← Back to the app

Privacy Policy

Version 2026-08-12 · Updated August 12, 2026

Draft for review. This document was generated as a starting point and requires review by a licensed attorney before production use.

This policy explains what VO4 collects, what it deliberately does not collect, and how you can export or delete everything.

1. What we collect

Anonymous device ID: a random UUID generated on this device on first open and attached to usage events. It is not linked to your name, phone number or advertising identifiers.

Usage events: which screens and steps you reach, whether a session was started, completed or abandoned, which feedback button you tapped, timer and player actions, and technical metadata about session generation (model, latency, retry count, trust status).

Account email: only if you choose to create an account so your history syncs across devices.

Training feedback: your after-session rating, optional feature feedback text, and the recommend score if you answer it.

On-device data: your diagnostic answers, baseline results, tier, session history, learnings and chat history are stored in your browser's local storage on this device.

2. What we never collect

We do not put your health details — the constraints or injuries you selected, your baseline test numbers, or anything you describe about your body — into analytics events.

We do not store or analyse the contents of your coach chat in analytics.

We do not sell your data, we do not run advertising trackers, and we do not build advertising profiles.

3. How we use data

To personalise your sessions, walks and dosing; to keep programming aligned to your constraints; to detect and correct AI generation failures; to monitor reliability and fix bugs; and to decide which features to improve. That is the entire purpose.

4. Where data is stored

Server-side data (events, generation metadata, feedback, and your account) is stored in our managed Supabase Postgres database with row-level security. On-device data stays in your browser's local storage until you delete it or clear your browser data.

5. Third parties

AI gateway: to generate a session, an audit check, weekly recap or chat reply we send the model your tier, selected constraints and preferences, goal, hobbies, learnings, recent event summaries, and your chat message. We do not send your name, email, contact details or device ID in those prompts.

Infrastructure and hosting providers process data on our behalf under their own security terms. We use no advertising or data-broker third parties.

6. Retention

Usage events and generation metadata are kept while they remain operationally useful, and no longer than 24 months. Account records are kept until you delete your data or ask us to close the account. Your on-device history is capped and rolls over automatically.

7. Your rights: export and deletion

Open the Profile tab. “Download my data” exports your server-side rows as a JSON file. “Delete my data” erases your local history on this device and your rows on our servers. Deletion is immediate and cannot be undone. You may also email us to exercise access, correction, portability or deletion rights.

8. Analytics consent

The analytics toggle in the Profile tab is yours to change at any time. With it off, we send only the minimum operational events — a session completion signal and service-health signals — and everything else stays on your device.

9. Children's privacy

The app is not directed to children under 13 and we do not knowingly collect their data. Users aged 13 to 17 need parent or guardian consent. If you believe a child under 13 has used the app, contact us and we will delete the associated records.

10. Changes to this policy

If this policy changes materially, we increment its version and re-present the consent gate on your next open so you can review it before continuing.

11. Contact

Privacy questions and requests: wanderlustn.fit@gmail.com.

TermsPrivacyContact