Data Integrity Protocol

Privacy Policy

Effective: 26 May 2026 // Version 4.2

1. Overview

Summit Training ("Summit", "we", "us") provides an AI-powered personal training and nutrition tracking application. This Privacy Policy explains what we collect, how we use it, who we share it with, and the rights you have over your data.

By creating an account or using Summit, you agree to the practices described here. If you do not agree, do not use the service.

2. Data We Collect

We collect only what is necessary to deliver adaptive coaching:

  • Account data: name, email, password hash, country, date of birth.
  • Biometric data: height, weight, body composition, heart rate, heart-rate variability, sleep, recovery scores.
  • Training data: exercises, sets, reps, load, velocity, perceived exertion, and (optionally) form-analysis video frames.
  • Nutrition data: logged meals, macros, micronutrients, photos of food you submit to the recognition engine.
  • Device & usage data: device model, OS version, app version, crash logs, anonymized analytics.

3. How We Use Your Data

Your data powers the product. We use it to:

  • Generate personalized training and nutrition programs.
  • Adapt workouts in real-time based on biometric signals.
  • Provide progress analytics and predictive performance modeling.
  • Detect crashes and improve reliability.
  • Comply with legal obligations.

We do not use your biometric or nutrition data for advertising and we do not sell it to insurers, brokers, or third-party marketers.

4. AI Processing

On-device AI handles real-time form correction and immediate session adjustments where possible. Aggregate model training and long-horizon predictive analytics may run on our servers using stripped, pseudonymized records. Personal identifiers are removed before any record enters a training pipeline, and you can opt out of model contribution from the app settings.

5. Sharing & Third Parties

We share data only with processors that help us operate the service:

  • Cloud hosting and storage providers.
  • Payment processors for subscription billing.
  • Crash reporting and product analytics, configured to exclude health data.

All processors operate under contractual obligations consistent with this policy. We disclose data to authorities only when legally compelled.

6. Security

Data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Access to production systems is restricted, logged, and reviewed. No system is perfectly secure, but we treat your physiological data as a sacred trust and invest accordingly.

7. Data Retention

We retain your account and training history for as long as your account is active. Deleting your account triggers permanent erasure of personal data within 30 days, except where retention is legally required (e.g. billing records).

8. Your Rights

Depending on your jurisdiction (GDPR, CCPA, and similar), you have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate data.
  • Export your data in a portable format.
  • Delete your account and associated data.
  • Opt out of model training contribution.

Submit requests in-app or by emailing summittraining477@gmail.com.

9. Changes to This Policy

We may update this policy as the product evolves. Material changes will be announced in-app and by email at least 14 days before they take effect.

10. Contact

Questions or requests: summittraining477@gmail.com.