Privacy Policy

Updated on May 13, 2026.

Hartlab treats personal data seriously. This policy explains what we collect, why we collect it, how we protect it, and what choices you have.

Data Controller

The data controller is the operator of the Hartlab service. For any privacy request, contact [email protected].

Health Data & Explicit Consent

Hartlab processes special-category health data (weight, body measurements and photos, nutrition and wellness logs) on the basis of your explicit consent (GDPR Art. 9). You give this consent during registration; we log each consent with its type, policy version and timestamp. You may withdraw consent at any time by deleting the relevant data or your account — withdrawal does not affect processing already carried out.

Age Requirement

Hartlab is available to users aged 16 and over (the GDPR digital-consent age). We do not knowingly process data of children under 16.

1. Data We Collect

We collect account data, profile details, training and nutrition logs, progress records, chat messages, files you upload, consent timestamps, and technical security data such as sessions and request identifiers.

2. Why We Use Data

We use data to provide the service, connect coaches and athletes, show training history, calculate nutrition totals, secure accounts, process subscriptions, and support users.

3. AI Features

When you use AI features, relevant request data may be sent to the AI provider to generate a response. Do not enter sensitive medical information that is not needed for the request.

4. Sharing

We do not sell personal data. Data may be shared with infrastructure, payment, email, analytics, and AI providers only as needed to operate Hartlab.

5. Your Rights

You can request export or deletion of your account data. Some records may be retained when required for security, fraud prevention, legal compliance, or accounting.

6. Contact

Questions: [email protected].