Privacy Policy
Last updated: June 2026
Durata ("we", "our", or "us") is committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights.
1. Data We Collect
When you use Durata, we may collect:
- Account — your email address. Sign-in is passwordless: a one-time 6-digit code sent to your email. Authentication is handled by Supabase Auth — we never see or store a password.
- Workout & fitness data — exercises, sets, reps, weights, body metrics, nutrition, cardio, sleep, goals and timestamps you log.
- Progress photos — if you add them, they are stored locally on your device only and are not uploaded to our servers.
- Diagnostics — if the app hits an error we collect crash data (error details, app version, browser/OS) via Sentry to fix bugs. It is not used to identify you or for advertising.
- Usage analytics — anonymous in-app events (which screens and features you use, and counts) via PostHog, to understand what's used and improve the app. No workout content is included, and it is never used for advertising.
- Waitlist — if you join the waitlist, we store your email solely to notify you about beta access and launch. Joining also records the signup with PostHog, using your email address as the identifier, together with which page you signed up from and any campaign tag in the link you followed (for example a
utm_source), so we can tell which channels bring people to Durata. Nothing is recorded unless you submit the form. - No cookies or tracking storage — this website sets no cookies and stores nothing on your device for analytics, so there is no consent banner and nothing follows you between visits or across other sites.
We do not collect precise location or advertising identifiers, we do not run ads or tracking pixels, and we do not handle payment details ourselves (any future purchases are processed by Google Play or the App Store).
2. How We Use Your Data
- To sync your workouts and progress across devices.
- To display your history, analytics, and personal records within the app.
- To send sign-in emails (one-time 6-digit codes) and essential account emails.
- To diagnose and fix crashes, and to notify waitlist members about beta access and launch.
We do not sell, rent, or share your data with third parties for marketing purposes.
3. Data Storage
Account and synced fitness data (workouts, body metrics, nutrition, cardio, sleep, routines and settings) are stored on Supabase (a managed PostgreSQL platform), in the EU/US depending on your region; Supabase is SOC 2 Type II compliant. Progress photos remain on your device. Crash diagnostics are processed by Sentry and anonymous usage analytics by PostHog. Sign-in code emails are delivered by Resend. See the Supabase, Sentry, PostHog and Resend privacy policies for details.
4. Health App Integration
If you choose to connect Apple Health or Android Health Connect, Durata reads and writes workout data to that platform. This data is processed locally on your device and is not sent to our servers beyond your normal workout logs.
5. Data Retention
Your data is retained for as long as your account is active. You may delete your account and all associated data at any time from within the app (More → Settings → Account → Delete Account), or by contacting us at [email protected]. See Delete Your Account & Data for step-by-step instructions. Deletion is permanent and irreversible.
6. Cookies and Local Storage
Durata uses browser localStorage to remember your session and preferences. We do not use advertising cookies or tracking pixels.
7. Children's Privacy
Durata is not directed at children under 13. We do not knowingly collect data from children. If you believe a child has provided us data, please contact us and we will delete it promptly.
8. Your Rights
Depending on your jurisdiction you may have the right to access, correct, or delete your data. To exercise these rights, contact us at [email protected].
9. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated via the app or email. Continued use after changes constitutes acceptance.
10. Contact
Questions about this policy? Email us at [email protected].