Privacy Policy

Last updated: March 5, 2026

1. Introduction

CoachMetrics (“we,” “our,” or “us”) operates the coachmetrics.app website and platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

2. Information We Collect

Account Information: When you create an account, we collect your name, email address, and password (stored hashed, never in plain text).

Client Data: You may input client names, email addresses, phone numbers, monthly rates, health metrics, session attendance, and notes. This data belongs to you and is stored to provide the service.

Payment Information: Payments are processed through Stripe. We do not store credit card numbers. Stripe's privacy policy governs payment data.

Uploaded Content: If you upload WhatsApp chat exports or CSV files, these are processed in memory or via our AI provider and are not permanently stored beyond what is necessary to provide analysis.

Usage Data: We collect anonymous usage analytics (via PostHog) to improve the product, including pages visited, features used, and device information. You can opt out via the cookie consent banner.

3. How We Use Your Information

  • To provide and maintain the CoachMetrics platform
  • To calculate client health scores and generate predictive alerts
  • To generate AI-powered coaching suggestions (via OpenAI)
  • To send email notifications you have opted into (alerts, digests, summaries)
  • To process payments and manage subscriptions
  • To improve our product and user experience

4. AI Processing

When you use AI features (coaching suggestions, daily briefings, WhatsApp analysis), relevant client data is sent to OpenAI for processing. OpenAI's API data usage policy applies. We use the API configuration that does not allow OpenAI to train on your data. No client data is permanently stored by the AI provider.

5. Data Sharing

We do not sell your personal information or client data. We share data only with:

  • Stripe — for payment processing
  • OpenAI — for AI feature processing (not for training)
  • Resend — for transactional email delivery
  • Neon — for database hosting
  • Vercel — for application hosting
  • PostHog — for anonymous product analytics (opt-out available)

6. Data Security

We implement industry-standard security measures including encrypted connections (HTTPS), hashed passwords (bcrypt), secure authentication (JWT), and rate-limited API endpoints. However, no method of transmission over the internet is 100% secure.

7. Data Retention

Your account and client data are retained as long as your account is active. You may delete individual clients at any time. If you close your account, all associated data will be deleted within 30 days.

8. Your Rights

You have the right to:

  • Access, update, or delete your personal information
  • Export your client data
  • Opt out of marketing communications and analytics tracking
  • Request deletion of your account and all associated data

9. Cookies

We use essential cookies for authentication and session management. Analytics cookies (PostHog) are only set with your consent via the cookie banner.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by email or through a notice on our platform.

11. Contact

If you have questions about this Privacy Policy, contact us at Bodybuilding@manal.pro.