Privacy Policy

Effective 2026-08-22. Applies to the ConstanFit iOS app (formerly LunaFit) and related services.

Overview

ConstanFit helps you log diet, workouts, body metrics, and cycle-related health information, with optional AI coaching. By default, much of your data stays on your device until you create an account and sign in. Signed-in data can be restored onto a new device; ConstanFit is not a live multi-device sync product.

Data we collect

Sign-in options

How we use data

We use your information to operate the app, back up signed-in logs so you can restore them on a new device, personalize nutrition and coaching, enforce AI credit limits, deliver push announcements you opt into, process subscriptions, and respond to support requests. We do not use your data for cross-app advertising or sell personal information.

Apple Health

HealthKit access is optional. Energy burned (active and resting) is read on your device for calorie-gap display and is not uploaded to our servers. Menstrual flow data is only accessed if you choose to import from Apple Health or save cycle logs that you choose to sync. You can revoke Health access in iOS Settings → Health → Data Access & Devices → ConstanFit.

Service providers

Food nutrition database

ConstanFit maintains a private food reference database for meal lookup. It may include data from USDA FoodData Central (public domain, CC0) and Open Food Facts (ODbL, with attribution). ConstanFit-authored entries cover common local dishes. This database is accessed only through your signed-in ConstanFit account.

On-device data, sign-out, and sync

Sign out ends your session and clears auth tokens. Fitness logs, profile drafts, and known-account labels for that user can remain on the device so you can sign back in later. Use Profile → clear device login records if you want those labels removed, or delete the app to remove local storage.

When signed in, local changes may upload to our servers so you can restore that copy on a new device. The app does not keep two phones in live sync. Pending upload is discarded (not uploaded) when you delete your account from that device.

Retention & deletion

We retain account and synced data while your account is active. Signed-in users can export a cloud data snapshot from Profile (or GET /v1/me/export) or delete their account from Profile, or contact us via Support / in-app Feedback. Exports are capped cloud snapshots (recent synced history); unsynced on-device changes are not included, and email / identity subjects are redacted.

Account deletion removes cloud-synced ConstanFit data for your account and erases ConstanFit data for that account on the device where you confirm deletion. Other devices that previously signed into the same account may still hold local caches until you sign out there, clear device login records, or remove the app. On account deletion we scrub in-app feedback message bodies and unlink them from your account; remaining anonymized feedback rows are purged on a rolling retention schedule (about 90 days). We may retain minimal billing records (subscriptions and purchase events) as required by law and to process App Store refunds.

AI processing

When you use coach chat, meal parse, meal photo estimate, or other AI features, the prompts and related context you send are processed by ConstanFit’s API and forwarded to business partners that provide third-party AI model processing to generate a response. Meal photos used for estimates are not stored on ConstanFit servers after the estimate. Structured cycle and Health fields are removed before those partners see a request. Free-text you type is sent as-is and may include sensitive details. Those partners may retain request data according to their own policies; deleting your ConstanFit account removes our copies but cannot erase upstream partner logs. Prefer not to paste information you are unwilling to share with those partners. AI features are optional, require an in-app Third-party AI processing Allow, and consume account credits.

Security

Sessions use encrypted tokens stored in the iOS Keychain. API traffic uses HTTPS. Admin access to production data is restricted and audited.

Children

ConstanFit is not directed at children under 13 (or the minimum age in your region). We do not knowingly collect personal information from children.

Changes

We may update this policy. The effective date above will change when we do. Continued use after an update means you accept the revised policy.

Contact

Questions: support@lunafit.app or Support.