What PhormLab stores, and why

This is a closed beta run by one person. The text below describes what the software actually does — if something here turns out not to match the code, then the code is the bug.

What is stored

Heart rate, injuries and resting values are health data under Article 9 GDPR. They are stored because the training plan is computed from them, and for nothing else.

Where it goes

Nothing is sold. There is no advertising, no tracking and no analytics service. The application sets one cookie: the session you are signed in with.

How long

As long as your account exists. Delete it and the data is gone from the database immediately — every activity, plan, photo and conversation.

Backups are the honest exception: encrypted copies are kept for up to five weeks, so that a mistake on the server does not cost everybody their data. A deleted account is still in those copies until they expire. They are never opened to restore a single account — only to bring the whole application back.

What you can do

Who to ask

Write to the person who invited you. In a closed beta that is the same person who operates the server and wrote the code.

Back