Privacy Policy

Last updated: 22 July 2026 · Effective: 22 July 2026

This Privacy Policy explains how the Let's Workout mobile app (Android package com.letsworkout.app, and iOS) — referred to here as the "app", "we", "us" — collects, uses, shares and protects information when you use it. Let's Workout is an offline-first gym tracker: your workouts are stored on your device and only sent to our servers when you create an account and sign in to sync.

1. Summary

  • You can log workouts without an account; data stays on your device until you choose to sync.
  • If you sign in with Google, we store your email and workout data on our servers to sync across your devices.
  • The app shows ads via Google AdMob and its mediation partners, which may use an advertising identifier. You can turn ads off.
  • Analytics is off by default; nothing is collected for analytics until you opt in.
  • We use Sentry for crash diagnostics so we can fix bugs.
  • If you allow notifications, we register a push token to send workout reminders; you can turn notifications off.
  • You can delete your account, or just your data, at any time — in the app or on the web (see §11).
  • We do not sell your personal data.

2. Information we collect

Account & authentication data

If you sign in with Google, we receive your email address, Google account subject identifier, and optional display name. This is used to sign you in and to associate your synced data with your account. We do not collect or store your Google password.

Workout & fitness data

Content you create in the app — routines, workout sessions, sets, reps, weights, personal records, custom exercises, and related notes. This is stored locally on your device. If you sign in, it is also synced to our servers so you can access it on other devices.

Identifiers

  • An anonymous user/device identifier used to scope sync and basic app settings.
  • An advertising identifier (Android Advertising ID) used by Google AdMob to serve ads, where applicable and permitted (see §6).

Usage & analytics data (opt-in)

If — and only if — you opt in to analytics, we collect app-activity events such as screen views and feature usage via Google Firebase Analytics. Analytics collection ships disabled and is not enabled until you grant consent in the app's privacy settings.

Diagnostics & crash data

We use Sentry to capture crash reports and technical error diagnostics (e.g. error type, stack trace, app version, device model and OS version) so we can find and fix problems. This is used for stability, not advertising.

Push notifications

If you allow notifications, we register a push token (a device identifier provided by Google Firebase Cloud Messaging) with our servers, together with your device language, so we can send workout reminders and re-engagement notifications. You can turn notifications off at any time in your device or app settings, which stops them; the token is removed when you disable notifications or delete your account.

Device & app information

Technical information needed to operate the service, such as app version, platform (Android/iOS), and approximate connection state. Network requests to our servers also include standard information such as an IP address, used transiently for delivering the response and security.

We do not collect: precise location, contacts, SMS, calendar, photos, microphone, camera, or health/medical data. The app does not request those permissions.

3. How we use information

  • Provide the app: log and display your workouts, compute personal records and progress.
  • Sync: back up and synchronize your data across your devices when you sign in.
  • Authentication & security: sign you in, keep your account secure, prevent abuse.
  • Advertising: show ads to support the free version (you can opt out — see §6).
  • Analytics (opt-in only): understand which features are used so we can improve the app.
  • Diagnostics: detect, investigate and fix crashes and bugs.
  • Notifications: send workout reminders and re-engagement notifications, if you allow them.
  • Legal: comply with applicable law and enforce our terms.

Where the GDPR or UK GDPR applies, we rely on the following legal bases:

  • Contract — to provide the app, your account and sync.
  • Consent — for analytics and for personalized advertising; you can withdraw consent at any time.
  • Legitimate interests — for security, crash diagnostics, and serving non-personalized ads, balanced against your rights.
  • Legal obligation — where we are required to retain or disclose information by law.

5. Sharing & third-party services

We do not sell your personal data. We share information only with service providers that help us run the app, and only as needed for the purposes above:

ProviderPurposeData involvedTheir policy
Google AdMob Serving ads Advertising ID, ad interaction, coarse device/app data policies.google.com/privacy
Meta Audience Network (Meta Platforms, Inc.) Serving ads (bidding partner via Google AdMob mediation) Advertising ID, ad interaction, coarse device/app data facebook.com/privacy/policy
Google Firebase Analytics App analytics (opt-in) App-activity events, screen views, anonymous identifiers firebase.google.com/support/privacy
Google Firebase Cloud Messaging Delivering push notifications Push registration token, device language firebase.google.com/support/privacy
Sentry Crash & error diagnostics Error/stack data, app version, device/OS sentry.io/privacy
Our hosting/backend Account & sync storage Email, account data, synced workout data This policy

We may also disclose information if required by law, to protect our rights, or in connection with a business transfer.

6. Advertising & your choices

Let's Workout shows ads through Google AdMob. AdMob also runs an auction among mediation partners for the same ad slots, currently Meta Audience Network; those partners receive the ad request and may serve the ad that wins. Ads are never shown during an active workout, the rest timer, set entry, sign-in, onboarding, or update prompts. To serve ads, AdMob and its mediation partners may use the device Advertising ID.

  • Turn ads off: you can disable ads from the app (Settings → Remove ads), which stops ad requests on your device.
  • Personalized ads & the EEA/UK: in regions that require it, we serve non-personalized ads unless you have consented to personalization.
  • US state privacy laws: for users Meta identifies as being in a covered US state, the app instructs Meta Audience Network to apply Limited Data Use, restricting how it processes that data. We do not sell your personal data.
  • Reset/limit your Advertising ID: you can reset or delete it in your device settings (Android: Settings → Privacy → Ads). On supported devices, deleting it stops apps from using it for ads.

7. Analytics & your choices

Analytics is off by default. The app does not send analytics events until you explicitly opt in via the app's privacy settings. You can turn it back off at any time, which stops further collection. Analytics is configured to avoid collecting advertising or device identifiers for analytics purposes.

8. Data retention

  • On-device data remains until you delete it or uninstall the app.
  • Account & synced data is retained while your account exists. When you delete your account, it is deleted from our servers (see §11).
  • Diagnostics and analytics data are retained for limited periods by the respective providers per their policies.

9. Security

All communication between the app and our servers uses HTTPS (encrypted in transit). Authentication tokens are kept in the device's secure storage. No method of transmission or storage is 100% secure, but we take reasonable measures to protect your data.

10. Your rights

Depending on where you live, you may have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate data (you can edit most data directly in the app).
  • Delete your data and account (see §11).
  • Withdraw consent for analytics or personalized ads at any time.
  • Object to or restrict certain processing, and request portability.

To exercise these rights, use the in-app controls or contact us (see §15).

11. Account & data deletion

You are in control of your data and can delete it at any time — either your whole account, or just your workout data while keeping your account.

Delete your account (and all associated data)

  • In the app: Settings → Delete account. This deletes your data on our servers, then wipes the local database on your device and signs you out.
  • On the web: visit letsworkout.oliviobecker.dev/delete-account.html, sign in with Google, and confirm deletion.

This removes your synced workout history, routines, personal bests, custom exercises and your account record. It cannot be undone.

Delete your data only (keep your account)

This erases your workout data on our servers — workout history, sessions, routines, personal bests, custom exercises and profile settings — and resets your profile, while keeping your account, email and any active subscription so you can continue with a clean slate. It cannot be undone.

Data stored only on your device is removed when you delete your data or account in-app, or when you uninstall the app.

12. Children's privacy

Let's Workout is intended for a general adult audience and is not directed to children. We do not knowingly collect personal data from children. If you believe a child has provided us data, contact us and we will delete it.

13. International data transfers

Our service providers may process data in countries other than yours. Where required, such transfers are made under appropriate safeguards (for example, Standard Contractual Clauses).

14. Changes to this policy

We may update this policy from time to time. We will update the "Last updated" date above and, for material changes, provide notice in the app or on this page. Continued use after changes take effect means you accept the updated policy.

15. Contact

Questions or privacy requests? Contact the developer at [email protected].