Privacy Policy
Last updated: 19 May 2026
The legal text below is provided in English. A full translation may be added in a future update.
Last updated: 19 May 2026
This policy is effective as of 19 May 2026. It supplements the heading above and applies to our website and mobile apps. The public URL for this page is https://www.shiftcoach.app/privacy-policy. No sign-in is required to read it.
1. Introduction
Shift Coach ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share information when you use our website, mobile applications, and related services (together, the "Services").
If you do not agree with this policy, please do not use the Services.
2. Who we are
The data controller for personal information processed through the Services is Shift Coach.
Contact: shift-coach@outlook.com
Health and fitness data
Shift Coach may access, collect, and process health and fitness data when you manually enter it in the app or when you connect Health Connect, Apple Health, Android Health, or other wearable integrations and grant permission on your device. This data is used only to provide the app's health, fatigue, recovery, sleep, body clock, hydration, caffeine, and shift-work wellness features.
For a shorter summary focused on health integrations, see our Health Data Notice. The notice links back to this Privacy Policy as the full statement of our practices.
| Data type | Source | Purpose |
|---|---|---|
| Sleep duration, bedtime, wake time, sleep timing, and sleep quality |
|
|
| Steps, activity, exercise, movement, and calories where available | ||
| Heart rate and resting heart rate where permission is granted | ||
| Hydration and caffeine intake entered by the user | ||
| Shift patterns, fatigue risk, recovery scores, body clock estimates, and wellness insights |
- Shift Coach does not sell personal data or health data.
- Shift Coach does not use Health Connect, Apple Health, Android Health, or wearable health data for advertising.
- Health data is only used to provide the app's health, fatigue, recovery, sleep, body clock, hydration, caffeine, and shift-work wellness features.
- Health data is not shared with third parties except where required to provide the app's core functionality (for example secure hosting and subscription validation), to comply with the law, to protect security, or where the user gives consent.
On Android, you can revoke Health Connect access at any time in Settings → Health Connect → App permissions → Shift Coach.
Health data retention
- Health and fitness data is kept while the user's account is active so Shift Coach can provide app features (for example sleep history, fatigue scores, and shift-aware guidance).
- If the user deletes their account, associated personal and health data is deleted or anonymised within approximately 30 days, unless retention is required for legal, security, fraud-prevention, or accounting reasons.
- Users can delete certain manually entered data in the app where supported (for example individual sleep or log entries on their respective screens).
See also section 8. Data retention below for general retention practices.
How to delete your data or account
You can request deletion of your account and associated personal and health data using any of the following methods:
- Open Shift Coach.
- Go to Settings.
- Choose Delete Account, if available.
- Or visit https://www.shiftcoach.app/account/delete
- Or request deletion by emailing shift-coach@outlook.com from the email address linked to your account.
If you cannot sign in, you may use our web deletion request form: Account deletion request. We may verify your identity before processing deletion requests.
See section 10. Your rights below for export, correction, and partial deletion without closing your account.
3. Information we collect
3.1 Information you provide
- Account data: email address and authentication credentials (managed through our authentication provider).
- Profile data: information you enter in your profile (for example name, age, heights/weights where applicable, goals, activity level, timezone, and preferences).
- Rota / schedule data: shifts, patterns, uploads, calendar events related to work schedules.
- Wellness logs (where available): sleep logs, hydration, caffeine, mood, and activity entries you record in the app.
- Support & communications: emails or messages you send us.
3.2 Information collected automatically
- Service usage & technical data: device/browser type, app version where applicable, IP address, diagnostic logs essential for security and reliability, and timestamps of requests.
- Authentication / session cookies (web): essential cookies or similar storage needed to keep you signed in.
3.3 Health & activity data from connected platforms (optional)
Health and fitness data is described in the Health and fitness data section above. With your explicit permission through your device or operating system, we may read and sync health-related data you choose to connect.
- Android (Google Health Connect): typically steps, sleep / session-style sleep data, and heart rate. Shift Coach requests read access only for categories you approve.
- iOS (Apple Health): permitted categories align with integrations you authorize on-device / in-app.
Legacy note: Google Fit onboarding is not our primary Android path—Health Connect is preferred for newer integrations.
3.4 Subscription & purchase data
If you subscribe, we process subscription status and purchase metadata through our subscription infrastructure (including product identifiers, renewal status, trial windows, and platform indicators). Payments are handled by Apple and/or Google (via their billing systems together with RevenueCat validation). We do not store your full payment card on our servers.
3.5 AI-assisted features (where used)
Some features may send limited context (for example sleep or wellness-related fields already stored in your account) to our AI provider to generate suggestions or wording shown in the app. We do not operate a general open-ended coaching chat intended to collect ongoing long conversation threads between you and a bot; processing is oriented toward specific in-app outputs.
4. How we use your information
- Provide, operate, personalize, and secure the Services.
- Deliver shift-aware guidance—for example sleep, recovery, activity, nutrition timing, or related insights.
- Calculate shift-adjusted targets or meal-timing views where enabled for your subscription tier.
- Validate subscriptions and entitlements.
- Send service-related notifications and emails.
- Maintain, improve, and develop features (including reliability and fraud prevention).
- Comply with law and enforce our terms.
5. Legal bases (EEA/UK users)
Where GDPR-style rules apply, we typically rely on:
- Contract: providing Services you request.
- Legitimate interests: security, fraud prevention, product improvement, service communications—balanced against your rights.
- Consent: where required for certain integrations or optional analytics.
- Legal obligation: where retention or disclosure is required.
6. How we share information
We share information with service providers who process data on our behalf, including:
- Supabase: authentication and database hosting.
- RevenueCat: subscription status and purchase validation alongside Apple App Store and Google Play billing.
- OpenAI (or successors): limited tokens/context for AI-assisted outputs where enabled.
- Resend: transactional email delivery.
- Cloud/hosting infrastructure used to run our website and APIs (for example Edge / server providers).
We may disclose information if required by law, to protect users, or in connection with a merger or acquisition (with notice where required). We do not sell your personal information or health data. Health data sharing is limited as described in Health and fitness data.
7. International data transfers
Your information may be transferred to and processed in countries other than your country of residence (including wherever our subprocessors operate). Where required, we use appropriate safeguards such as Standard Contractual Clauses or comparable mechanisms.
8. Data retention
We retain information while your account is active and as needed to provide Services. After account deletion, we aim to delete or anonymize personal information within 30 days, except where law, security obligations, or dispute resolution requires longer retention.
Health and fitness data retention is described in Health data retention.
9. Data security
We implement appropriate technical and organizational measures, including encryption in transit where provided by our stack and protections from our vendors. No online service can be guaranteed 100% secure.
10. Your rights
Depending on your location, you may have rights to access, correct, delete, export, or object to/limit certain processing—and to lodge a complaint with a supervisory authority. To exercise rights, email us from your account email; we may verify your identity before acting.
- Access your personal data.
- Export your data where the app provides tools (for example Settings / data export).
- Delete your account and associated personal data.
- Correct inaccurate information through in-app editing where available.
For step-by-step account deletion, see How to delete your data or account.
Deleting some of your data (without closing your account)
Shift Coach lets you remove individual health and activity records where the UI supports it—for example, deleting specific sleep history entries or updating logs on their respective screens.
For broader deletion of certain categories without closing your account, contact shift-coach@outlook.com from your account email describing what should be removed. We will confirm and comply subject to legal retention obligations.
Delete your entire account and associated data:
Signed-in account deletion | Web deletion request (if you cannot sign in)
11. Cookies and similar technologies (web)
We use essential cookies and similar mechanisms to authenticate users and operate the website. We do not use third-party advertising cookies as a core part of Shift Coach.
12. Children's privacy
Our Services are not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, contact us promptly.
13. Third-party links & integrations
Links to external sites or optional integrations are governed by each provider's policies. Review Apple, Google, and other vendors you connect independently.
14. Changes to this policy
We may update this Privacy Policy from time to time. We will post the revised policy on this page, adjust the stated effective/review date above, and may provide additional in-app notices for material changes where appropriate. Continued use after changes may constitute acceptance (where lawful).
15. Contact us
Questions about this Privacy Policy or requests to exercise your rights:
shift-coach@outlook.com
Nothing in this policy is medical advice. For emergencies, seek professional help immediately.