← jimmy.

Privacy Policy

Effective September 24, 2026

We've kept this short and in plain language so you can actually read it.

Who we are

jimmy is owned and operated by Gabriel Sanson and Lucia Urcuyo, based in Atlanta, Georgia, USA. We are jointly the data controllers for the information described in this policy. The App Store seller of record is Lucia Urcuyo. When this policy says "we" or "jimmy," that's us. You can reach us at gabrielesansonc@gmail.com.

What we collect

Account info. Your name, email, and password (hashed — we never see the plain password).

What you log in the app. The exercises and routines you create, the workouts and sets you record, and your unit preference (kg or lb).

Authentication metadata. If you sign in with Google or with Apple, we receive your email and basic profile info from that provider so we can create your account. If you use Sign in with Apple and choose Hide My Email, we only ever receive Apple's private relay address, never your real one.

Payment info. We use Stripe for payments. We never see or store your card details — Stripe does. We receive a customer ID and subscription status from Stripe so we know whether to grant you access.

Technical data. Standard server logs (IP, user agent, timestamps) for debugging and abuse prevention.

Coach data (only if you enable Coach). Your stated fitness goal (free-text); your training days, experience level, and any constraints you provide; your answers to our Coach health check (seven yes/no health questions) and your confirmation that you are 18 or older and not pregnant — we never ask for your date of birth; your timezone (so we can deliver weekly plans at a sensible local time); and your responses to AI-generated plans (accept, decline, modify, decline reason).

Health data (Apple Health and Apple Watch)

If you grant permission, jimmy uses Apple's HealthKit framework: the Apple Watch app records your workout, and the iPhone app reads the heart rate recorded during your workouts. This is entirely optional — jimmy works fully without it, and you can revoke access at any time in iOS Settings → Privacy & Security → Health.

What we read. Your active energy burned (calories) and your heart rate, only for the time span of your jimmy workouts — never outside them.

What we write. When you finish a workout, we save it to Apple Health as a strength-training workout, so it appears in the Fitness app and counts toward your activity rings.

What leaves your device. A summary, stored with that workout on our servers so we can show it back to you: the workout's total active calories, its average heart rate, the highest heart rate recorded during each set, and the name and type of the device that measured it (for example "Apple Watch"). The full second-by-second heart-rate readings stay on your device and in Apple Health; they are used on your phone to draw your heart-rate chart and are never uploaded.

We use health data for one purpose: showing you your own workout statistics inside the app. In line with Apple's requirements and our own policy, health data is never used for advertising or marketing, never sold or shared with data brokers or any third party, never used for AI model training, and never stored in iCloud. It is not shared with our AI provider.

Heart rate and calorie figures from a consumer smartwatch are estimates for fitness tracking. They are not medical measurements and must not be used to diagnose or monitor any health condition.

AI-generated content and audit log

Coach is off by default. Nothing described in this section happens unless you turn it on yourself — during setup or in Settings — and turning it off stops it.

Who the AI provider is. When you use Coach, we send a summary of your training to Anthropic, PBC (the maker of Claude) and use its Claude Sonnet model to generate your weekly plan and recap. What we send: your stated goal, training days, experience level, constraints, your exercise names, and a summary of recent workouts. What we do not send: your name, email, payment details, health-check answers, pregnancy status, or any Apple Health data.

Each call and your response to it are stored in an internal audit log alongside metadata about which model produced the suggestion.

We retain audit-log entries for seven (7) years for safety, quality-assurance, and legal-defense purposes, even if you delete your account before that period ends. After account deletion, audit-log entries are kept in pseudonymized form — we keep the input/output content but unlink it from your personal identifiers, where legally permitted.

Under Anthropic's commercial terms, what we send is not used to train its models, and Anthropic deletes it from its systems within 30 days (it may keep content flagged for violating its usage policies for longer, as its own policies describe).

Why we collect it

  • To run your account.
  • To save and show you your workouts.
  • To process payments and manage your subscription.
  • To prevent abuse and fix bugs.

We do not sell your data. We do not show ads. We do not share your workout data with third parties for marketing.

Who we share it with

We use these services to run jimmy. We share only what each service needs to do its job.

  • Supabase — hosts your account, profile, and workout data.
  • Stripe — processes payments. PCI-DSS certified.
  • Google — provides OAuth if you choose Google sign-in.
  • Vercel — hosts the application and serves it to your browser.
  • Apple — provides Sign in with Apple if you choose it, and processes subscriptions purchased in the iPhone app.
  • RevenueCat — manages iPhone subscription status on our behalf. Receives your account ID and purchase state, nothing else.
  • Anthropic — generates Coach plans and recaps, only if you enable Coach. Receives the training summary described above. Does not receive your name, email, health data, or payment details.

We do not share your Apple Health data with any of these providers.

Cookies

We use a session cookie to keep you signed in. That's it. No tracking cookies, no advertising cookies, no analytics that follow you around the web.

How long we keep your data

For as long as your account is active. If you delete your account, we delete your profile and workout data within 30 days.

We keep payment records as long as US tax law requires (typically 7 years).

We keep Coach audit-log entries for 7 years — see the section above for details.

Your rights

You can access, correct, or delete your data at any time. You can delete your account yourself in the app (Settings → Delete account) or by emailing us at gabrielesansonc@gmail.com and we'll handle it.

If you're in the EU or UK, you have additional rights under the GDPR / UK GDPR, including the right to access, correct, port, and (subject to safety-retention exceptions for Coach audit logs) erase your personal data. You also have the right to lodge a complaint with your local data protection authority. The legal basis for retaining Coach audit logs is our legitimate interest in safety, quality, and legal defense (GDPR Article 6(1)(f)).

If you're in California, you have rights under CCPA. We don't sell your data, so there's nothing to opt out of, but you can still request access or deletion.

Consumer health data

Some of what jimmy handles is "consumer health data" under laws such as Washington's My Health My Data Act. Our separate Consumer Health Data Privacy Policy explains exactly what that data is, why we collect it, who receives it, and how to access or delete it.

If something goes wrong

If we ever discover a breach that exposes your personal or health information, we will notify you and any regulators the law requires, without unreasonable delay and within the deadlines the law sets.

Children

jimmy is for ages 13 and up. We do not knowingly collect data from anyone under 13. If you're a parent and believe we have, please email us and we'll delete it.

Security

We use industry-standard protections — HTTPS, encrypted database at rest, hashed passwords. No system is ever 100% secure, but we take this seriously and patch issues quickly.

Changes to this policy

If we make material changes, we'll let you know in the app or by email before they take effect. For minor changes (typos, clarifications), we'll just update this page.

Contact

gabrielesansonc@gmail.com. We read everything.