Privacy Policy
Last updated: 2026-05-10
Auriga is in beta and pre-revenue. These terms describe how the app handles your data today; the policy will be updated as we add features. Material changes are emailed to you at least 14 days in advance.
TL;DR
- We store your training data, cycle data, and symptom logs so the app can adapt to you.
- We never sell your data. Not now. Not ever.
- Your cycle and symptom data are sensitive. We treat them that way.
- You can export or delete everything any time.
- You can use Auriga without a real name or photo if you prefer.
If you want the full picture, read on.
1. Who we are
Auriga is operated by Pedro Boudreau (operating as Auriga, pre-incorporation), based in [your jurisdiction]. You can reach us at hello@auriga.fit for any privacy question, or privacy@auriga.fit for formal data-subject requests (access / deletion / portability).
2. What we collect
We collect four categories of data, listed in order of sensitivity.
Waitlist email: when you join the waitlist on this site, we collect your email address. It is used only to send you occasional updates from Pedro about Auriga's beta launch. You can unsubscribe at any time.
Account data: your email address, password (hashed, never readable by us), and an optional display name.
Training data: workouts you log, sets, reps, weights, RPE, exercise history, body composition entries (if you choose to log them), and any photos you upload to body composition tracking (Pro feature).
Health and cycle data: your cycle phase tracking (period start dates, cycle length, status — regular, irregular, hormonal birth control, postpartum, perimenopause, menopausal), symptom logs (mood, sleep, cramps, headache, etc.), and any postpartum or pelvic-floor inputs. This is the most sensitive data we hold and we treat it that way.
We do NOT collect:
- Your real name (unless you put it in your display name)
- Your home address
- Your phone number (unless you opt into SMS reminders, which we don't currently offer)
- Your social security number or government IDs
- Anything biometric beyond what you explicitly log
- Photos of your face or body unless you upload them
3. Why we collect it
Each piece of data has a specific purpose, and we don't collect anything outside these purposes.
- Account data: to identify you, send you receipts, send you product updates if you opt in, and let you log back in.
- Training data: to power the app — progressive overload, RPE adjustments, PR predictions, your workout history.
- Health and cycle data: to drive cycle-aware coaching, phase predictions, symptom-tied recommendations, and personalized patterns over time.
If we ever wanted to use your data for a NEW purpose beyond these, we'd ask you first.
4. Where it lives
Your training data is currently stored locally on your device. We do not yet operate a remote backend. If/when we add server-side sync, we'll update this section and notify users 14 days before any change takes effect.
5. Who sees it
By default, the only humans who can see your data are:
- You.
- Auriga's small operational team (founder, future engineers) when troubleshooting a specific issue you've reported.
We do NOT:
- Sell your data to advertisers, brokers, or anyone else.
- Share your cycle, symptom, or training data with insurance companies, employers, or marketers.
- Use your data to train AI models that benefit other companies.
Today, the picture is short:
- Email service: we do not yet send marketing emails. The waitlist is collected and held locally; no third-party email provider has access. If/when we add an email service, we'll update this section.
- Analytics: we do not yet use a third-party analytics provider. If/when we add one, only anonymized event data will be sent — never cycle, symptom, or training detail.
- Hosting / database: see Section 4. Your training data lives on your device; we do not yet operate a remote backend.
- Payments: we do not yet take payments. When we add a paid tier, billing will be handled by Stripe and we'll update this section.
We do not currently use analytics or tracking cookies. Only essential cookies (e.g., for the waitlist form) are stored on your device. As we add providers, we'll list each one here with a link to its privacy policy.
6. AI coaching
Auriga's AI Coach (the chat) reads your cycle phase, recent symptoms, and last sessions to give you contextual answers. The AI is Google Gemini, used via an enterprise agreement that prohibits the provider from using your queries to train their models. The provider may change as the technology improves; the current provider is always disclosed in Settings → Privacy.
When the AI processes your data:
- It sees ONLY the most recent and minimum data needed to answer your question.
- It does NOT permanently store your data on the AI provider's servers.
- The AI provider does NOT use your queries to train their models (per their enterprise agreement).
- For canned responses (the four chip prompts), no data leaves Auriga's servers — we generate the answer locally.
You can disable AI Coach in Settings. Your training data still works without it.
7. Your rights
You can, at any time:
- Export everything. A button in Settings → Your Data downloads a JSON file of all your account, training, and cycle data.
- Delete everything. A button in Settings → Danger Zone → Delete Account. Deletion is immediate and irreversible. We do not retain backups beyond 30 days for technical recovery purposes only, after which all your data is permanently erased.
- Update or correct anything. All data fields are editable from inside the app.
- Withdraw consent. Stop using Auriga any time. We don't lock you in.
- Opt out of marketing emails without affecting your account.
If you live in California, the EU, or another jurisdiction with specific privacy rights (right to access, right to delete, right to portability, right to object to processing, etc.), you have all of them. Email privacy@auriga.fit with the words “data subject request” in the subject line and we'll respond within the timeframe required by your local law (typically 30 days).
8. Children
Auriga is not for users under 18. We don't knowingly collect data from anyone under 18. If you believe a minor has created an account, contact us and we'll delete it.
9. Changes to this policy
If we change this policy materially, we'll email all active users at least 14 days before the change takes effect. Minor changes (typo fixes, clarifications) we'll just update the “last updated” date.
10. Contact
Privacy questions and complaints: hello@auriga.fit. Formal data-subject requests (access, deletion, portability): privacy@auriga.fit.
We respond within 5 business days. Usually faster.