Privacy Policy

Last updated: February 12, 2026

Your privacy is important to us. This policy explains how we collect, use, and protect your information.

Information We Collect

Personal Information

When you create an account, we collect basic information such as your name, email address, age, and training preferences. This helps us personalize your training experience.

Training Data

We collect training data you provide, including workout details, performance metrics, heart rate data, and other fitness information. This data is used to generate personalized training plans and provide insights into your progress.

Device and Third-Party Platform Data

When you connect fitness devices or platforms (such as Garmin Connect, Apple Health, or other compatible services), we collect the activity and health data you explicitly authorize us to access. This may include workout summaries, heart rate data, GPS tracks, cadence, elevation, and other metrics recorded by your device.

Important: When you connect a third-party platform to Praxis Running, your data is submitted to and stored by Praxis Running — not by the third-party platform provider. The third-party platform provider (e.g., Garmin) is not responsible for, and has no liability regarding, the data you submit to Praxis Running through their integration. Data may be transferred between Praxis Running and the third-party platform's servers to facilitate the integration you have authorized.

How We Use Your Information

  • Generate personalized training plans and recommendations
  • Track your progress and provide performance insights
  • Analyze workout data to deliver actionable coaching feedback
  • Send you important updates about your training
  • Improve our services and develop new features
  • Provide customer support
  • Ensure platform security and prevent fraud

We do not share your data with any third-party websites, applications, platforms, or services beyond those explicitly listed in this policy without obtaining your prior consent.

Data Sharing and Restrictions

We do not sell your personal information. We do not share your personal information for monetary or other valuable consideration. We may share anonymized, aggregated data for research purposes to improve training methodologies. We only share personal data:

  • With your explicit consent
  • To comply with legal requirements
  • With trusted service providers who help operate our platform (listed in the Third-Party Services section below)
  • With connected device platforms (e.g., Garmin Connect) solely to facilitate the integration you have authorized
  • In case of a business merger or acquisition (with prior notice)

We do not share your end-user data with any third-party websites, applications, platforms, or services that are not disclosed in this privacy policy. Any new data sharing arrangements will be reflected in an updated version of this policy, and you will be notified prior to any such changes taking effect.

Data Security

Praxis Running is solely responsible for maintaining appropriate security of all end-user personal data in our possession. We implement industry-standard security measures to protect your data, including:

  • Encryption of data in transit (TLS/HTTPS) and at rest
  • Regular security audits and monitoring
  • Role-based access controls and secure authentication via httpOnly cookies
  • CSRF protection on all state-changing operations
  • Rate limiting to prevent abuse
  • Input validation and sanitization on all user-submitted data
  • Secure cloud infrastructure with Supabase (row-level security enabled)

Your Rights

You have the right to:

  • Access and download your personal data
  • Correct inaccurate information
  • Delete your account and data
  • Restrict data processing
  • Data portability
  • Withdraw consent at any time

Cookies and Tracking

We use essential cookies for authentication and site functionality. We do not use third-party tracking cookies for advertising. You can manage cookie preferences in your browser settings.

Data Retention

We retain your data as long as your account is active. After account deletion, we may retain anonymized data for research and service improvement. Training data is typically deleted within 30 days of account closure.

Artificial Intelligence and Automated Processing

Praxis Running may use artificial intelligence (AI) and machine learning technologies to enhance your training experience. This section describes how these technologies interact with your data.

How We Use AI

We may use AI-assisted processing for the following purposes:

  • Generating personalized training plan recommendations based on your fitness data and goals
  • Analyzing workout patterns to provide coaching insights and performance feedback
  • Identifying trends in your training data to help optimize your preparation

Your Data and AI

  • Your personal data is not used to train general-purpose AI models
  • AI processing is performed solely to deliver features and insights directly to you
  • We do not sell, license, or provide your data to third-party AI providers for their own model training
  • Any AI features that process your data will be clearly identified within the application

Consent and Opt-Out

Before any AI-powered feature processes your personal data, we will obtain your explicit consent. You may withdraw your consent and opt out of AI-assisted data processing at any time through your account settings (Settings → Privacy) or by contacting us at [email protected]. Opting out of AI features will not affect your access to core platform functionality.

Changes to This Policy

We may update this policy periodically. We'll notify you of significant changes via email or through the platform. Continued use after changes constitutes acceptance of the updated policy.

GDPR Rights (European Users)

If you are located in the European Economic Area (EEA), you have additional rights under GDPR:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a machine-readable format
  • Right to Object: Object to data processing for specific purposes
  • Right to Withdraw Consent: Withdraw consent at any time
  • Right to Lodge a Complaint: File a complaint with your local supervisory authority

Legal Basis for Processing: We process your data based on consent, contractual necessity (to provide our services), and legitimate interests (service improvement and security).

Data Controller: Praxis Running acts as the data controller for your personal information.

EU Representative: For GDPR-related inquiries, contact [email protected]

CCPA Rights (California Users)

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with specific rights:

  • Right to Know: Request disclosure of personal information we collect and how we use it
  • Right to Delete: Request deletion of your personal information
  • Right to Opt-Out: Opt-out of the sale of personal information (Note: We do NOT sell personal information)
  • Right to Non-Discrimination: We won't discriminate against you for exercising your CCPA rights

Categories of Personal Information We Collect:

  • Identifiers (name, email, account ID)
  • Personal information (age, fitness preferences)
  • Internet activity (app usage, workout data)
  • Biometric information (heart rate, if provided)
  • Geolocation data (if enabled for workout tracking)

Do Not Sell My Personal Information: We do not sell personal information to third parties. We do not share personal information for monetary consideration.

To exercise your CCPA rights, contact us at [email protected] with "CCPA Request" in the subject line.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequate protection under applicable data protection laws
  • Secure data processing agreements with service providers

Children's Privacy

Praxis Running is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we learn that we have collected information from a child under 13, we will promptly delete it. If you believe a child has provided us with personal information, please contact us at [email protected].

Users between 13 and 18 must have parental or guardian consent to use our service.

Third-Party Services

We use the following third-party services to operate Praxis Running. Each service processes data only as necessary for its stated purpose:

  • Supabase: Database hosting, authentication, and file storage. Your account data, training data, and uploaded activity files are stored on Supabase infrastructure. See the Supabase Privacy Policy.
  • Stripe: Payment processing for subscription billing. Stripe processes your payment information directly — Praxis Running does not store your credit card details. Stripe is PCI DSS compliant. See the Stripe Privacy Policy.
  • Garmin Connect: When you connect your Garmin device or account, activity data is transferred between Garmin and Praxis Running to provide workout analysis. Garmin acts as an independent data controller and is not a data processor for Praxis Running. Data you submit to Praxis Running through the Garmin integration is our responsibility, not Garmin's. See the Garmin Privacy Policy.

We do not share your personal data with any third-party services beyond those listed above without your prior consent. If we add new third-party integrations, this policy will be updated and you will be notified before any data sharing occurs.

How to Exercise Your Rights

To exercise any of your privacy rights:

  • Access/Download Data: Go to Settings → Privacy → Download My Data
  • Delete Account: Go to Settings → Privacy → Delete Account
  • Manage Preferences: Go to Settings → Privacy
  • Email Request: Contact [email protected]

We will respond to your request within 30 days (45 days for complex requests). We may verify your identity before processing requests.

Contact Us

If you have questions about this privacy policy or your data, please contact us: