AANA Privacy Policy
Effective date: 6 October 2026
This policy explains what information the AANA app ("AANA", "the app", "we", "us") handles, where it goes, and what you can do about it. It is written for users in the United Kingdom and follows the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. If you use AANA somewhere else, we apply the same protections to you.
Who we are. AANA is provided by Noyal George, trading as AANA, in the United Kingdom. For anything in this policy, contact us at support@getaana.com.
The short version
- Your training data stays on your phone. Workouts, sets, plans, goals and everything else you log are stored in a database inside the app on your device. We do not have a copy.
- There is no account. We never ask for your email address, phone number or a password.
- No ads, no analytics SDKs, no third-party trackers. The app contains no advertising, analytics or tracking libraries.
- One feature sends data off your phone: Personal coaching. It is optional and off until you agree. The app asks you once, the first time a paid subscriber could get a written message, before anything is sent; it never asks during the free trial. If you agree, it sends some training numbers so a message can be written for you, never your name. Details are below.
- You can export or delete everything on your phone at any time from Settings.
1. What is stored on your device
The app keeps its data in a database inside the app's private storage on your phone. This includes:
- Your profile: the name you entered, if you entered one (it is optional); how you like to be addressed (your name, or "koottukaara"/"koottukaari", Malayalam for "friend"; a nickname saved in an earlier version is kept until you change it); and, only if you chose to enter them, your body weight, height and date of birth. Your name and these three optional fields never leave your phone; the app stores them and lets you edit and export them, and does not use the three for anything else.
- Preferences: units (kg or lb), height units, coaching voice (English, or English with Malayalam), theme, tab bar style, screen layouts, whether you agreed to Personal coaching, and when you last answered its question.
- Training data: your plans, days and exercises (including any custom exercise names you type); every workout and set (weight, reps, set type such as drop sets and myo-reps, warm-ups); goals; focus blocks; recovery and performance check-ins; and the volume suggestions the app has shown you and your answers.
- An on-device activity log. The app records what happens in it (for example "set logged", "suggestion dismissed", "paywall shown") with a timestamp and the app version. This log is stored only on your device. It is not sent to us or anyone else. It is included in your data export.
- Subscription status in the app: whether you are in the trial, when it started, any promo code you redeemed, and your subscription type.
- An installation ID: a random identifier the app creates and saves when it starts after you've set it up. It is not linked to your name, email, device or store account. It only leaves your phone with a Personal coaching request (section 2).
We cannot see any of this. It is not encrypted by the app itself; it is protected by your phone's own security (your passcode and the operating system's app sandboxing and storage encryption). Depending on your phone's settings, it may be included in your device's own backups, such as iCloud Backup or Google's Android backup.
2. What leaves your device, and when
Personal coaching
Personal coaching writes Ashaan's messages for you with an AI model instead of using the app's pre-written messages.
Your choice. Personal coaching is off until you agree to it. The first time you could get a written message, on the Home screen, with a paid subscription, the app shows a short explanation of what is sent, who receives it and what is never sent, with two buttons: Turn on personal coaching and Not now. Nothing is sent before you answer. If you choose Not now (or close the explanation), the app asks once more after 30 days, and then never again. You can turn it on or off at any time in Settings → Account → Personal coaching, which shows the same explanation.
When it runs. Only when all of these are true:
- you have a paid subscription (monthly, annual or Founders' Lifetime), not during the free trial or on the free tier;
- you have turned Personal coaching on; it is off by default, and on phones that had it before this version it was switched off until you agree; and
- a screen needs a coaching message that is not already saved on your phone. The Home greeting is requested at most once per day.
If any of these is not true, the app uses its pre-written messages and sends nothing.
What is sent. Each request goes over an encrypted (HTTPS) connection to our server and contains:
- "koottukaara" or "koottukaari", only if you chose one of them as your address, and only in a message that may use it. Never your name or a nickname; those stay on your phone;
- your coaching voice (English, or English with Malayalam);
- the type of message needed (for example "monthly review" or "Home greeting");
- the training facts that message is about. Depending on the message, these can include exercise names (including custom names you typed), muscle groups, weights (already shown in your chosen units, for example "82.5kg"), reps, set counts, session counts, days since you last trained, your streak, goal targets and estimated one-rep maxes, and focus-block progress;
- your installation ID (see above).
It does not include your body weight, height, date of birth, check-in answers, your full workout history, or any identifier from your device or store account.
Where it goes.
- Our server runs on Supabase, in the eu-west-2 (London) region. Supabase acts as our data processor.
- Our server forwards the message type, your voice, the training facts and, when it was sent, "koottukaara"/"koottukaari" to Anthropic, PBC (United States), which runs the AI model (Claude) that writes the message. Your installation ID is not sent to Anthropic. Anthropic acts as our data processor under its data processing agreement. Because Anthropic is in the United States, this is an international transfer; it is protected by the EU standard contractual clauses together with the UK International Data Transfer Addendum, which form part of that agreement. Anthropic deletes the inputs and outputs of API requests within 30 days, keeps them longer only where the law requires it or a request is flagged for misuse (up to two years), and does not use them to train its models.
- The written message comes back to your phone so the same message isn't requested twice. The Home greeting is saved in the app's database until the end of that day. Other messages are held only in the app's memory, for up to 24 hours (30 days for the monthly review), and are gone when the app is fully closed.
What our server keeps. Our server does not store the address word, the training facts, or the written message. For each request it records a usage row containing:
- your installation ID,
- the message type,
- the AI model used,
- the number of text units ("tokens") sent and received, and how long the request took,
- whether it succeeded, and if not, a short reason (for example "rate limited"),
- the estimated cost,
- the date and time.
It also keeps a count of requests per installation ID per day (to enforce a daily limit of 60) and a running total of monthly cost across all users.
Why. Your consent, given when you turn Personal coaching on (UK GDPR Article 6(1)(a), and Article 9(2)(a) explicit consent, since training facts can count as data about your health), which you can withdraw at any time; and, to protect the service from abuse and runaway costs through rate limits and spending caps, our legitimate interests (Article 6(1)(f)).
How to turn it off. Settings → Account → Personal coaching → Turn off personal coaching. The app immediately goes back to pre-written messages, stops a request already on its way, and sends nothing further.
App updates
When it starts, the app checks Expo's update service (u.expo.dev, run by 650 Industries, Inc. ("Expo"), United States) for small updates to the app's code. These requests send the app's version and update channel, your platform (iOS or Android), the identifier of the update currently installed, and a random installation identifier that the update library creates. Like any internet request, they also reveal your IP address to Expo. They contain none of your training data or profile. Expo processes these requests to deliver updates; its privacy policy at expo.dev/privacy explains how it handles them.
Crash reports
This version of the app does not send crash reports. The app contains optional crash reporting, and it is switched off. If a future version turns it on, this policy will be updated first to say what a report contains and where it goes.
Things you choose to share
If you use Export my data or Share my log, the app creates a file (your data as JSON) or an image (a summary card), and your phone's share sheet opens. Where it goes next, whether email, messages or cloud storage, is your choice, and that service's own privacy terms apply. We do not receive it.
Import data does the reverse: you pick an export file on your phone, and the app reads it there and replaces the data on your phone with it. Nothing is sent anywhere.
Purchases
Subscriptions and the Founders' Lifetime purchase are sold through the App Store or Google Play. Payment is handled entirely by Apple or Google; we never see your card or bank details. To check whether your purchase is active, the app uses RevenueCat, Inc. (United States), which receives an anonymous app user ID and your purchase and subscription history from the store, and acts as our data processor. Your training data is not involved in this.
3. What we do not collect
- No account, email address, phone number or password.
- No advertising, analytics or attribution SDKs, and no third-party trackers. We do not track you across other apps or websites.
- No location, contacts, photos, microphone, camera or health-app (Apple Health / Google Health Connect) data.
- No selling or sharing of your information for advertising.
4. How long information is kept
| Information | Where | How long |
|---|---|---|
| Profile, training data, activity log, preferences | Your phone | Until you delete it in the app, delete all data, or uninstall the app. A deleted plan or plan day stays in Settings → Recently Deleted for 30 days, then leaves that list for good. Its name is kept so past workouts still show which day they belonged to, until you delete all data. |
| Saved coaching messages | Your phone | Home greeting: in the database until the end of the day. Other messages: in memory only, up to 24 hours (monthly review 30 days), gone when the app is fully closed. |
| Personal coaching usage rows | Supabase, London | 90 days, then deleted automatically by a daily job. You can delete them sooner (section 5). |
| Daily coaching limit counters | Supabase, London | Deleted automatically once they are more than a day old. |
| Monthly cost total (one figure for all users, no installation ID) | Supabase, London | Kept, to enforce the spending cap. It contains nothing about you. |
| Request data sent to Anthropic | Anthropic | Deleted within 30 days; kept longer only where the law requires it or a request is flagged for misuse (up to two years). Never used to train models. |
| Server and function logs | Supabase | Technical logs are kept for up to 7 days, depending on our plan. They may include request details such as your IP address, but never the content of a request. |
| Update-check requests | Expo | As described in Expo's privacy policy. |
| Purchase records | RevenueCat and your store | For as long as your purchase is active and as their own policies require. |
5. Your rights
Under UK GDPR you have the right to access, correct, delete, restrict or object to the use of your personal data, the right to data portability, and the right to complain to the Information Commissioner's Office (ICO).
On your phone, you can do this yourself, any time:
- See and take a copy of your data: Settings → Your Data → Export my data creates a JSON file with your profile, plans, workouts and sets, goals, focus blocks, check-ins, volume suggestions and the on-device activity log. Import data puts such a file back on a phone (for example a new one), replacing what is there.
- Correct it: edit your profile in Settings → Profile; edit or delete individual sets in Settings → Your Data → Session history; edit plans in the plan editor.
- Delete it: Settings → Your Data → Delete all my data permanently deletes everything the app stores on your phone and returns the app to a fresh install. Uninstalling the app also deletes it.
- Stop data leaving your phone: leave Personal coaching off (it is off unless you turned it on), or turn it off in Settings → Account.
On our server, records kept under your installation ID:
- See your installation ID: Settings → Your Data → Your data on our server shows it, with a button to copy it. It is also included in your data export.
- Delete your server data: Settings → Your Data → Your data on our server → Delete my data on our server. After you confirm, our server immediately and permanently deletes every Personal coaching usage record and daily limit counter held for your installation ID, and the app tells you how many records were removed. Your training data on your phone is not affected. The monthly cost total is a single figure for all users, contains no installation ID, and is not affected.
- If you can't use the app, email support@getaana.com with your installation ID, and we will delete the same records within one month.
Delete all my data only deletes data on your phone, including the installation ID; the app creates a new one afterwards. To remove server records too, use Delete my data on our server first.
To exercise any right we cannot handle in the app, contact support@getaana.com. We will reply within one month. You can complain to the ICO at ico.org.uk or on 0303 123 1113.
6. Children
AANA is a strength-training app intended for people aged 18 and over. The app does not ask for your age; date of birth is optional and unused. We do not knowingly process personal data of anyone under 18. If you believe someone under 18 has used Personal coaching, contact us and we will delete the related usage records.
7. Security
Data sent off your phone travels over HTTPS. Our server tables are accessible only to our server functions, never directly from the app. Personal coaching requests are rate-limited and capped. On your phone, data is protected by the operating system's app sandbox and storage encryption.
8. Changes to this policy
If we change what the app collects or where it sends it, we will update this policy and its effective date, and tell you in the app before the change takes effect.
9. Contact
Noyal George, trading as AANA · support@getaana.com