Last updated: September 20, 2026
We collect the minimum data needed to run the service. We don't sell your info. We use industry-standard security. You can delete your account anytime.
Health information is “special category” data under UK GDPR. We handle it on the basis of your explicit consent (Article 9(2)(a)), which you give when you complete the screening, and we keep as little of it as we can — see above. You can withdraw consent by emailing us, though we may not be able to let you keep training if you do.
We use industry-standard encryption for data in transit and at rest. Passwords are hashed. Payment processing is handled by certified PCI DSS compliant providers. We regularly review and update our security practices.
We use a small number of providers to run the service. Each one only processes what it needs for its part of it:
These act as our processors under UK GDPR: they handle your data on our instructions, and we remain responsible to you for it. Each has its own privacy policy. We do not sell your data, and we do not use third-party advertising or tracking in the app.
You have the right to:
We keep your data as long as your account is active. If you delete your account, we remove your personal information within 30 days, though we may retain anonymized usage data for analytics.
We use essential cookies to keep you logged in and remember your preferences. We also use analytics cookies to understand how people use the app. You can disable non-essential cookies in your browser settings.
We operate globally. If you're in the EU/UK, you have rights under GDPR. We comply with applicable data protection laws in your jurisdiction.
We'll update this policy occasionally. If we make significant changes, we'll notify you by email or through the app. Continued use means you accept the updated policy.
Questions about privacy? Email us at privacy@thealpines.com