Privacy Policy
Last updated: March 2026
At Mind Core Fitness, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our apps (including Core Buddy, Core HIIT, and any future Mind Core Fitness apps), or use any of our services.
Information We Collect
We may collect information about you in a variety of ways:
- Personal Data: When you contact us, sign up for our programmes, or create a Core Buddy account, we may collect your name, email address, phone number, and other contact details you provide.
- Health and Fitness Information: To provide personalised training services, we may collect information about your fitness goals, health conditions, and exercise preferences.
- Usage Data: We automatically collect certain information when you visit our website, including your IP address, browser type, operating system, access times, and the pages you have viewed.
- Analytics Data: We collect anonymised usage analytics within the Core Buddy app via Mixpanel, including feature usage, screen views, and user interactions. This data is linked to your user ID to help us understand how the app is used and improve our services.
Core Buddy App Data
When you use the Core Buddy app, we collect and store the following additional information:
- Account Information: Your email address and display name used to create your Core Buddy account via Firebase Authentication.
- Workout Data: Information about workouts you generate, complete, and save, including exercise selections, focus areas, durations, and completion history.
- Nutrition Data: Food items you log, including meal names, calorie counts, macronutrient breakdowns (protein, carbs, fats), and barcode scan data. Barcode scanning uses your device camera locally and does not store images.
- AI Meal Scanner Data: If you use the AI meal scanner, photos of your meals are sent to our servers for analysis by an AI model (Anthropic Claude) to estimate nutritional content. Meal photos are processed in real time and are not permanently stored on our servers. The estimated nutritional data (calories, protein, carbs, fats) is saved to your account.
- Habit Tracking Data: Daily habit completions (such as training, protein intake, steps, and water) and streak information.
- Body Stats: Any body measurements or stats you choose to record within the app.
- Social/Buddy Data: If you use the Buddies feature, we store your buddy connections, buddy requests, posts, comments, likes, and mentions.
- Push Notification Tokens: If you enable push notifications, we store Firebase Cloud Messaging (FCM) tokens associated with your devices to deliver notifications.
- Notification Preferences: Your chosen notification settings (e.g. which notification types are enabled or disabled).
- Subscription Information: Your subscription tier (Free, Monthly, or Annual) and payment status, processed securely through Stripe (web), Apple In-App Purchase (iOS), or Google Play Billing (Android).
Core HIIT App Data
When you use the Core HIIT app (a HIIT interval timer within the Mind Core Fitness platform), we collect and store the following additional information:
- Timer Configuration: Your workout settings including work/rest durations, exercise and round counts, timer mode (HIIT, Ascending, Descending, Pyramid), and related preferences. This data is stored locally on your device.
- Workout History: Records of completed workouts including date, duration, configuration used, and completion status. This data is stored locally on your device.
- Saved Workout Library: Workout presets you save, including names, categories, and timer configurations. This data is stored locally on your device.
- App Preferences: Your chosen theme (Red, Dark, or Light), audio settings, vibration preferences, and other Core HIIT settings. This data is stored locally on your device.
- Audio: Core HIIT uses the Web Audio API to generate countdown beeps and halfway chirps during workouts. No audio is recorded or transmitted.
- Account Information: If you sign in to Core HIIT Premium, your email address and authentication method (Apple Sign-In, Google Sign-In, or email) are processed via Firebase Authentication.
- Subscription Information: Your Core HIIT Premium subscription status and purchase history are managed through RevenueCat and processed via Apple In-App Purchase (iOS) or Google Play Billing (Android).
Timer configurations and workout history are stored locally on your device. If you sign in for Core HIIT Premium, your account and subscription data are processed through Firebase and RevenueCat as described above.
Other Mind Core Fitness Apps
Mind Core Fitness may release additional apps and features from time to time. Each app will be covered under this Privacy Policy. Where an app collects data beyond what is described here, we will update this policy and notify you accordingly. All Mind Core Fitness apps share the same commitment to data protection, security, and your rights as described in this policy.
How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain our services, including the Core Buddy app, Core HIIT app, and any future Mind Core Fitness apps
- Personalise your training programmes, workouts, and fitness advice
- Track your nutrition, habits, and workout progress within Core Buddy
- Enable social features such as buddy connections, posts, and interactions
- Send push notifications about buddy requests, likes, comments, and mentions (when enabled)
- Process payments and manage subscriptions through Stripe (web), Apple In-App Purchase (iOS), or Google Play Billing (Android)
- Communicate with you about your account, programmes, or inquiries
- Send you marketing communications (with your consent)
- Analyse app usage patterns via Mixpanel to improve features and user experience
- Provide AI-powered meal analysis to estimate nutritional content from photos
- Improve our website, app, and services
- Comply with legal obligations
Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track activity on our website and hold certain information. Cookies are files with a small amount of data which may include an anonymous unique identifier.
We use:
- Essential Cookies: Required for the website to function properly
- Analytics Cookies: Help us understand how visitors interact with our website (via Vercel Analytics and Google Analytics)
- Marketing Cookies: Used to deliver relevant advertisements and track campaign performance (via Meta Pixel)
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our website.
Third-Party Services
We may use third-party services that collect, monitor, and analyse information to help us improve our services:
- Firebase (Google): For user authentication, database storage (Firestore), and push notifications (Firebase Cloud Messaging) within the Core Buddy app
- Stripe: For secure payment processing and subscription management within Core Buddy (web)
- Apple In-App Purchase: For secure payment processing and subscription management within the Core Buddy and Core HIIT iOS apps
- Google Play Billing: For secure payment processing and subscription management within the Core Buddy and Core HIIT Android apps
- Formspree: For handling contact form submissions
- Vercel: For website hosting and analytics
- Google Analytics: For website analytics and understanding how visitors use our site
- Meta (Facebook) Pixel: For advertising analytics and conversion tracking
- Mixpanel: For in-app analytics within Core Buddy, including feature usage tracking and user behaviour analysis to improve the app experience
- Anthropic (Claude AI): For AI-powered meal photo analysis in the meal scanner feature. Meal photos are sent to Anthropic's API for nutritional estimation and are not retained by Anthropic beyond processing
- RevenueCat: For managing in-app subscriptions and purchase validation across platforms (iOS and web)
These third parties have their own privacy policies addressing how they use such information.
Data Security
We use administrative, technical, and physical security measures to help protect your personal information. While we have taken reasonable steps to secure the personal information you provide to us, please be aware that no security measures are perfect or impenetrable.
Data Retention
We will retain your personal information only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use your information to the extent necessary to comply with our legal obligations, resolve disputes, and enforce our policies.
Your Rights
Under UK data protection laws (UK GDPR), you have certain rights regarding your personal data:
- The right to access your personal data
- The right to rectification of inaccurate data
- The right to erasure ('right to be forgotten')
- The right to restrict processing
- The right to data portability
- The right to object to processing
- The right to withdraw consent
To exercise any of these rights, please contact us using the details below.
Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and you are aware that your child has provided us with personal data, please contact us.
Core Buddy Account and Data Deletion
You may request deletion of your Core Buddy account and all associated data at any time by contacting us at ross@mindcorefitness.com. Upon account deletion, we will remove your personal data, workout history, nutrition logs, habit data, buddy connections, and any stored FCM tokens. Some data may be retained where required by law or for legitimate business purposes (such as payment records). Core HIIT data stored locally on your device can be cleared by clearing your browser or app data.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at:
Email: ross@mindcorefitness.com