Privacy Policy

Last updated: August 24, 2026

1. Information We Collect

When you use movomo, we collect information you provide directly:

  • Account information: name, email address, password (encrypted)
  • Profile data: age, sex, height, weight, fitness level, goals, dietary preferences, available equipment, injuries
  • Health & wellness data: meal logs, macro/calorie intake, workout sessions, exercise data (sets, reps, weight), body measurements, habit tracking data, weight logs, guided session completions
  • AI interactions: conversations with the AI coach, prompts, and responses
  • Social content: friend connections, posts, captions, comments, reactions, stories, and community posts you create
  • Direct messages: the content of 1:1 messages you send to and receive from friends
  • Photos: meal photos (if you use photo scanning), profile avatar, and any photos you add to posts, stories, or messages

We also automatically collect device information, usage analytics (via Sentry for crash reporting), and app performance data to improve the service.

If you enable notifications, we store a push notification token issued by Apple for your device, so we can deliver reminders and alerts about activity in your account. It identifies the device, not you personally, and is deleted when you delete your account. Turning notifications off in iOS Settings stops delivery.

movomo does not access your contacts and does not collect your location.

2. Apple HealthKit Data

If you choose to connect Apple Health, movomo will access the following data with your explicit permission:

Data we read from Apple Health:

  • Step count
  • Active energy burned, and your Apple Activity ring values (Exercise minutes, Stand hours, Move)
  • Heart rate, resting heart rate, and heart rate variability (HRV)
  • VO₂ max
  • Respiratory rate
  • Sleep analysis (duration and stages)
  • Mindful minutes (meditation and breathing sessions)
  • Walking and running distance, and flights climbed
  • Body weight and body fat percentage (for example, from a connected smart scale)
  • Workouts recorded by other apps and devices (Apple Watch, Oura, Strava, Garmin, etc.)

Data we write to Apple Health:

  • None. movomo is read-only with Apple Health — it never writes any data back to Apple Health.

How we use HealthKit data:

  • To display your health metrics in the app (steps, activity rings, sleep, heart rate, body composition, and related metrics)
  • To provide personalized AI coaching based on your recovery, body composition, and activity levels
  • To import external workouts so you have a complete activity picture in one place
  • To prevent duplicate workout entries when activities are recorded in multiple apps

HealthKit data restrictions:

  • HealthKit data is never used for advertising or marketing purposes
  • HealthKit data is never sold to third parties or data brokers
  • HealthKit data is never shared with third parties for purposes unrelated to providing the movomo service
  • HealthKit data is never shared with other users, including through social features or direct messages
  • HealthKit data is not stored in iCloud
  • You can disconnect Apple Health at any time in Settings, which stops all data reading

3. How We Use Your Information

  • Provide and personalize the movomo service (meal tracking, workout programs, habit tracking, Apple Calendar sync)
  • Generate AI-powered insights, meal suggestions, workout recommendations, and recovery guidance
  • Calculate nutritional targets and track your wellness progress
  • Detect personal records and award achievement medals
  • Operate social features — friends, communities, stories, comments, reactions, and direct messages
  • Screen user-generated content and messages for safety, and review content that is reported
  • Sync your scheduled workouts to Apple Calendar (when enabled)
  • Import and deduplicate external workouts from connected devices
  • Send important service updates and, with your consent, promotional communications
  • Monitor app stability and fix crashes (via Sentry — anonymized crash reports only)
  • Comply with legal obligations

4. AI Data Processing

movomo uses third-party AI providers — OpenAI, Anthropic, and Google — to power the AI coach and other AI features. Requests are routed primarily to OpenAI and may fall back to Anthropic or Google so the service stays reliable. Meal-photo analysis is handled by Google; nutrition-label and barcode scanning are handled by OpenAI. Photos you scan are sent to the provider for analysis and are not used for any other purpose. When you interact with the AI coach:

  • Your conversation content and relevant context — your fitness profile (including age, sex, height, weight, and activity level), your nutrition targets and intake, recent workouts, and habits — are sent to the AI provider to generate personalized responses
  • If Apple Health is connected, your health metrics (such as sleep duration, resting heart rate, HRV, active energy, and step count) are included in the AI context to provide recovery- and activity-aware coaching
  • These providers process your data only to generate responses for you, and do not use it to train their AI models
  • AI-generated content may be inaccurate and should not replace professional medical, nutritional, or fitness advice
  • The AI coach is not a medical professional and cannot diagnose or treat conditions

Your private direct messages with other users are not sent to the AI coach.

You can revoke AI data access at any time in Settings > Privacy > AI Data Sharing.

5. Coach & Trainer Access

movomo allows users to optionally enable "Trainer Mode" to coach other users. When a user accepts a coach request, they grant their coach access to specific wellness data categories including:

  • Workout sessions, exercise details, and personal records
  • Daily nutrition totals (calories and macronutrients)
  • Habit completions and streaks
  • Fitness profile (level, equipment, injuries, goals)
  • Optionally: Apple Health data (heart rate, HRV, sleep, steps)

Data sharing with a coach requires explicit, informed, granular consent. Users choose exactly which data categories to share via individual toggles. Users may revoke coach access at any time with immediate effect.

movomo does not verify trainer credentials, certifications, or qualifications. Trainers are solely responsible for the safety and appropriateness of any programs they create for their clients.

Apple Health data shared with a coach is subject to the same protections as described in our Health Data section. Coach access to Apple Health data requires a separate explicit opt-in and is disabled by default.

All consent grants and revocations are timestamped and stored in our database for audit purposes.

6. Social Features, Communities & Direct Messages

movomo includes optional social features: friend connections, a friends feed, communities, stories, comments, reactions, and direct messages. These are available to signed-in users, and messaging is limited to people you are friends with.

Content visible to others. Content you choose to share is visible to its intended audience — your friends (feed and stories), the members of a community you post in (community posts), or the recipient (direct messages). Other users may see your name, username, and avatar. Please do not share sensitive personal information you do not want others to see.

Stories are ephemeral. Stories are automatically deleted about 24 hours after posting, and their comments and reactions are deleted along with them.

Direct messages. Direct messages are private 1:1 conversations between friends. They are stored on our servers and protected so that only the two participants of a conversation can read it — enforced both by database row-level security and by server-side participant checks, in addition to TLS in transit and encryption at rest.

Direct messages are not end-to-end encrypted. This means movomo is technically able to access message content. We access messages only when necessary to keep people safe — for example, to review content that you or another user reports, to enforce our Terms, or to comply with a valid legal obligation. We never read your messages for advertising, and we never sell message content.

Moderation. To keep the community safe — and as required for apps with user-generated content — the text and images you submit (posts, comments, stories, and messages) are screened by automated content moderation, and content that is reported is reviewed. We may remove content and restrict or remove accounts that violate our Terms.

Records of moderation decisions. When content is screened we keep a record of the decision and the automated safety scores that produced it. Where content is refused, we may also keep a copy of the image for up to 90 days in a private, restricted store, so that we can review whether the decision was correct and reduce mistakes. These records are not visible to other users, are not used for advertising or profiling, and are automatically deleted at the end of that period. If you ask us to delete your account, they are deleted with it.

Child sexual abuse material is never retained. If our screening indicates content may involve the sexual exploitation of a minor, that content is not kept in the store described above under any circumstances. It is deleted immediately and handled separately in accordance with our legal obligations, which can include reporting to the National Center for Missing & Exploited Children (NCMEC) and to law enforcement.

Blocking & reporting. You can block another user at any time, which prevents messaging between you and hides each other's content, and you can report content or users for review.

Deleting social content. You can delete your own posts, comments, and messages at any time. When you delete your account, your social content and direct messages are removed within 30 days (see Data Retention).

7. Data Storage & Security

Your data is protected by multiple layers of security:

  • Row-level security (RLS): Database policies ensure you can only access your own data — no user can ever see another user's information
  • Private conversations & social content: a direct-message conversation can only be read by its two participants (enforced by row-level security and server-side participant checks), and community and friend content is restricted to the appropriate audience — a message can never reach or be read by anyone outside the conversation
  • Encryption in transit: All data transmitted between the app and our servers uses TLS (HTTPS)
  • Encryption at rest: Database storage is encrypted at the infrastructure level
  • Authentication: Secure session management via Supabase Auth with automatic token refresh
  • Health data validation: All health metrics are validated against physiologically valid ranges before storage (e.g., heart rate 20-250 bpm, steps 0-500,000)
  • Ownership enforcement: Database triggers and server checks prevent any user from writing data — or sending a message — attributed to another user
  • Input validation: All user inputs are validated and length-limited to prevent abuse
  • Rate limiting: API endpoints are rate-limited to prevent abuse

Our infrastructure is hosted on Supabase (PostgreSQL) and Vercel, both of which maintain SOC 2 compliance and enterprise-grade security practices.

8. Data Sharing

We do not sell your personal data. Content you post or send is shared with the other users it is addressed to, as described in Social Features. Beyond that, we share data only with the following service providers, solely for the purpose of operating movomo:

  • OpenAI: the primary AI provider for the AI coach and other AI features — receiving your conversation, fitness profile, nutrition, activity, and connected Apple Health context to generate responses — and for automated content moderation of the text and images you submit (posts, comments, stories, and messages). Used only to provide these features, never for advertising, and not used to train models on your data
  • Anthropic: a fallback AI provider for the AI coach and AI features when the primary provider is unavailable, receiving the same context described above (data is not used for model training)
  • Google: AI provider for image analysis such as meal-photo scanning, and a fallback for other AI features (data is not used for model training)
  • Supabase: Database and authentication infrastructure
  • Vercel: Application hosting and API routing
  • Apple (RevenueCat): Subscription management (payment data only — we never see your credit card)
  • Sentry: Crash reporting and error monitoring (anonymized device and error data only)

We do not share data with advertisers, data brokers, or any other third parties.

We maintain a Data Processing Addendum (DPA) with OpenAI under which OpenAI acts solely as our data processor — processing your data only to provide these features, never for its own purposes, and never selling or sharing it. International transfers are covered by Standard Contractual Clauses.

9. Your Rights

You have the right to:

  • Access: View all data we hold about you
  • Correct: Update inaccurate information in your profile
  • Delete: Permanently delete your account and all associated data (including health data, social content, and direct messages) via Settings > Delete Account
  • Delete content & manage contacts: Delete your own posts, comments, and messages; block or report other users at any time
  • Export: Request a copy of your data by contacting support@movomo.ai
  • Withdraw consent: Disconnect Apple Health, revoke AI data access, or opt out of data processing at any time
  • Disconnect devices: Revoke Apple Health access at any time in Settings, which stops all health data collection

CCPA (California): California residents have the right to know what personal information is collected, request deletion, and opt out of the sale of personal information. We do not sell personal information.

GDPR (EU/EEA): EU residents have additional rights including data portability, the right to restrict processing, and the right to lodge a complaint with a supervisory authority. Our legal basis for processing is consent (for health data) and legitimate interest (for core app functionality, including operating and moderating social features).

10. Subscription & Payment Data

Subscription purchases are processed entirely by Apple through the App Store. We do not collect or store credit card information, billing addresses, or other financial data. We use RevenueCat as our subscription management platform to track subscription status and entitlements. RevenueCat receives your anonymized user ID and purchase data from Apple. For more information, see RevenueCat's privacy policy at rev.cat/privacy.

11. Data Retention

We retain your data for as long as your account is active. When you delete your account:

  • All personal data, health data, workout history, meal logs, AI conversations, habit data, social content, and direct messages are permanently deleted within 30 days
  • Health data synced from Apple HealthKit is deleted immediately from our servers (the data remains in Apple Health on your device)
  • Anonymized, aggregated analytics data may be retained for product improvement purposes

In addition, while your account is active:

  • Stories are automatically deleted about 24 hours after posting, along with their comments and reactions
  • Direct messages and social posts are retained until you or the other participant delete them, or until your account is deleted
  • Records of automated moderation decisions — including a copy of an image that was refused — are kept for up to 90 days and then deleted automatically, so we can check that our safety screening is accurate (see Social Features & Messaging). Content indicating the sexual exploitation of a minor is never kept in this store.

12. Children's Privacy

movomo is not intended for children under 13 (or 16 in the EU/EEA), and this applies to our social and messaging features as well. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us at support@movomo.ai and we will promptly delete it.

13. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes through the app or via email. Continued use of movomo after changes constitutes acceptance of the updated policy. The "Last updated" date at the top of this page indicates when this policy was last revised.

14. Contact Us

For privacy-related questions, data requests, or concerns:

Email: support@movomo.ai

Company: Luna Money LLC

Website: movomo.ai