Privacy Policy

Last Updated: July 9, 2026

GetFit ("we," "our," or "us") is operated by KeyZen, a company registered in India. This Privacy Policy describes how we collect, use, store, share, and protect your personal information when you use the GetFit mobile application (the "App") available on the Apple App Store and Google Play Store.

By creating an account or using the App, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with this Privacy Policy, please do not use the App.


1. Information We Collect

1.1 Information You Provide Directly

Data Type When Collected Purpose
Name During onboarding Personalization and profile display
Phone number If you register via phone OTP Account authentication
Email address If you register via email or add email to profile Account authentication, communication
Password If you register via email/password Account security (stored in hashed form only)
Profile photo When you upload from gallery Profile personalization
Country During onboarding Localization of content
Height, weight, age, gender During onboarding Calculation of BMI, body type, calorie targets, and personalized fitness recommendations
Fitness goal (lose, gain, maintain) During onboarding Personalized diet and workout plans
Activity level During onboarding Calorie calculation using Mifflin-St Jeor equation
Diet preference (vegetarian / non-vegetarian) During onboarding Diet plan personalization
Fitness level (beginner / intermediate / advanced) During onboarding Workout difficulty calibration
Food log entries When you log meals Calorie and macro tracking
Water intake When you update streak Hydration tracking
AI chat messages When you use AI Trainer Personalized AI coaching responses
AI diet questionnaire answers When you generate an AI diet plan Allergies, health conditions, cuisine preferences, cooking time, budget
Feedback on AI responses (thumbs up/down) When you rate AI responses Improving AI response quality for you

1.2 Information Collected Automatically

Data Type Source Purpose
Step count Apple HealthKit (iOS) / Health Connect (Android) / Device pedometer Step tracking and calorie estimation
Active energy burned Apple HealthKit / Health Connect Calorie burn tracking
Walking/running distance Apple HealthKit / Health Connect Distance tracking
Exercise data Health Connect (Android) Workout tracking
Device information Firebase Analytics, Sentry App performance and crash reporting
Usage analytics Firebase Analytics Understanding feature usage to improve the App
Crash reports Firebase Crashlytics, Sentry Identifying and fixing bugs
IP address Server access logs Security, rate limiting, abuse prevention

1.3 Information Generated by the App

Data Type How Generated Purpose
BMI and body type Calculated from height and weight Health insights
Calorie targets Mifflin-St Jeor equation using your profile data Nutrition guidance
Protein targets Calculated from weight and goal Nutrition guidance
Nutrition streaks Computed from daily food logs Gamification and motivation
AI memories AI extracts facts from your chat conversations (e.g., "has a knee injury," "prefers morning workouts") Personalized coaching context
User state (energy, fatigue, motivation, injury risk) AI computes from your interaction signals Adaptive coaching
AI learning profile AI builds from your conversation patterns Personalized communication style

1.4 Information Collected via Camera

When you use the barcode scanner or food recognition feature, the App accesses your device camera. Captured food images are:

We do not use camera data for any other purpose.


2. How We Use Your Information

We use your information for the following purposes:


3. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data on the following legal bases:


4. How We Share Your Information

We do not sell, rent, or trade your personal information. We share data only with the categories of service providers described in Section 4.1, and — if you choose to use the Friends feature — with the friends you approve, as described in Section 4.2.

4.1 Sharing with Service Providers

We share data with the following service providers only as necessary to operate the App:

Service Provider Data Shared Purpose
MongoDB Atlas (MongoDB, Inc.) All user data (encrypted in transit and at rest) Cloud database storage
Twilio (Twilio Inc.) Phone number Sending SMS OTP for authentication
Google SMTP / Gmail Email address Sending email OTP for authentication
Google OAuth Google account ID, email, name, profile picture Google Sign-In authentication
Apple Sign-In Apple user ID, email, name Apple authentication
Razorpay (Razorpay Software Pvt. Ltd.) Payment order details, amount Processing Android subscription payments
Apple In-App Purchase Transaction IDs, receipt data Processing iOS subscription payments
USDA FoodData Central Food search queries Looking up food nutrition data
OpenFoodFacts Barcode numbers Looking up packaged food product data
Custom AI Service (self-hosted) Chat messages, user profile context, food images AI coaching, food recognition, diet generation
Firebase (Google LLC) Device info, usage events, crash data Analytics and crash reporting
Sentry (Functional Software, Inc.) Error traces, device info Error tracking and monitoring

We may also disclose your information if required by law, regulation, legal process, or governmental request.

4.2 Sharing with Friends (Friends Feature)

The Friends feature is an optional, paid-tier social layer that lets you connect with other paid users (Kyro Pro or Kyro Pro+). It is only available while both you and the other person are on a paid plan. When you connect with someone and both parties accept the connection, that person becomes an accepted friend.

Sharing is OFF by default. No social data is shared with anyone unless you turn sharing on. Sharing is controlled by per-user visibility settings that you can change at any time. Data is only ever shared with accepted friends who are also on a paid plan.

When you enable sharing, the following data may be visible to your accepted friends:

Data Type Shared With Condition
Public username Accepted friends Always, once you have a username
Name Accepted friends Always, for accepted friends
Avatar / profile photo Accepted friends Always, for accepted friends
Plan badge (Pro / Pro+) Accepted friends Always, for accepted friends
Logged meals for a day (food items, portions, per-meal and daily calorie/macro totals) Accepted friends Only when you enable meal sharing
Activity feed (a recent, reverse-chronological list of meals you logged) Accepted friends Only when you enable meal sharing

You remain in control of this data at all times:

4.3 Progress Photos Are Never Shared

Your before/after progress photos are stored only on your device. They are never uploaded to our servers, never transmitted, never stored by us, and are never shared with your friends or anyone else through the Friends feature or any other part of the App. No response the Friends feature generates ever contains progress photo images or references. Progress photos remain private to your device unless you choose to share them yourself outside of the App.


5. Data Storage and Security

5.1 Where Data Is Stored

5.2 Security Measures

5.3 Data Breach Notification

In the event of a data breach that affects your personal information, we will notify affected users within 72 hours of becoming aware of the breach, in accordance with applicable law (including GDPR Article 33).


6. Data Retention

Data Type Retention Period
Account data (name, email, phone) Until you delete your account
Health profile (height, weight, age, BMI) Until you delete your account
Food logs Until you delete your account
AI chat sessions Until you delete your account or the session
AI memories (extracted facts) Until you delete your account or individual memories
Nutrition streaks Until you delete your account
Subscription records Retained for 7 years after subscription ends (financial/tax compliance)
Crash reports / analytics As per Firebase and Sentry retention policies (typically 90 days)
OTP codes Automatically expire after 5 minutes
Server logs (IP addresses) Rolling 30-day retention

7. Your Rights

Depending on your location, you may have the following rights:

7.1 All Users

7.2 GDPR Rights (EEA / UK Users)

7.3 CCPA Rights (California Users)

7.4 How to Exercise Your Rights


8. Children's Privacy

GetFit is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal data from a child under 16, we will take steps to delete that information promptly.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@getfitapi.com.


9. Third-Party Links and Services

The App may contain links to third-party websites or services (e.g., payment processors, health data providers). We are not responsible for the privacy practices of these third parties. We encourage you to read their privacy policies.


10. International Data Transfers

Your data is primarily stored on MongoDB Atlas servers. If you are accessing the App from outside India, your data may be transferred to and processed in India or other jurisdictions where our service providers operate. We ensure appropriate safeguards are in place for any such transfers.


11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we make material changes, we will:

Your continued use of the App after any changes constitutes acceptance of the updated Privacy Policy.


12. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us:


This Privacy Policy is effective as of June 26, 2026.