Privacy Policy

Effective 2026-08-12. Applies to the LunaFit iOS app and related services.

Overview

LunaFit helps you log diet, workouts, body metrics, and cycle-related health information, with optional AI coaching. By default, much of your data stays on your device until you create an account and sign in to sync.

Data we collect

Sign-in options

How we use data

We use your information to operate the app, sync your logs across devices when you are signed in, personalize nutrition and coaching, enforce AI credit limits, deliver push announcements you opt into, process subscriptions, and respond to support requests. We do not use your data for cross-app advertising or sell personal information.

Apple Health

HealthKit access is optional. Energy burned (active and resting) is read on your device for calorie-gap display and is not uploaded to our servers. Menstrual flow data is only accessed if you choose to import from Apple Health or save cycle logs that you choose to sync. You can revoke Health access in iOS Settings → Health → Data Access & Devices → LunaFit.

Service providers

Food nutrition database

LunaFit maintains a private food reference database for meal lookup. It may include data from USDA FoodData Central (public domain, CC0) and Open Food Facts (ODbL, with attribution). LunaFit-authored entries cover common local dishes. This database is accessed only through your signed-in LunaFit account.

On-device data, sign-out, and sync

Sign out ends your session and clears auth tokens. Fitness logs, profile drafts, and known-account labels for that user can remain on the device so you can sign back in or import leftover local data later. Use Profile → clear device login records if you want those labels removed, or delete the app to remove local storage.

When signed in, local changes may sync to our servers so your data is available on other devices. Pending sync is discarded (not uploaded) when you delete your account from that device.

Retention & deletion

We retain account and synced data while your account is active. Signed-in users can export a cloud data snapshot from Profile (or GET /v1/me/export) or delete their account from Profile, or contact us via Support / in-app Feedback. Exports are capped cloud snapshots (recent synced history); unsynced on-device changes are not included, and email / identity subjects are redacted.

Account deletion removes cloud-synced LunaFit data for your account and erases LunaFit data for that account on the device where you confirm deletion. Other devices that previously signed into the same account may still hold local caches until you sign out there, clear device login records, or remove the app. On account deletion we scrub in-app feedback message bodies and unlink them from your account; remaining anonymized feedback rows are purged on a rolling retention schedule (about 90 days). We may retain minimal billing records (subscriptions and purchase events) as required by law and to process App Store refunds.

AI processing

When you use coach chat, meal parse, or other AI features, the prompts and related context you send are processed by LunaFit’s API and forwarded to third-party model providers (currently DeepSeek and/or Alibaba DashScope / Qwen) to generate a response. Meal parsing typically uses DashScope / Qwen; coach and other structured features typically use DeepSeek. Our API redacts structured cycle/health context blocks from coach chat before forwarding, but free-text you type may still include sensitive details. Those providers may retain request data according to their own policies; deleting your LunaFit account removes our copies but cannot erase upstream vendor logs. Prefer not to paste information you are unwilling to share with those processors. AI features are optional and consume account credits.

Security

Sessions use encrypted tokens stored in the iOS Keychain. API traffic uses HTTPS. Admin access to production data is restricted and audited.

Children

LunaFit is not directed at children under 13 (or the minimum age in your region). We do not knowingly collect personal information from children.

Changes

We may update this policy. The effective date above will change when we do. Continued use after an update means you accept the revised policy.

Contact

Questions: support@lunafit.app or Support.