Introduction

High Route Studio LLC ("we," "us," or "our") operates the Let's Gooo mobile application ("Let's Gooo" or the "App"). This policy explains what we collect, where it is stored, how it is used, who it is shared with, and the choices and rights you have. We have written it to describe how the App actually works, including the parts of your data that are processed on our servers and by our AI provider — not only the copy stored on your device.

If you have questions, contact us at support@letsgooo.fit.

1. Information We Collect

Information You Provide

  • Account & identity — your name, email address, and the sign-in method you use (email one-time code, Sign in with Apple, or Google Sign-In)
  • Fitness profile — experience level, goals, injuries, available equipment, and training preferences
  • Training data — the exercises, sets, reps, weights, routines, and other data you log during workouts
  • AI trainer conversations — your chat messages with Carlos, your AI trainer, which are used to generate and modify workouts and to personalize coaching

Information from Connected Services (only if you connect them)

  • Garmin Connect — activity summaries (type, duration, distance, heart rate, calories) and daily health metrics (steps, sleep, heart rate, stress, Body Battery)
  • Strava — activity summaries including type, duration, distance, heart rate, and effort metrics
  • Apple Health (HealthKit) — workout data, heart rate, and related health metrics

You can connect or disconnect these services at any time. Disconnecting stops further data flow from that service.

Information Collected Automatically

  • Usage and diagnostics — how the App is used (features accessed, session activity), and crash/diagnostic information used to keep the App reliable. This usage and diagnostic data is associated with your account (it is not anonymous), so that we can support your account and improve features for the way you actually use them.
  • Device information — device model, operating system version, and app version
  • Device-integrity identifiers — to protect the service from abuse, the App uses Apple's DeviceCheck / App Attest, which involves a device-level identifier used for security and anti-fraud purposes (not advertising)

We do not collect or use the Advertising Identifier (IDFA), and the App does not track you across other companies' apps or websites.

2. Where Your Data Is Stored

Let's Gooo uses a combination of on-device storage, your private iCloud, and our own backend servers:

  • On your device — workout data, chat history, and fitness profiles are stored locally using Apple's SwiftData framework so the App works quickly and offline
  • Across your devices — your data syncs so your account stays consistent everywhere you use Let's Gooo. Today this happens through your private iCloud account (Apple CloudKit), which we cannot access. As we add support for additional devices and platforms, syncing may also occur through your account on our backend.
  • Our servers — to power AI coaching, cross-device features, account/identity, and reliability, a copy of relevant data — including your account identity (such as email), training and activity data, AI coaching memory, and usage/diagnostic data — is also stored and processed on our backend (hosted on Railway, using a PostgreSQL database). This is what allows your AI trainer to remember context and what lets us deliver and improve the service.
  • Credentials — OAuth tokens for Garmin, Strava, and other connected services are stored securely in the iOS Keychain on your device. API keys are never stored in plain application storage.

3. AI Processing

Your conversations with Carlos, along with the workout/profile context needed to answer them, are sent to our backend, which routes them through our AI processing pipeline to a third-party large-language-model provider that generates the response.

  • AI provider(s) — we currently use Anthropic's Claude models to power Carlos. We may add or switch to other AI providers or models over time as the service evolves; this policy applies to any provider we use.
  • What we log — to operate, debug, and improve the AI features, we retain records of AI requests and responses on our backend (including conversation content and diagnostic metadata)
  • Third-party model training — AI providers process your messages only to generate responses for you; we do not permit your content to be used to train those providers' own models

We do not train AI models on your data. We do review how people use the App — including the programs and activities you create and log, and your interactions with Carlos — to understand usage patterns and improve the instructions and prompts we give the AI. This makes coaching better over time. It is product improvement, not model training, and we do not use your data to build or train machine-learning models.

4. How We Use Your Information

We use the information above to:

  • provide personalized training and AI coaching;
  • manage recovery and training load;
  • deliver and track workouts and progress;
  • operate your account, sync, and connected-service integrations;
  • secure the service and prevent abuse;
  • maintain, debug, and improve the App; and
  • understand how the App is used and improve the instructions and prompts that guide our AI coaching (see Section 3) — we do not use your data to train AI models.

5. How We Share Information

We do not sell or rent your personal information, and we do not share it with third parties for their own marketing purposes.

We share data only:

  • with our AI provider (Section 3), to generate coaching responses;
  • with infrastructure providers that host and operate the service on our behalf (e.g. our cloud host) under their obligations to protect it;
  • with connected services (Garmin, Strava, Apple Health) — only the data you explicitly choose to send or export; and
  • when required by law, such as a valid legal request, or to protect rights and safety.

Apple Health data is never used for advertising and is never sold. HealthKit data is used only to provide App features you have enabled.

6. Data Retention & Deletion

  • We retain your data for as long as your account is active and as needed to provide the service.
  • In-app deletion — you can delete your account from within the App (Profile → Settings → Delete Account). This permanently removes your personal data from our backend — your identity records and the user-scoped data across our database are purged, and personally identifying fields are scrubbed. If you signed in with Apple, we also revoke the App's Sign in with Apple token with Apple as part of deletion.
  • On-device and iCloud copies are removed when you delete the App and/or clear its data from your iCloud account.
  • We retain operational logs and AI request/response records for as long as we operate the service — to debug, secure, and improve it — and do not delete them on a fixed schedule. When you delete your account (above) or make a valid erasure request, we delete the personal data we hold about you; where complete removal from operational logs or AI traces is not technically feasible, any remaining records are retained only in limited form and are not used to re-identify you.

7. Your Rights & Choices

  • Access & export — you can export your data from within the App.
  • Deletion — you can delete your account and data as described in Section 6.
  • Connected services — you can disconnect Garmin, Strava, or Apple Health at any time. You can also revoke access directly from Garmin Connect settings, Strava settings, or Apple Health settings on your device.
  • EU/EEA (GDPR) — you have rights of access, rectification, erasure, restriction, portability, and objection. Our legal basis for processing is performance of our service to you and our legitimate interest in operating and improving it.
  • California (CCPA/CPRA) — you have the right to know, delete, and correct your personal information, and to opt out of "sale"/"sharing" — note that we do not sell or share your personal information as those terms are defined.

To exercise any right, use the in-app controls or contact us at support@letsgooo.fit.

8. Security

  • All network communication uses HTTPS/TLS encryption.
  • Connected-service credentials are stored in the iOS Keychain.
  • We use Apple's DeviceCheck / App Attest to help ensure requests come from a genuine, untampered copy of the App.

No method of storage or transmission is completely secure, but we work to protect your information using industry-standard safeguards.

9. Children's Privacy

Let's Gooo is not intended for use by children under the age of 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us and we will delete it.

10. Changes to This Policy

We may update this policy as the App evolves. When we make material changes, we will update the "Last updated" date and, where appropriate, notify you in the App.

11. Contact

If you have questions about this Privacy Policy or our data practices, please contact us:

  • High Route Studio LLC
  • Email: support@letsgooo.fit
  • 12030 Donner Pass Rd, STE 1-239, Truckee, CA 96161