1. Scope and contact
This Privacy Policy applies to the FitGoFree Android app and this website. FitGoFree is a fitness and general wellness app that provides exercise guidance, workout plans, progress tools and optional referral features. For privacy questions, support, or a request about your data, use the FitGoFree Support page.
2. Information FitGoFree handles
FitGoFree is designed so that most fitness information stays on your device. The app may handle the following information depending on the features you choose:
- Phone-account information: when you sign in, your phone number is verified through Firebase Authentication. You can also provide a display name, which is stored with your Firebase account.
- Referral information: signed-in referral features use a unique referral code, a Firebase user ID, verified referral events and a one-way hash of a verified phone number to prevent duplicate referral claims. The app does not put phone numbers in referral links.
- Fitness information stored locally: health-profile and BMI inputs, saved exercises, weight entries, set logs, workout history, unfinished workout drafts and locally saved service-request details are stored on the device where you use the app.
- Optional service-request information: if you complete a free diet-plan request, the app can store the request locally and prepare a WhatsApp message. It does not automatically send that message or automatically upload the request to a FitGoFree server.
- Integrity and referral-abuse signals: when available, the app may request a Google Play Integrity token for an abuse-sensitive referral claim. This token is sent to FitGoFree’s trusted backend for Google’s server-side verification; the app does not treat a token on the device as proof of integrity.
3. How information is used
FitGoFree uses this information only to operate the features you choose: verify a phone-account sign-in, create and protect a referral code, count qualified referrals, prevent referral abuse, show your locally saved training and progress information, and enable a request that you choose to take to WhatsApp. We do not sell personal information or use third-party advertising SDKs in the current app.
4. Google, Firebase and external services
FitGoFree uses Google and Firebase services to provide its signed-in features:
- Firebase Authentication handles phone-number verification and the associated account identity.
- Firebase Cloud Functions and Cloud Firestore operate the server-authoritative referral service. Direct access to the referral database from the app is not allowed.
- Google Play Integrity can provide an anti-abuse signal for referral claims. It is currently advisory: temporary availability problems, network problems and development builds do not block normal use of the app.
- Google Play Install Referrer may be used to associate a Play-installed referral invitation with the sign-in flow.
- WhatsApp is opened only when you choose to send a prepared service-request message. That conversation is governed by WhatsApp’s own privacy policy and terms.
Google and Firebase process information under their own terms and privacy practices. FitGoFree does not use an advertising SDK or website analytics script on this site.
6. Security
FitGoFree uses Firebase Authentication for phone verification, trusted server-side callable functions for referral actions, and denies direct client read/write access to the referral database. The app uses encrypted transport for network requests and does not intentionally log Play Integrity tokens. No method of storage or transmission is completely secure, so please keep your device and verification codes private.
7. Retention and deletion
Fitness records listed above remain on your device until you delete them in the app, clear app data, or remove the app. A locally saved service request is also removed by the in-app personal-data deletion control.
For a signed-in account, FitGoFree keeps Firebase account and referral records only for as long as needed to operate and protect the referral feature. You can request account deletion using our Account & Data Deletion page. After we verify the request, we delete the Firebase Authentication account and associated referral records. A one-way phone hash may be retained only where necessary for a limited security or referral-fraud prevention purpose; if that applies, we will explain it in response to your request.
8. Your choices and rights
You can use the app’s privacy controls to remove locally stored personal fitness data. You can choose not to sign in or not to use referral features. You can decline to open WhatsApp or to send a prepared request. You can also contact FitGoFree to ask about access, correction or deletion of the account-related information described in this policy, subject to applicable law and identity verification.
9. Notifications
The current Android app does not request notification permission and does not use Firebase Cloud Messaging. If notifications are added in a future release, this policy will be updated before that change is used.
10. Children
FitGoFree is not directed to children. Do not use the app to provide a child’s personal information. If you believe a child has provided personal information, contact us through the Support page so we can review the request.
11. Changes to this policy
We may update this policy when FitGoFree’s features or legal obligations change. We will post the revised policy on this page and update the “Last updated” date.