Privacy Policy
Last updated: December 4, 2025
1. Introduction
Rollforge (“we”, “our”, “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our Service.
2. Information We Collect
2.1 Information You Provide
- Account Information: Email address and name from Google Sign-In
- Profile Information: Belt level, training frequency, goals, academy name
- Training Logs: Session notes, dates, what worked/failed, injuries
- Voice Recordings: Processed in-browser; we only store the transcribed text
2.2 Information Collected Automatically
- Usage Data: How you interact with the Service (pages visited, features used)
- Device Information: Browser type, operating system, device type
- Log Data: IP address, access times, error logs
3. How We Use Your Information
We use your information to:
- Provide and maintain the Service
- Generate personalized AI coaching recommendations
- Track your training progress over time
- Improve and optimize the Service
- Communicate with you about updates or issues
- Detect and prevent fraud or abuse
4. AI Processing
Your training logs are processed by OpenAI's API to generate coaching insights. This processing:
- Occurs in real-time when you request analysis or advice
- Is subject to OpenAI's Privacy Policy
- Does not use your data to train OpenAI's models (per our API agreement)
5. Data Storage and Security
Your data is stored securely using:
- Database: PostgreSQL hosted on Render with encryption at rest
- Authentication: Secure OAuth 2.0 via NextAuth.js
- Transmission: All data transmitted over HTTPS/TLS
- Access Control: Your data is isolated and only accessible by you
6. Data Sharing
We do not sell your personal data. We may share data with:
- Service Providers: Render (hosting), Vercel (frontend), OpenAI (AI processing)
- Legal Requirements: If required by law or to protect our rights
- Business Transfers: In the event of a merger or acquisition
We may share anonymized, aggregated statistics that cannot identify individual users.
7. Data Retention
- Active Accounts: Data retained while your account is active
- Deleted Accounts: Data deleted within 30 days of account deletion
- Backups: May persist in encrypted backups for up to 90 days
8. Your Rights
You have the right to:
- Access: Request a copy of your data
- Correction: Update or correct your information
- Deletion: Request deletion of your account and data
- Export: Download your training data in a portable format
- Objection: Object to certain processing of your data
To exercise these rights, contact us at the email below.
9. Cookies and Tracking
We use:
- Essential Cookies: Required for authentication and security
- Analytics: To understand how the Service is used (can be opted out)
We do not use advertising cookies or sell data to advertisers.
10. Children's Privacy
The Service is not intended for users under 13 years of age. We do not knowingly collect information from children under 13. If we discover such data has been collected, we will delete it promptly.
11. International Data Transfers
Your data may be processed in the United States. By using the Service, you consent to this transfer. We ensure appropriate safeguards are in place for international transfers.
12. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or through the Service. The “Last updated” date at the top indicates when the policy was last revised.
13. Contact Us
For privacy-related questions or to exercise your rights, contact us at:
privacy@rollforge.ai