Back to Home

Privacy Policy

Last Updated: May 25, 2026

Vytal AI ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our platform.

1. Information We Collect

We collect information you provide directly: name, email address, password, fitness goals, body measurements, workout logs, nutrition data, progress photos, and communication with trainers or AI coach. We also collect usage data such as device information, browser type, and interaction patterns.

2. How We Use Your Information

We use your information to: provide and personalize the Service, generate AI training plans and nutrition recommendations, track your fitness progress, facilitate trainer-client communication, send notifications and emails you've opted into, improve and develop the platform, and ensure security and prevent fraud.

3. Data Storage

Your data is stored securely using MongoDB databases with encryption at rest. File uploads (profile pictures, progress photos) are stored in AWS S3 with private access controls. Data is processed on secure servers and protected by industry-standard security measures.

4. Third-Party Services

We use the following third-party services: Google OAuth for sign-in (we receive your name and email only), Firebase for push notifications (device tokens), AWS S3 for file storage, and DeepSeek AI for generating training plans and coach responses. We do not sell your personal data to any third party.

5. Cookies and Local Storage

We use cookies for session management and authentication. We use localStorage to store your language preference and theme settings. We do not use tracking cookies or share browsing data with advertisers.

6. Data Sharing

We do not sell, rent, or trade your personal information. Your data may be shared with: your assigned trainer (workout logs, progress, diet information - as part of the Service), and service providers who assist in operating the platform under strict data protection agreements.

7. Your Rights

You have the right to: access your personal data, correct inaccurate data, request deletion of your account and data, opt out of non-essential communications, and export your data. To exercise these rights, contact us at support@vytalai.io or use the in-app settings.

8. Data Retention

We retain your data for as long as your account is active. Upon account deletion, we remove your personal data from our systems within 30 days, except where retention is required by law.

9. Children's Privacy

The Service is not intended for children under 16. We do not knowingly collect personal information from children under 16. If we become aware of such collection, we will delete the information promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notification. Your continued use of the Service after changes constitutes acceptance of the updated policy.

11. Contact

For privacy-related inquiries, contact us at support@vytalai.io.