Privacy Policy
Last updated: February 27, 2026
This Privacy Policy explains how Polytropos LLC ("we", "us", or "our") collects, uses, and protects your information when you use ErgToday ("Service"). By using the Service, you agree to the collection and use of information as described here.
1. Information We Collect
Account Information
When you create an account, we collect your email address and display name. If you sign in via Google or Apple, we receive basic profile information (email and name) from that provider.
Workout and Training Data
We collect workout data you enter manually and data synced from connected services such as Concept2 Logbook, Garmin Connect, and Apple HealthKit. This includes workout metrics (distance, pace, heart rate, stroke rate, power), training history, and performance data.
Health and Wellness Data
If you connect Oura, Garmin, or Apple HealthKit, we collect sleep, heart rate variability, recovery, and activity data from those services. If you use our daily check-in feature, we collect self-reported data such as sleep quality, fatigue, motivation, and soreness. This data is used to compute readiness scores and personalize training recommendations.
Location Data
If you provide a city or zip code, we use it to fetch local weather and air quality conditions from Open-Meteo (a public weather API) to factor into training recommendations. We do not track your GPS location.
Usage Data
We automatically collect basic usage data such as pages visited, feature interactions, and device type. We use Sentry for error monitoring, which may collect error traces and device metadata.
Cookies and Tracking
We use strictly necessary cookies to maintain your session and authentication state. We use Sentry for error monitoring, which may set cookies to track error sessions. We do not use third-party advertising cookies, social media tracking pixels, or cross-site tracking technologies. We do not serve ads or share data with ad networks.
2. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service
- Generate personalized training plans and recovery recommendations
- Sync data with your connected third-party accounts
- Send transactional emails (account verification, password resets)
- Respond to support requests
We do not sell your personal information. We do not use your data for advertising.
3. Third-Party Services
When you connect third-party services (Concept2 Logbook, Garmin Connect, Oura, Apple HealthKit), we access your data through their APIs using OAuth authorization. We only request the permissions necessary to sync your workout and recovery data. You can disconnect these integrations at any time through the Settings page, which revokes our access.
We use third-party services for authentication (Google, Apple), payment processing (Stripe), error monitoring (Sentry), and infrastructure hosting. These providers process data on our behalf under data processing agreements and are bound by their own privacy policies.
Apple HealthKit
Data obtained through Apple HealthKit is used solely to provide the core functionality of the Service, including readiness scores, training recommendations, and recovery tracking. We do not use HealthKit data for advertising, marketing, or data mining purposes. We do not sell or share HealthKit data with third parties for advertising or marketing. HealthKit data is not stored in iCloud or transferred to any third party except as necessary to provide the Service to you.
4. Data Storage and Security
Your data is stored on secure servers located in the United States. We use encryption in transit (HTTPS) and follow industry-standard practices to protect your information. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
5. International Data Transfers
If you access the Service from outside the United States, your data will be transferred to and processed in the United States, where our servers are located. By using the Service, you consent to this transfer. For users in the European Economic Area (EEA), United Kingdom, or Switzerland, we rely on your consent and, where applicable, standard contractual clauses to lawfully transfer data outside those regions.
6. Data Retention
We retain your data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where retention is required by law or for legitimate business purposes (e.g., fraud prevention, legal compliance).
7. Your Rights
Depending on your location, you may have additional rights under applicable privacy laws.
All Users
You have the right to:
- Access and download your personal data
- Correct inaccurate information
- Delete your account and associated data
- Disconnect third-party integrations
European Economic Area, UK, and Switzerland (GDPR)
Our lawful basis for processing your personal data is your consent (provided when you create an account and connect integrations) and our legitimate interest in providing and improving the Service. You also have the right to:
- Withdraw consent at any time without affecting the lawfulness of processing before withdrawal
- Request restriction of processing or object to processing
- Data portability (receive your data in a structured format)
- Lodge a complaint with your local data protection authority
California (CCPA/CPRA)
If you are a California resident, you have the right to know what personal information we collect, request deletion, and opt out of the sale or sharing of your personal information. We do not sell or share your personal information as defined under the CCPA/CPRA. We do not use or disclose sensitive personal information for purposes other than providing the Service.
To exercise any of these rights, use the Settings page or contact us at the address below. We will respond to verifiable requests within the timeframes required by applicable law.
8. Children's Privacy
The Service is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, contact us and we will delete it.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a new "Last updated" date. Continued use of the Service after changes constitutes acceptance.
10. Contact
Questions about this Privacy Policy? Contact us at [email protected].