requests, and complaints can be sent to support@hyprtraining.com.