Last updated: August 5, 2026
This policy explains what MyPhysique (“we”) collects, why, and the choices you have. It applies to the MyPhysique iOS app, which we currently offer only in the United States. Questions: support@myphysiqueformen.com.
MyPhysique is operated by MyPhysique LLC. You can reach us any time at support@myphysiqueformen.com.
You must be at least 13 to use MyPhysique, and at least 18 to use the body scan. We do not knowingly collect personal information from children under 13; if we learn we have, we delete it promptly. For teens 13–17, we do not sell their data, do not use it for targeted advertising or profiling, and collect only what the app needs to work. If you are a parent or guardian and believe your child under 13 gave us data, contact us at support@myphysiqueformen.com and we will delete it.
Account details (your email), your stats (age, height, weight, sex), your workout and nutrition entries, your display name, avatar and team/social activity, messages you send to the AI coach, reports you file about other users' content, a referral code if you enter one, and — if you use the body scan — the photos you take.
Basic device and diagnostic information needed to run and stabilize the app (such as app version, device type, and crash/error logs). We keep this to a minimum and do not use it to build advertising profiles.
Directly from you (what you type and the photos you choose to take); from your device with your permission (the camera, and Apple Health if you connect it); and from Apple (your subscription status, if you buy a membership). We do not buy data about you from data brokers or collect it from social networks.
If you connect Apple Health, we read only the activity data you allow (such as steps, active energy, and workouts) to display your activity and inform your scores. This data is used solely to provide app features, is never used for advertising, and is never sold or shared. You can turn this off at any time in the iOS Settings › Health privacy controls.
The camera is used only when you choose to take a body scan or add a progress photo. We do not access your photo library or camera in the background.
If you turn on biometric app lock, unlocking uses your device's own Face ID or Touch ID through Apple's secure on-device system. We never receive, see, or store your face or fingerprint data — the device only tells the app whether the check passed. This is separate from the body-scan biometric information described below.
The body scan derives body measurements and a body/facial template from photos you take. Under laws such as Illinois BIPA, Texas CUBI, and Washington's My Health My Data / biometric law this is “biometric information.” We collect it only after your separate, informed, written consent; use it solely to generate and track YOUR scores; never use it to identify you and never for advertising; never sell, lease, or trade it; and never disclose it except to the service providers that run the scan for us under contract, or when required by law. See our Biometric Data Notice for the full retention and destruction schedule.
When you scan a food barcode, the barcode number is sent to a public food database (Open Food Facts) to look up nutrition facts. No account or personal information is attached to that lookup.
Messages you send to the AI coach are processed by Anthropic (the maker of Claude) solely to generate a response for you. Body-scan photos are analyzed by OpenAI through our own secure processing server solely to produce your scores. Under our agreements, these providers do not use your data to train their AI models, do not serve you ads, and do not sell your data.
To calculate your scores, run the features you ask for (coach, teams, reminders, sharing), keep your account synced across your devices, respond to you, enforce our community rules, and keep the service secure and working. We do not use your data for third-party advertising.
Teams, the activity feed, cheers, your display name and avatar are visible to other members you join or interact with. Share cards are created only when you choose to export or share them. Aside from that, we share personal data only with the service providers below or as described in this policy.
If you share your referral code or enter a friend's, we record which code referred which new account so we can grant rewards. That record contains the code and the account it referred — nothing more — and is deleted with your account.
If you report content or block someone, we store the report and the block so we can review the content, enforce our rules, and keep them out of your experience. We may keep records of enforcement actions as needed for safety and legal compliance.
We do not sell your personal information, and we do not share it for cross-context behavioral advertising, as those terms are defined under US state privacy laws. We have not sold personal information in the preceding 12 months. We honor Global Privacy Control and similar opt-out signals where required.
The app contains no third-party advertising, no ad SDKs, and no third-party analytics or tracking SDKs, and it does not use cookies for advertising. We do not track you across other companies' apps or websites.
Supabase (cloud database and sign-in, hosted in the US) stores your account and synced data. Anthropic generates AI-coach responses. OpenAI analyzes body-scan photos to produce your scores, via our own secure server (hosted at Hostinger). Apple processes payments and provides the Health and notification frameworks. Open Food Facts receives only the barcode number for nutrition lookups. Netlify hosts these policy pages only. Each provider that touches personal data may process it only on our instructions, under a written agreement, and not for its own purposes.
We operate in the United States and store data on US-based infrastructure. The app is currently offered only in the US.
Reminders (like streak or league nudges) are optional local notifications scheduled on your device. You can turn them off any time in the app or in iOS Settings. We do not send marketing push notifications.
Account data (your email, stats, workouts, nutrition, scores, social activity) is kept until you delete it or your account, which you can do yourself in the app (Profile → Delete Account) — deletion removes your cloud data. Body-scan material is handled per the schedule in our Biometric Data Notice: We keep your body-scan photos only long enough to generate your scores, then delete the original images from our processing pipeline. The numeric results (your scores and estimated measurements) are kept in your account until you delete them or your account, and in no case longer than 3 years after your last activity — whichever comes first — after which they are permanently destroyed.
Because much of what the app handles is health-related, we also maintain a separate Consumer Health Data Privacy Policy (required by Washington's My Health My Data Act and similar laws) describing categories, sources, purposes, the third parties involved, and your rights. It is available from this page's footer, the app's Privacy & Data settings, and our website.
If a security breach involves your unsecured health information, we will notify you and the Federal Trade Commission as required by the FTC Health Breach Notification Rule, and any other regulators required by law, without unreasonable delay.
If we ever create aggregated or de-identified statistics (for example, average score improvements), they will not identify you, and we commit to never attempting to re-identify de-identified data.
Depending on your state (including California, Colorado, Connecticut, Texas, Virginia and others) you may have the right to know/access, correct, delete, or obtain a portable copy of your data; to opt out of sale, sharing, targeted advertising, and certain profiling (we do none of these); to limit use of sensitive personal information (we use it only to provide the services you request); and to appeal a decision. You can exercise access and deletion yourself in Settings, or email us at support@myphysiqueformen.com from your account email — that is also how we verify requests. An authorized agent may submit a request on your behalf with proof of authorization. We aim to respond within 45 days and will not discriminate against you for exercising your rights. If we deny a request, you may appeal by replying to our response, and we will answer your appeal within 45 days; if you are unsatisfied you may contact your state Attorney General.
We disclose personal data to law enforcement or others only when we believe in good faith that the law requires it (for example a valid subpoena or court order), or when necessary to protect someone's safety. Where legally permitted, we will tell you about the request.
If the app or its operator is ever acquired, merged, or transfers assets, your data may transfer with it — but only under the commitments of this policy, and we will notify you before your data becomes subject to a different privacy policy.
Data is encrypted in transit (TLS) and encrypted at rest by our cloud providers, access is limited to what is needed to run the service, and secrets are stored server-side rather than in the app. No system is perfectly secure; please use a strong, unique password and keep it private.
If we make material changes we will update this page, change the “last updated” date, and ask you to review it again in the app.