Privacy Policy

Effective Date: September 14, 2025

If you have any questions or requests, please contact us.

1. Information We Collect

Personal Information:

  • Name (entered during onboarding).
  • Date of Birth (entered during onboarding).
  • Gender (optional: male, female, other, prefer not to say).
  • Email address, profile avatar, and full name (if signing up via Google/Apple authentication; Apple may provide a private relay email).
  • Profile photo (if uploaded from your device).

Location & Activity Data:

  • GPS/geolocation data (latitude, longitude, speed), collected only during active walks—never when paused, stopped, or outside a walk session.
  • All in-app activity metrics (distance walked, speed in brisk/recovery intervals, historical charts/trends) are derived exclusively from the geolocation data collected during walks.

Apple Health Data (Read & Write):

  • If you grant permission, Brisk can read the following data from Apple Health: active energy, body weight, double support time, and workout records related to walking and similar activities.
  • If you grant permission, Brisk can write the following data to Apple Health: active energy, body weight, and workout records created in Brisk, so they appear alongside your other health data.
  • Apple Health data accessed or written by Brisk is used only on your device to power app features and is not copied or stored in Brisk's backend or external servers.

2. How We Collect Data

  • Direct user input during onboarding and profile management.
  • Google/Apple authentication providers (if used for signup).
  • Mobile device GPS sensors, only while a walk is actively in progress.
  • Profile photo uploads from your device.
  • Apple Health permissions that you explicitly grant in the iOS Health access screen, which control which categories Brisk may read from or write to.

3. Use of Your Information

  • To personalize and enable your Brisk experience, including tracking walks, displaying routes, and showing charts of performance over time.
  • To allow secure account creation, login, and photo/avatar display in your user profile.
  • To provide records of historical walk metrics and trends derived from your GPS data.
  • To integrate with Apple Health so that eligible Brisk workouts, active energy, and weight entries can appear in Apple Health, and so Brisk can read relevant Apple Health metrics (such as active energy, weight, double support time, and workouts) to enhance your training insights.
  • To fulfill requests regarding account management, such as viewing, editing, or deleting data.

4. Data Sharing & Disclosure

  • We do not share your personal or activity data with any external third parties (analytics, advertisers, cloud partners, or research entities).
  • Profile and GPS-derived walk data is stored securely in our backend database, hosted by Supabase.

Supabase provides strong data protection:

  • Data is encrypted in transit (SSL/TLS) and at rest (such as AES-256).
  • Access is restricted through strict Row Level Security (RLS), ensuring only each user can access their own sensitive data, such as walk and location records.
  • Additional controls and automated backups further safeguard your information.
  • Apple Health data that Brisk reads or writes remains within Apple's Health system and on your device; Brisk does not upload Apple Health records to its own servers.

5. Data Access, Review, & Deletion

  • You can view and manage your profile and entire walk history in the app at any time.
  • You may delete any individual walk record, or your entire account and all associated data, instantly from the app's settings.
  • When you delete your account, all personal and activity information stored in Brisk's backend (such as profile data and GPS-derived walk history) is permanently erased from our systems.
  • Deleting your Brisk account does not automatically delete any data that has already been written to Apple Health; you can manage and delete those entries directly in the Apple Health app.

6. Data Protection Measures

  • Secure authentication (OAuth, JWT) and Row Level Security for database access.
  • Encryption at rest and in transit, per Supabase's latest standards.
  • Automated database backups and role-based access controls.
  • Only authorized, authenticated users may access their own data.

7. Children's Privacy & Age Requirements

  • Brisk is intended for users age 13 and older only.
  • We do not knowingly collect, solicit, or store information from children under 13.
  • The app enforces a minimum age of 13 both via App Store age rating (13+).

8. Policy Updates

  • Our Privacy Policy may be updated occasionally for new features, regulatory changes, or improvements in our data practices. We will notify you of major updates in-app and update the effective date at the top of this document. Continued use of Brisk constitutes acceptance of any changes.