Introduction
Ascent ("we", "our", "us") is committed to protecting your personal data. This privacy policy explains how we collect, use, store, and protect your information when you use our mobile application and coaching services.
This policy applies to all users of the Ascent app and coaching services. By using our services, you agree to the collection and use of information as described in this policy.
Contact: support@myascent.app
Information We Collect
Personal Information
When you use Ascent, we collect:
- Identity Data: Name, date of birth, gender
- Contact Data: Email address, phone number
- Body Metrics: Weight, height, body fat percentage
- Health Data: Health conditions, injuries, current medications
- Progress Data: Progress photos, workout history, meal and nutrition logs
- Account Data: Login credentials and authentication information
How We Collect Your Data
- From your coach: Your account is created by your coach as part of your coaching programme
- Directly from you: When you log workouts, meals, measurements, or upload progress photos within the app
- Automatically: Device information and app usage data required for the app to function
How We Use Your Information
We use your personal data to:
- Deliver personalised fitness and nutrition coaching
- Track your progress and adjust your programme accordingly
- Allow your assigned coach(es) to view and manage your training and nutrition
- Send you notifications, reminders, and updates about your programme
- Communicate with you about your coaching service
- Improve our app and services
Legal Basis for Processing (GDPR)
- Contract: Processing is necessary to deliver the coaching service you have signed up for
- Legitimate Interest: To improve our services and communicate with you
- Consent: For optional communications and marketing (where applicable)
Who Has Access to Your Data
Your Coaching Team
Your personal data, including body metrics, progress photos, health information, and training history, is accessible to:
- Your assigned coach
- Other coaches within Ascent who may support your programme
This access is necessary to provide you with effective coaching.
Third-Party Service Providers
We use the following services to operate Ascent:
| Provider | Purpose | Data Shared |
|---|---|---|
| Supabase | Database and authentication | All account and progress data |
| Resend | Email communications | Email address, name |
| Stripe | Payment processing | Payment and billing information |
| Apple (APNs) | Push notifications | Device tokens |
These providers process data on our behalf and are contractually obligated to protect your information.
We do not sell your personal data to third parties.
Data Storage and Security
Your data is stored securely using Supabase, which provides:
- Encryption in transit (TLS/SSL)
- Encryption at rest
- Row-level security policies
- Secure authentication
Progress photos and sensitive health data are stored with the same level of protection as all other personal data.
Data Location: Your data may be processed and stored on servers located outside the UK. Where this occurs, we ensure appropriate safeguards are in place in compliance with UK GDPR.
Data Retention
We retain your personal data for as long as you remain an active coaching client. After your coaching ends:
- Your account data is retained for up to 12 months in case you return
- After 12 months of inactivity, your data is deleted unless we are required by law to retain it
- You may request deletion at any time (see Your Rights below)
Your Rights
Under UK GDPR, you have the right to:
- Access: Request a copy of the personal data we hold about you
- Rectification: Request correction of inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Request that we limit how we use your data
- Portability: Request your data in a portable format
- Object: Object to certain types of processing
- Withdraw Consent: Where processing is based on consent, you may withdraw it at any time
To exercise any of these rights, contact us at support@myascent.app. We will respond within 30 days.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk if you believe your rights have been violated.
Age Requirement
Ascent is intended for users aged 18 and over. We do not knowingly collect data from anyone under 18. If you believe we have collected data from a minor, please contact us immediately.
Changes to This Policy
We may update this privacy policy from time to time. We will notify you of significant changes via email or through the app. The "Last updated" date at the top of this policy indicates when it was last revised.
Contact Us
If you have any questions about this privacy policy or how we handle your data:
Email: support@myascent.app