Privacy Policy
Last updated: August 2026
Information we collect
Sessions collects the following information to provide and improve our service:
- Account information: Email address and display name when you sign up via email, Google Sign-In, or Sign in with Apple.
- Profile data: Optional fitness information you provide, such as weight and FTP (Functional Threshold Power).
- Workout data: Workout plans you create and session data recorded during your rides (power, cadence, duration).
- Device data: Bluetooth device connection data used transiently during workout sessions. No Bluetooth device identifiers are stored on our servers.
How we use your information
- To provide and maintain the Sessions app experience.
- To store your workout history and allow you to track progress.
- To authenticate your identity and secure your account.
- To communicate important service updates via email.
Data storage
Your data is stored securely using Google Firebase services (Authentication and Cloud Firestore). Data is transmitted over encrypted connections (HTTPS/TLS). We do not sell your personal data. We share limited data with service providers as described below.
Third-party service providers
We share limited data with the following service providers to operate core features of Sessions:
- AI workout generation: To generate personalized workout suggestions, we send your FTP (Functional Threshold Power), requested workout duration, intensity level, and language to Anthropic, our AI service provider. This data is not linked to your name, email address, or account identifier.
- Subscription management: To verify and manage your subscription status, we share your user ID with RevenueCat, our subscription management provider.
- Strava integration (optional): If you choose to connect your Strava account, your session data (title, notes, and recorded power, cadence, heart rate, and speed) is uploaded directly from your device to Strava after each ride. This only happens for sessions you save after connecting, and you can disconnect at any time in Settings → Integrations. See Strava's own privacy policy for how they handle this data.
Bluetooth & location permissions
Sessions uses Bluetooth to connect to smart trainers and other cycling devices. On some platforms, Bluetooth scanning requires location permission at the OS level. Sessions does not track or store your location. This permission is used solely for Bluetooth device discovery.
Your rights
You can delete your account and all associated data directly in the app (Settings → Delete Account). You can also submit a deletion request by contacting us at contact@appsessions.co. You can update or correct your profile information directly within the app at any time.
Data retention
Your data is retained for as long as your account is active. Upon account deletion, all personal data — including your profile, workouts, and session history — is permanently and immediately removed from our systems.
Age restriction
Sessions is not directed at children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.
Contact us
If you have questions about this privacy policy or your data, please contact us at contact@appsessions.co.