Privacy Policy — Pitpull
Pitpull (“the app”) is a personal strength-training tracker. This policy explains what data the app handles and how.
Who we are
Pitpull is developed by an independent developer (“we”, “us”).
Contact: h.hirychau@gmail.com
Data stored locally on your device
All of the following is stored locally on your device (an on-device SQLite database and app preferences). Pitpull does not intentionally send this content to Firebase or to us.
- Workout history — exercises, sets, reps, weights, dates, notes, goals, and derived training analytics (volume, streaks, personal records, etc.).
- Body metrics you enter — body weight, height, and date of birth. These are used only to compute on-device metrics (e.g. fitness assessment) and to display your progress.
- App preferences — theme, measurement system (metric/imperial), rest-timer defaults, and widget configuration.
Firebase Analytics
The Android app uses Google Analytics for Firebase to understand whether the app works as expected and how its general features are used. Analytics automatically processes limited technical and usage data, including:
- a randomly generated app-instance identifier and Firebase installation identifier;
- the Android Advertising ID when it is available on the device;
- app lifecycle and usage events, such as first open, session start, screen views, and engagement time;
- app version, installation source, device model, operating-system version, language, and general device information; and
- an approximate region derived from a masked IP address.
We use this information in aggregated reports to understand app adoption, reliability, and general usage. Pitpull does not use Firebase Analytics to serve advertisements, and we do not set a Firebase user ID or intentionally send your name, email address, workout history, notes, body metrics, or Health Connect data to Analytics.
Firebase Crashlytics
The Android app uses Firebase Crashlytics to detect crashes, application-not-responding errors, and other stability problems. Crashlytics initialises automatically when the app starts. When a relevant error occurs, it may process:
- stack traces, crash time, thread state, and relevant application state;
- the app package, version, and build information;
- device model, operating-system version, CPU architecture, available memory and storage, and whether the device appears to be rooted;
- random installation and session identifiers; and
- Analytics breadcrumb events immediately preceding a crash.
We use this information only to investigate defects and improve stability. We do not set a Crashlytics user ID or intentionally attach workout history, notes, body metrics, or Health Connect data to crash reports.
Service provider
Firebase Analytics and Crashlytics are provided by Google LLC, which processes the data described above on our behalf and under the applicable Firebase and Google Analytics terms. Firebase services may process data on Google’s global infrastructure, including outside your country. Where required, Google relies on recognised transfer mechanisms such as adequacy frameworks and Standard Contractual Clauses.
For more information, see Privacy and Security in Firebase, Google Analytics data collection, and the Google Privacy Policy.
Health Connect
If you choose to connect Pitpull to Health Connect, the app can:
- Write workout sessions (Exercise), derived active minutes, active calories, and body weight (Weight) to Health Connect, so your training is available to other health apps you authorise.
- Read recent sleep sessions if you enable the optional sleep recovery setting, so Pitpull can make recovery/readiness suggestions more conservative after short sleep. If sleep permission or recent sleep data is unavailable, Pitpull ignores this factor.
Health Connect access is optional and only happens after you explicitly grant permission. You can revoke it at any time in Health Connect settings. Data shared through Health Connect is governed by Google’s Health Connect and your device settings; Pitpull does not send Health Connect data to us or Firebase. We do not use Health Connect data for advertising or share it with third parties.
Other network usage
The app downloads a public exercise catalog (exercise names and translations) so the built-in exercise list can be kept up to date. The request does not include workout history, body metrics, preferences, or Health Connect data. As with any HTTPS request, the hosting provider may receive standard connection information such as an IP address and user-agent metadata.
Backup
If you enable Android Backup, your device’s operating system may back up the app’s local database and preferences to your own Google Drive account via Android Auto Backup / device-to-device transfer. This is an Android platform feature controlled by your device settings; the data goes to your Google account, not to us.
Data sharing and selling
We do not sell or rent personal data and do not share your workout history, body metrics, notes, preferences, or Health Connect data with advertisers. Limited usage and diagnostic data is transmitted to Google only to provide Firebase Analytics and Crashlytics as described in this policy. We may also disclose information if required by law or necessary to protect the rights, safety, and security of users, the app, or others.
Data retention and deletion
- Local data remains on your device until you delete it, clear the app’s data, or uninstall the app.
- Health Connect data is controlled through Health Connect. Revoking permission stops future access but does not delete records already written to Health Connect.
- Analytics user- and event-level data is retained according to the Google Analytics property settings, for no longer than 14 months for a standard property. The retention setting does not necessarily remove data from standard aggregated reports.
- Crashlytics reports, stack traces, and associated identifiers are generally retained for 90 days before Google begins removing them from live and backup systems.
Uninstalling Pitpull stops future collection from that installation. Clearing app data removes local data and installation identifiers; if you launch the app again, new identifiers are generated and collection resumes. Neither action immediately removes information already transmitted to Google. Because Pitpull has no accounts and does not associate Firebase records with your name or email address, we may be unable to identify a particular remote record as yours without an applicable installation identifier.
Your choices and rights
You can clear Pitpull’s local data or uninstall the app at any time, revoke Health Connect permissions in Android settings, and reset or remove your Android Advertising ID through your device’s privacy settings. Depending on where you live, you may have rights to request access, correction, deletion, restriction, or objection to processing, and to complain to your local data-protection authority. Contact us using the address below to make a request.
Security
Network data is transmitted using HTTPS/TLS. Local data is protected by the security controls of your Android device. No storage or transmission method is completely secure, and we cannot guarantee absolute security.
Children
The app is not directed to children and does not knowingly collect data from children.
Changes
We may update this policy when the app or applicable requirements change. Material changes will be reflected by the “Last updated” date above and, where appropriate, communicated through the app or its store listing.
Contact
Questions about this policy: h.hirychau@gmail.com