Liftpad Privacy Policy
This Privacy Policy describes how Everlight Digital ("we", "us") collects, uses, and shares information when you use Liftpad: Workout Log & Tracker ("Liftpad") on iPhone.
Liftpad Is Local-First
Liftpad works fully offline. By default, every workout, routine, custom exercise, and body-weight entry you log is stored only on your device (in local app storage) and is never sent anywhere. Signing in is entirely optional and only affects whether your data also syncs to the cloud.
Information We Collect
- Local data (always, on-device only): Workouts, routines, custom exercises, body-weight measurements, and app settings, stored on your device. This data is never transmitted unless you choose to sign in and enable cloud backup.
- Account data (only if you sign in): If you optionally sign in, Liftpad uses Firebase Authentication with Sign in with Apple, Google Sign-In, or email + password. We store the resulting account identifier and, if applicable, your email address.
- Cloud-synced content (only if you sign in and enable cloud sync): Once you turn on cloud backup, your workouts, routines, custom exercises, body-weight measurements, and related app metadata are stored in your private Firestore document (under your account) so they sync across devices and survive a reinstall.
- Consent record: When you turn cloud sync on or off, we record that choice (an audit trail of the toggle and when it happened) so we can show you your consent history and honor a later revocation.
- Apple Health data (only if you opt in separately): See "Apple Health Data" below.
How We Use Information
- To store and display your workout history, routines, exercises, and body-weight trends
- To back up and sync your data across your devices, if you have enabled cloud sync
- To let you sign in and recover your data after reinstalling the app
- To honor your consent choices for cloud sync and Apple Health
How We Share Information
- Apple — Sign in with Apple and the App Store
- Google Firebase (Authentication, Firestore) — processes your account data and, if cloud sync is on, your workouts, routines, exercises, and measurements on our behalf. Google also provides Google Sign-In, if you choose that option
- Apple HealthKit — read/write access only, on-device, controlled by you in iOS Settings > Health (see below)
We do not sell your data. Liftpad contains no advertising and no third-party analytics or tracking SDKs.
Apple Health Data
Apple Health (HealthKit) access is a separate, optional opt-in in Liftpad's Settings, with its own in-app consent prompt.
- What we read: If you grant permission, Liftpad reads body mass from Apple Health so you can import weight entries without retyping them.
- What we write: If you grant permission, Liftpad writes your finished strength workouts to Apple Health so they appear alongside your other activity there.
- Why: To save you double entry between Liftpad and Apple Health, and to keep your Health app as a complete activity record.
- Where this data goes: HealthKit data itself is never sent to our cloud. If you import a body-weight reading from Health, that single value becomes a normal measurement in Liftpad and will sync like any other measurement if cloud sync is also on. Workouts written to Health are not re-read or re-transmitted by Liftpad.
- Consent and revocation: Your Health permission choice is recorded, consistent with Washington State's My Health My Data Act, and you can revoke it at any time in iOS Settings > Privacy & Security > Health > Liftpad, or by turning the Health toggle off in Liftpad's own Settings.
Data Retention & Deletion
- Local data: Deleted immediately when you uninstall Liftpad from your device.
- Cloud data: If you've signed in, you can permanently delete your account and all associated Firestore data at any time from Settings > Account > Delete Account. This hard-deletes your workouts, routines, exercises, measurements, and consent history from our servers, along with your authentication account. This cannot be undone.
- Export: You can export a full copy of your data as a JSON file at any time from within the app, free of charge, whether or not you're signed in.
Children
Liftpad is not directed to children under 13 and does not knowingly collect their personal information.
Your Rights
You can revoke Apple Health access at any time in iOS Settings > Privacy & Security > Health > Liftpad, or disable cloud sync at any time in Liftpad's Settings. Uninstalling the app removes all locally stored data. EU/UK users have GDPR rights; California users have CCPA rights; Washington users have MHMDA rights over health data. Contact brendan@everlight-digital.com.
Security
App data is sandboxed per Apple platform standards. Cloud data is encrypted in transit and access-controlled per user account.
Changes to This Policy
We may update this policy. Material changes will be announced in-app.
Contact
Everlight Digital
Email: brendan@everlight-digital.com