Privacy Policy
Chalk Workout Planner is built so we see as little of your data as possible. Your training stays in your browser. If you turn on Drive sync, it goes to your own Google Drive in a private folder we can’t access. The only personal data we ever see is the email address you sign in with.
Who we are
Chalk Workout Planner (“the planner,” “we,” “us”) is a single-purchase web app for building and tracking training programs. It is operated by an independent developer and reachable at support@chalkworkoutplanner.com.
What we collect, and what we don’t
What we do see
- Your email address, when you sign up. We use it to verify you bought the planner and to send you a one-time login code. We do not use it for marketing without your separate consent.
- Limited technical information needed to operate the sign-in flow — IP address and timestamp at the moment the login code is requested, used to prevent abuse. This is retained for up to 30 days and then deleted.
What we don’t see
- Your training data. PRs, workouts, weekly programs, achievements, injuries, notes — none of it touches our servers. It lives in your browser’s local storage on your device.
- Your Google Drive contents. If you choose to enable Drive sync, the planner stores its data in your Google Drive’s private application data folder (the
drive.appdatascope). This folder is invisible in the normal Drive interface and only the planner can read or write to it. We have no server in between — the planner talks directly from your browser to your Drive, using credentials only you control. We cannot see, read, or list anything in your Drive, including files inside the app folder itself. - Your purchase details beyond email. Payments are processed by third-party channels. We receive only the email and order confirmation those platforms share with sellers. We do not see or store payment card information.
How we use the email address
- After the purchase, to give you access to the workout planner.
- To send you a one-time login code so you can access the hosted planner.
- To respond when you email us for support.
- Occasionally, to send important updates about the product you purchased (e.g., a critical bug fix or a major new feature). You can unsubscribe from product update emails at any time.
We do not sell, rent, or share your email address with third parties for their marketing purposes.
Google API services and Drive sync
The planner uses Google’s OAuth 2.0 to let you connect a Google account for cross-device sync. The only permission it requests is https://www.googleapis.com/auth/drive.appdata, which grants access to a private, app-specific folder in your Drive — nothing else.
You can disconnect Drive sync from the planner at any time from the Profile screen. You can also revoke the planner’s access to your Google account directly at myaccount.google.com/permissions. If you do either, the file already in your Drive’s app folder remains until you delete it manually.
Cookies and analytics
The planner uses your browser’s local storage to remember your workouts — that’s not a cookie and it never leaves your device. We do not currently use third-party analytics or advertising cookies on the planner itself. If we add basic analytics in the future, we will update this policy and use a privacy-respecting provider that does not track individuals across sites.
How long we keep things
- Email address used for sign-up: as long as you have access to the planner, plus a reasonable period afterward for legal and accounting reasons.
- Sign-in IP / timestamp: up to 30 days, then deleted.
- Support emails: indefinitely, unless you ask us to delete them.
Your rights
Depending on where you live, you may have the right to:
- Ask what personal data we hold about you (which, as covered above, is essentially just your email and a recent sign-in log).
- Ask us to correct or delete it.
- Object to or restrict certain processing.
- Receive a copy of your data in a portable format.
- Withdraw consent at any time, where processing is based on consent.
- Lodge a complaint with your local data protection authority.
To exercise any of these, email support@chalkworkoutplanner.com. We aim to respond within 30 days.
Note that your training data is stored on your device (and optionally in your own Google Drive). You control it directly — we cannot delete it for you because we never had a copy. The Export and Import features in the planner give you full data portability.
Where data is processed
Email-based sign-up, sign-in and support email are handled through Google services. Payment processing is handled by third-party platforms. Each of these providers processes data in their own infrastructure, subject to their own privacy policies.
Children
The planner is not directed at children under 13. If you believe a child has signed up, contact us and we will delete their information.
Changes to this policy
If we make meaningful changes, we will update the date at the top of this page and, where the change affects how we use your data, send a notice to the email on file.
Contact
Questions, requests, or concerns: support@chalkworkoutplanner.com.