Data Processing Information

Transparency is important to us. Here's detailed information about how we collect, process, and protect your personal data in compliance with GDPR and other privacy regulations.

End-to-End Encryption

All your data is encrypted both in transit and at rest

Secure Infrastructure

SOC 2 Type II certified cloud infrastructure

GDPR Compliant

Full compliance with EU data protection laws

Data Categories We Process

Here are the types of personal data we collect and process, along with the purpose and retention periods.

Personal Information

Basic account and profile information

Data Types:

  • Name and email address
  • Date of birth and age
  • Phone number (if provided)
  • Profile photo (if uploaded)
  • Account preferences and settings

Purpose:

Account management, communication, personalization

Retention Period:

7 years after account deletion

Health & Fitness Data

Your health metrics and fitness progress

Data Types:

  • Weight, height, and body measurements
  • Workout history and exercise data
  • Progress photos (if uploaded)
  • Heart rate and fitness metrics
  • Nutrition and meal logging data

Purpose:

Personalized fitness plans, progress tracking, health insights

Retention Period:

3 years after account deletion

Usage Analytics

How you interact with our platform

Data Types:

  • App usage patterns and frequency
  • Feature usage statistics
  • Device and browser information
  • IP address and location data
  • Performance and error logs

Purpose:

Product improvement, bug fixes, security monitoring

Retention Period:

2 years

Communication Data

Your interactions with our support team

Data Types:

  • Support ticket history
  • Chat logs and messages
  • Feedback and survey responses
  • Community forum posts
  • Email communication records

Purpose:

Customer support, service improvement, legal compliance

Retention Period:

5 years

Processing Activities

Detailed information about how and why we process your personal data.

Automated Fitness Planning

Legitimate Interest & Consent

AI algorithms analyze your data to create personalized workout and nutrition plans

Data Used:

Health metrics
Fitness goals
Exercise history
Dietary preferences

Retention:

Duration of service + 1 year

Progress Tracking & Analytics

Contract Performance

Monitor your fitness journey and provide insights on your progress

Data Used:

Workout data
Body measurements
Progress photos
Nutrition logs

Retention:

Duration of service + 3 years

Family Account Management

Consent

Coordinate family fitness plans and manage multiple user profiles

Data Used:

Family member profiles
Shared goals
Permission settings

Retention:

Duration of service

Customer Support

Legitimate Interest

Provide technical support and respond to your inquiries

Data Used:

Contact information
Account data
Support history
Technical logs

Retention:

5 years after resolution

Security & Fraud Prevention

Legitimate Interest

Protect your account and prevent unauthorized access

Data Used:

Login data
Device information
IP addresses
Usage patterns

Retention:

2 years

Product Improvement

Legitimate Interest

Analyze usage patterns to improve our features and services

Data Used:

Anonymized usage data
Feature interactions
Performance metrics

Retention:

3 years (anonymized)

Third Party Data Sharing

We only share your data with trusted partners under strict contractual obligations.

Third PartyPurposeData SharedLocationSafeguards
Cloud Infrastructure ProvidersData hosting and processing
All categories (encrypted)
US, EUDPA, Standard Contractual Clauses, SOC 2 Type II
Analytics ServicesUsage analytics and app performance
Anonymized usage data only
USData Processing Agreement, Privacy Shield successor
Payment ProcessorsSubscription billing and payments
Billing information only
US, EUPCI DSS compliance, DPA
Customer Support ToolsProvide customer support services
Support communications only
USData Processing Agreement, encryption

Your Data Rights

Under GDPR and other privacy laws, you have several rights regarding your personal data.

Right to Access

Request a copy of all personal data we hold about you

Right to Rectification

Request correction of inaccurate or incomplete data

Right to Erasure

Request deletion of your personal data (right to be forgotten)

Right to Restrict Processing

Limit how we use your personal data

Right to Data Portability

Receive your data in a structured, machine-readable format

Right to Object

Object to processing based on legitimate interests

Exercise Your Rights

To exercise any of these rights, please contact our Data Protection Officer at privacy@shakapt.com or use our automated tools in your account settings.

Data Protection Queries?

Our Data Protection Officer is available to answer any questions about how we process your personal data.

Email: privacy@shakapt.com

Response Time: Within 30 days (GDPR requirement)

Languages: English, Spanish, French, German