Legal

Privacy, in plain language.

Your training is personal. INCREMNT collects only what the features you choose need to work.

Last updated

September 9, 2026

The short version

INCREMNT stores a hosted backup of training data so sync and connected features can operate. Cloud Sync, social features, AI Coach, and the ChatGPT and Codex plugin are optional account-connected features. We do not sell personal data or show advertising.

Training data, accounts, and Cloud Sync

Workouts are logged on your device first, and the app can be used locally without signing in. When hosted backup or Cloud Sync is active, INCREMNT may store workout history, programmes, custom exercises, progression and recommendation history, user-authored workout notes, and related training records. We also store a random install or account identifier, an email address when you connect with Apple or Google, and one-way hashes of authentication tokens.

Anonymous hosted backup does not include your name, profile measurements, or Apple Health data. Optional health and profile data is uploaded only for connected features you enable. The current account snapshot is stored in PostgreSQL on Render in Frankfurt. A new sync replaces the previous active snapshot.

You can delete hosted backup data in Settings. Account-connected data can be deleted in the app or by contacting support@incremnt.app.

Purchases and subscription access

Apple processes App Store payments and renewals. RevenueCat receives App Store purchase and entitlement information so INCREMNT can determine whether Pro access is active, restore purchases, and provide subscription support. INCREMNT stores account-bound entitlement status but does not receive or store complete payment-card details.

Eligible users may submit Apple-signed app-installation evidence to claim a Founder grant. INCREMNT retains a cryptographic hash and the minimum eligibility and audit fields needed to prevent duplicate or conflicting claims.

Analytics and technical diagnostics

With your permission, PostHog's EU-hosted service receives a random analytics identifier and events such as onboarding progress, subscription outcomes, workouts started or completed, personal records, exercise names, and workout duration. The same random identifier is shared with RevenueCat so subscription events can be joined to the app funnel. Names, email addresses, payment-card details, and raw advertising click identifiers are not sent to PostHog.

Website analytics are also off until you allow them. They can include page views, sections viewed, scroll depth, engagement time, App Store and Dashboard clicks, referring domain, campaign tags, and whether an advertising click identifier was present. We do not store the identifier itself, record website sessions, collect form contents, or create advertising profiles. Your choice is stored in your browser until you change it or clear browser storage.

Render and Better Stack receive limited operational request metadata such as timestamp, request path, method, status, duration, and a request correlation ID. They do not receive MCP tool arguments or results through INCREMNT's application logs. Sentry may receive redacted technical error and performance diagnostics when a failure occurs; these diagnostics are not intended to contain workout or health content.

AI Coach

AI Coach is off by default. If you enable it, INCREMNT's Render-hosted service prepares the training information you selected and sends it through OpenRouter to configured AI models to generate coaching responses, session recaps, and cycle summaries.

This can include exercises, sets, weights, reps, programme structure, progression history, volume, duration, personal records, questions typed in Ask Coach, and—only when enabled—bodyweight, body-fat percentage, lean body mass, other workouts, training load, separately enabled recorded nutrition (dietary energy, protein, fat, and carbohydrates), and recovery metrics such as heart rate, HRV, sleep, VO2 max, respiratory rate, calories, and body temperature. Names, email addresses, Apple or Google account details, authentication tokens, and raw HealthKit records beyond the selected metrics are not included in AI requests.

You can control recovery, other-workout, bodyweight, nutrition, and training-load sharing in AI Coach Settings, or disable AI Coach to stop future AI requests. Generated coaching notes and summaries are stored with the connected account until you delete them or delete the account.

ChatGPT and Codex plugin: tool inputs

If you connect INCREMNT from ChatGPT or Codex, OpenAI sends INCREMNT the selected tool name, an OAuth access token, and the narrow arguments required for the requested read or, on a connection that supports programme creation, the requested preview or confirmed creation. Arguments can include an INCREMNT session or programme ID, exercise name, date or date range, result limit, lookback period, and requested privacy exclusions. Programme tools also receive training preferences (such as goal, schedule, equipment, experience, session length and exercise choices), the proposed programme name and selections, a context fingerprint, a signed preview receipt, and a queued-change identifier for import status.

The plugin does not request the full conversation history, raw chat transcript, precise location, name, email address, password, or other authentication secret as a tool argument. Access and refresh tokens are used only to authenticate the connected account and are never returned in tool results.

ChatGPT and Codex plugin: tool outputs

INCREMNT returns only the connected account's information needed for the requested training analysis. Depending on the tool and your privacy settings, results can include:

  • Workout dates, session and exercise identifiers, user-authored notes, exercises, sets, reps, weights, duration, calories, heart rate, and recorded session context.
  • Programme structure, schedule, prescribed exercises, planned-versus-completed comparisons, progression and recommendation history, cycle progress, and adherence.
  • Exercise history, estimated one-rep-max records, weekly and per-muscle volume, effective sets, training profile, and recent training-load comparisons.
  • Increment Score and its components, current Coach observations, and comparisons between sessions and those observations.
  • When separately enabled: profile bodyweight, HealthKit body-mass trends, body-fat percentage and lean body mass; other workouts; and recovery/readiness metrics including resting and workout heart rate, HRV, sleep, VO2 max, respiratory rate, calories, and body temperature.
  • When nutrition sharing is separately enabled: recorded dietary energy in kilocalories and protein, fat and carbohydrates in grams, with dates, coverage and freshness. Missing food logs are unknown, not zero; overlapping entries from food apps may be included. Active energy is not calorie intake or total daily expenditure.
  • For programme-capable connections: allowed programme choices, complete previews, validation messages, signed preview receipts and expiry times, and the queued-change identifier and import status.
  • Dates, data-freshness timestamps, missing-data indicators, and the request parameters needed to interpret the result.

The server enforces your recovery, other-workout, bodyweight, nutrition, and training-load choices even if a tool requests excluded data. Read-only connections cannot create, update or delete INCREMNT data. When programme creation is available and you grant write access, the plugin can queue a new inactive programme after you confirm its preview. It cannot activate, edit or delete existing programmes, log food or body weight, or save nutrition targets. Plugin reads are computed by INCREMNT and are not sent to OpenRouter, Anthropic, Gemini, or another AI provider by INCREMNT; OpenAI receives the result so it can answer your request in ChatGPT or Codex.

ChatGPT and Codex plugin: purpose, recipients, and retention

INCREMNT and its hosting provider Render process the tool call to authenticate your account, retrieve the requested training and consent-enabled health or nutrition information, enforce privacy choices, validate programme previews, queue confirmed inactive programmes when authorized, and return results and import status. OpenAI receives the tool arguments and results and processes them under its own terms, privacy policy, ChatGPT settings, and workspace controls.

INCREMNT processes tool arguments and results in memory and does not keep a separate MCP request or response history. When you confirm programme creation, INCREMNT stores the resulting inactive programme and its queued change, retry-deduplication metadata and import outcome in the connected account so the iOS app can import it once. These records remain until the connected account data is deleted, subject to the backup window below. A preview alone does not save a programme. Signed preview receipts expire after 24 hours. The underlying account data remains subject to the account-retention rules below. Application logs contain request metadata, not tool arguments or results; the current Better Stack copy is retained for 3 days, and Render may retain the same limited metadata for no more than 30 days.

MCP access tokens expire after one hour. Rotating refresh tokens expire after 90 days and are revoked on replay, disconnect, or account deletion. Tokens are stored by INCREMNT only as one-way hashes. INCREMNT does not control copies of tool content stored in a ChatGPT or Codex conversation; use OpenAI's conversation, data, and workspace controls to manage those copies.

ChatGPT and Codex plugin: your controls

You can decline account linking, disconnect INCREMNT in ChatGPT or Codex, revoke the connection through INCREMNT support, change the recovery, other-workout, bodyweight, nutrition, and training-load switches in INCREMNT, or delete your hosted account data. Disconnecting prevents new tool calls but does not cancel an already queued programme or delete content already retained in an OpenAI conversation. Use INCREMNT to manage imported programmes; contact support to request deletion of queued account data.

Social features

If you use optional social features, INCREMNT stores your display name, username, avatar, posts and attached photos, comments, follow relationships, privacy preferences, and mute, block, or report actions. Visibility follows the privacy setting you select. You can delete individual content or delete the social profile and connected account.

Other integrations

Apple Health — INCREMNT reads the health categories you authorize and writes workout summaries through HealthKit. Health information remains on-device unless you enable a connected feature that explicitly includes selected metrics.

Strava — if connected, INCREMNT uploads completed strength workouts, which can include title, exercise and set description, duration, calories, and heart-rate samples. INCREMNT requests write permission and does not read your Strava profile or activities. Credentials are encrypted on INCREMNT's service. Disconnecting revokes access and deletes the credentials. See Strava's privacy policy.

Apple Calendar — scheduled workout days are written through the device calendar APIs. Calendar data is not sent to INCREMNT.

Retention

  • The active hosted training snapshot and connected-account content remain until replaced or deleted.
  • Encrypted disaster-recovery database backups are stored privately and deleted no later than 31 days after creation. Deleted account data can remain in those inaccessible operational backups until they cycle out and is used only for disaster recovery.
  • Ordinary account sessions expire after 30 days. MCP access tokens expire after one hour and refresh tokens after 90 days unless revoked sooner.
  • MCP tool arguments and results are not stored as a separate history by INCREMNT. Limited operational request metadata is retained for no more than 30 days.
  • AI-generated notes, social content, Strava connection data, entitlement records, and other account-connected records remain while needed to provide the selected feature or until the applicable content, connection, or account is deleted, subject to the backup window above.

Your choices

  • Use the Share Usage Data and Analytics preferences controls to stop future app or website analytics.
  • Disable AI Coach or individual sensitive-data categories in INCREMNT Settings.
  • Disconnect ChatGPT, Codex, Strava, or other connected services.
  • Revoke Health and Calendar access in device settings.
  • Export your training data or request deletion of hosted backup, connected-account, and social data.

Contact and changes

Questions, access requests, and deletion requests can be sent to support@incremnt.app. If our data handling changes, we will update this page and its date.