← Back to Fcoach

Privacy Policy

Last updated: 10 August 2026

This Privacy Policy explains how Mukac Studio ("we", "Fcoach") collects, receives, uses, stores, protects, and shares personal data when you use the Fcoach mobile application (the "App") on iOS or Android or visit fcoach.net (the "Website"). Mukac Studio is the controller of the personal data described in this Policy.

1. Data We Collect, How We Collect It, and Why

The following list identifies the personal data handled by Fcoach, the source of that data, where it is processed or stored, and every purpose for which Fcoach uses it.

Account and authentication data

Data
Name, email address, Firebase user ID, sign-in provider, and email-verification status. Sign in with Apple may provide a private relay email.
How collected
Entered by you during registration or received from Apple or Google when you choose their sign-in service.
Storage
Google Firebase Authentication and Firestore.
Uses
Create and secure your account, authenticate you, sync your information, communicate about the service, and process account deletion or support requests.

Profile and fitness data

Data
Age, height, current and target weight, weight history, measurement unit, training goal or goals, experience level, and selected AI model.
How collected
Entered or selected by you during onboarding or in your Profile.
Storage
Firestore, with a local on-device cache for app performance.
Uses
Personalize workout programs, calculate and display progress, use the correct units, and provide relevant AI Coach responses after separate AI consent.

Workout, exercise, and progress data

Data
Program names and schedules, exercises, sets, repetitions, weights, rest times, completed days and sets, exercise history, personal records, workout volume, XP, streaks, and workout statistics.
How collected
Created by you, generated at your request by AI Coach, or recorded when you use workout tracking features.
Storage
Firestore under your account.
Uses
Operate your program library, save workout history, show progress and records, maintain XP and streaks, enforce program limits, and personalize AI Coach features after separate AI consent.

Motion, step, and estimated calorie data

Data
Daily and recent step counts read from the device motion sensor and estimated calories calculated from step count and body weight.
How collected
Read from the device pedometer only after you grant the operating-system motion permission.
Storage
Processed primarily on your device. Step-milestone state is stored locally. Step and calorie summaries are sent through Fcoach servers to an AI provider only when both motion permission and AI data-sharing consent are active.
Uses
Display daily and weekly activity, estimate calories, award step-related XP, and provide context-aware AI Coach responses.

AI Coach content

Data
Messages you write, recent conversation context, program creation or editing requests, and the fitness context listed in Section 4.
How collected
Provided when you type a message or request an AI-generated program, after the App displays the AI data-sharing notice and you actively consent.
Storage
Recent chat history is stored locally on your device. Requests pass through Firebase Cloud Functions and then to the applicable AI provider. Fcoach does not intentionally store full AI chat history in Firestore.
Uses
Generate the reply or workout program you requested, apply usage limits, prevent abuse, and troubleshoot failed requests.

Subscription and purchase data

Data
Fcoach App User ID, product identifier, purchase or receipt token, subscription status, entitlement, purchase and expiration dates, renewal status, and store platform.
How collected
Received from Apple App Store or Google Play through the RevenueCat subscription SDK when you purchase, restore, renew, or cancel Fcoach Pro.
Storage
RevenueCat, the relevant app store, and a limited subscription-status record in Firestore.
Uses
Process and validate purchases, unlock Pro features, restore access, display subscription status, prevent purchase fraud, and handle subscription support.

Fcoach does not receive or store your full payment-card details. Payments and refunds are handled by Apple or Google.

Preferences, permissions, and consent records

Data
Language, theme, unit preference, completed onboarding tours, notification-permission state, and AI consent status, version, and timestamp.
How collected
Selected by you in the App or returned by the operating system after a permission request.
Storage
On your device and, where needed for cross-device consistency or proof of consent, in Firestore.
Uses
Remember your settings, avoid repeating onboarding, deliver local rest-timer notifications, and ensure AI data is not shared before consent.

Usage, quota, and security data

Data
AI and program-generation counters, timestamps, authentication metadata, request status, function and error logs, and limited network information such as IP address that may be generated by cloud infrastructure.
How collected
Generated automatically when you sign in or use server-backed features.
Storage
Firestore and Google Firebase or Cloud operational logs.
Uses
Apply Free and Pro limits, protect accounts and infrastructure, detect abuse or fraud, diagnose errors, maintain service reliability, and comply with legal obligations.

Advertising data (free plan only)

Data
Your device's advertising identifier (Apple IDFA or Google Advertising ID), coarse device and app information such as device model, operating system version, language, country and app version, IP address, and events describing which ads were requested, shown or interacted with.
How collected
Collected by the Google AdMob SDK inside the App when an ad is requested. On iOS the advertising identifier is only available if you allow tracking in the system App Tracking Transparency prompt.
Storage
Google (AdMob). Fcoach does not receive or store your advertising identifier.
Uses
Select and deliver ads, measure ad performance, limit repetition, and detect invalid or fraudulent ad traffic. Where you have consented, ads may be personalised using this data. Without consent, only non-personalised ads are requested.
Fcoach does not collect precise location, contacts, photos, or health records from Apple Health or Google Health Connect, and does not sell your personal data. Fcoach does show third-party advertising to users on the free plan; see Section 5, Advertising for exactly what is shared and with whom. Fcoach Pro subscribers see no advertising and no advertising identifier is used for them.

2. Purposes and Legal Bases

Depending on the feature and your location, we process personal data on the following bases:

3. Where Data Is Stored

4. AI Features and Third-Party Sharing

When you use AI Coach, Fcoach first sends the request over an encrypted connection to Fcoach's Firebase Cloud Functions. Depending on the feature and selected model, the Fcoach server then sends the minimum relevant data to Google LLC (Gemini API) or DeepSeek (DeepSeek Open Platform API) so that the provider can generate the workout program or response you requested.

Data that may be sent

Fcoach does not send your email address, phone number, password, authentication token, Firebase user ID, payment details, contacts, photos, or precise location to an AI provider.

Purpose of the transfer

Fcoach sends this data only to provide the AI Coach feature you requested: generating a reply, creating or editing a workout program, or providing a contextual training suggestion. Fcoach does not share it with AI providers for advertising, ad targeting, sale, or marketing profiling.

Your consent and control

No personal data is sent to an AI provider until you actively select "I agree, continue" in the App's AI data-sharing notice. If you decline, AI Coach remains disabled and you may continue using the rest of Fcoach. You can withdraw consent at any time through Profile > AI data sharing > Withdraw consent. Withdrawal stops future AI sharing; it does not retroactively erase processing already lawfully completed. You may contact us to request deletion from Fcoach and, where applicable, onward deletion requests to a provider.

Google Gemini API

Paid API data terms

Fcoach uses Gemini API through a Google Cloud project with active paid billing. Under Google's current Paid Services terms, Google does not use paid-service prompts or responses to improve its products or train its models. Google may retain prompts and responses for a limited period solely for abuse monitoring, service security, and required legal or regulatory disclosures.

Gemini API Additional Terms · Gemini API data retention information

DeepSeek Open Platform API

Provider-specific data terms

Fcoach uses a prepaid, metered DeepSeek Open Platform API account for some AI Coach responses. DeepSeek's public Open Platform Terms do not currently provide an express commitment that API inputs and outputs will never be used for model improvement or training. DeepSeek's current Privacy Policy states that it may use user input to improve and train its technology, provides certain users a right to opt out of model training, and states that data may be processed and stored in the People's Republic of China. Data sent to DeepSeek may therefore be used for model improvement or training under DeepSeek's published terms.

DeepSeek Open Platform Terms · DeepSeek Privacy Policy

Third-party protection commitment.

Before sharing user data with any provider, we assess that provider's published data-use and security terms and disclose them to you in this Section and inside the App. Where a provider commits to equivalent protection — as Google does under the paid Gemini API terms — we rely on that commitment. Where a provider does not offer that commitment, as is currently the case for DeepSeek regarding model training and processing location, we do not claim equivalence. Instead, we disclose the difference in this Policy and in the App's AI consent notice so that you can make an informed choice before enabling AI data sharing, and you may withdraw consent at any time.

In every case, we minimize each request, exclude direct identifiers such as your email address, account ID, and payment details, use encrypted transport, restrict internal access, and will stop sharing with a provider if we determine that the disclosed level of protection can no longer be maintained.

5. Other Service Providers

Google Analytics on fcoach.net

The Website uses Google Analytics 4 only after you actively select Allow analytics in the Website's privacy notice. If you reject analytics or have not yet made a choice, the Google Analytics library is not loaded and Fcoach does not send analytics events to Google.

After consent, Google Analytics receives limited Website usage information such as the page path and title, referring source, browser and device category, language, approximate region, and automatically generated session and interaction events. Fcoach removes query strings and URL fragments from the page location sent with a page view. We do not send your Fcoach account ID, email address, fitness profile, workout data, AI Coach messages, payment details, or contact-form contents to Google Analytics.

We use this information only to understand Website traffic, identify useful pages, and improve Website performance and content. Advertising storage, advertising user data, advertising personalization, Google Signals, and advertising-personalization signals remain disabled. When analytics is accepted, the first-party _ga and _ga_* cookies are configured to expire after 90 days. Your consent choice is stored locally in your browser. You may change or withdraw that choice at any time through Privacy settings in the Website footer; withdrawal stops future collection and removes accessible first-party Google Analytics cookies from the Website.

These providers may process data in countries other than your own. Their processing is governed by applicable law and their service terms, privacy terms, and data-processing commitments.

Google Privacy Policy · Google Analytics cookie information · RevenueCat Privacy Policy · RevenueCat Data Processing Addendum · Apple Privacy Policy

Advertising

Fcoach shows full-screen interstitial ads to users on the free plan at two points: after an AI-generated workout program has finished being created, and when a workout is completed. Ads are provided by Google AdMob (Google Ireland Limited / Google LLC).

Fcoach Pro subscribers see no ads. For Pro accounts the advertising SDK is not started at all, no ad is requested, and no advertising identifier is read.

Your choice. In the European Economic Area and the United Kingdom you are shown a consent form managed by Google's User Messaging Platform before personalised advertising is used. On iOS, personalised advertising additionally requires your permission in the system App Tracking Transparency prompt. If you decline, or if consent cannot be determined, Fcoach requests non-personalised ads only — you will still see ads, but they are not selected using your advertising identifier. On iOS you can change the tracking permission at any time in Settings › Privacy & Security › Tracking. If you are in the European Economic Area or the United Kingdom and want to withdraw or change a consent choice you have already made, contact us at contact@fcoach.net. The fastest way to remove advertising entirely is to subscribe to Fcoach Pro.

What is never shared with the advertising provider. Fcoach does not send your name, email address, account identifier, workout data, body measurements, training goals, or AI Coach messages to Google AdMob. Advertising is entirely separate from the AI features described in Section 4.

Google's handling of this data is governed by its own terms: Google Business Data Responsibility · How Google uses information from partner sites and apps

6. Data Retention

To prevent abuse of free usage limits, we retain one limited record after account deletion: an irreversible cryptographic hash of your email address together with the applicable usage-quota counters. The hash is not stored with your name, profile, programs, messages, or workout history and cannot be reversed by Fcoach to reveal the original email address. It is used only to stop repeated account deletion and recreation from resetting usage limits, and is retained only while needed for that anti-abuse purpose.

7. Data Security and Equivalent Protection

Data is transmitted using encrypted HTTPS connections. Firebase access is restricted by authenticated user ownership rules and server-side authorization; AI API keys remain on protected server systems and are not included in the App. We use data minimization, access restrictions, payload limits, rate limits, and technical monitoring to reduce unauthorized access, loss, alteration, or disclosure.

We assess third-party terms and safeguards before sharing user data and require recipients to provide the same or equivalent level of protection stated in this Policy. No security method is completely risk-free, but if we determine that a recipient cannot maintain that level, we will stop the relevant transfer and take appropriate remediation steps.

8. International Transfers

Fcoach and its providers may process data outside your country. Google and RevenueCat may process data using international infrastructure, and DeepSeek states that data may be processed and stored in the People's Republic of China. Where required, we rely on applicable contractual or legal transfer safeguards. You receive this information before choosing whether to enable AI data sharing.

9. Your Rights and Controls

Depending on your location, including under GDPR and KVKK, you may have the right to:

You may edit profile data inside the App, manage operating-system permissions in device settings, withdraw AI consent from Profile, and manage subscriptions through your App Store or Google Play account. To exercise another right, contact contact@fcoach.net.

10. Account and Data Deletion

You can permanently delete your account from within the App through Profile > Delete Account. This deletes your Firebase Authentication account and Fcoach account data, including your profile, programs, workout logs, statistics, AI usage record, and stored consent record. The anti-abuse hash and quota counters described in Section 6 remain. Records independently required or retained by Apple, Google, RevenueCat, Gemini, or DeepSeek are governed by their legal obligations and applicable terms.

Account deletion cannot be undone. You may alternatively request deletion by emailing contact@fcoach.net.

11. Children's Privacy

Fcoach is not intended for children under 13. We do not knowingly collect personal data from children under 13. If we learn that such data was collected, we will take steps to delete it. A parent or guardian may contact us at contact@fcoach.net.

12. Changes to This Policy

We may update this Policy when features, providers, laws, or data practices change. If a change materially expands AI data sharing or another consent-based use, we will update the in-app notice and request new consent before the expanded processing begins. The date at the top identifies the latest revision.

13. Contact

Mukac Studio

Privacy questions and rights requests: contact@fcoach.net