Privacy policy

fitarchive is a private, self-hosted tool with a single user, who is also the person who runs it. This policy describes how the tool handles data it receives from Google.

Data the tool accesses

After the user signs in with a Google account and grants consent, fitarchive reads the following data of that account through the Google Health API. All access is read-only.

How the data is used

The data is used for one purpose: to give the user a personal archive of their own health data, with charts and analyses. It is not used for advertising, not used to train general-purpose machine learning models, and not sold.

Where the data is stored

The data is stored in a database file on the computer of the user who runs the tool. The access token issued by Google is stored on the same computer, in a file that only that user can read. fitarchive does not operate a server that receives or stores this data.

Sharing

fitarchive does not share, transfer or disclose the data to any third party. The user may choose to analyze the local database with tools of their own choice.

Retention and deletion

The data stays in the local database until the user deletes it. Deleting the database file removes all stored data. The user can withdraw access at any time in the Google account under Third-party apps and services, or by running fitarchive auth logout, which deletes the local token.

Google API Services User Data Policy

fitarchive's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Contact

Questions about this policy go to the support address that Google shows on the consent screen of the app.