
Privacy Policy
ARLO PRIVACY POLICY
Effective Date: October 29, 2025
What Arlo Is
Arlo is an AI-powered performance coach delivered through a mobile iOS app. Arlo combines conversational AI coaching with automatic health data tracking, workout logging, and meal analysis to provide personalized training and nutrition guidance.
What We Collect
Information you provide:
Training details, workout logs, nutrition info, recovery data, and any other information you share with Arlo through the app
Photos of meals for macro analysis
Manual workout entries
Account information:
Name, email, age, fitness goals, training experience level, and any injury history (collected during onboarding)
Conversation history:
All messages exchanged between you and Arlo, stored securely to maintain context and improve coaching quality
Health and fitness data (with your permission):
When you grant access to Apple Health, Arlo collects: workouts, sleep data, heart rate variability (HRV), resting heart rate, steps, active calories, and other health metrics
This data is used exclusively to provide personalized coaching and insights
Payment information:
Processed securely through Apple In-App Purchase and RevenueCat (we never store your payment details)
Usage data:
App usage patterns, feature interactions, and session data to improve Arlo's performance
Device information:
iOS device type, operating system version, and app version for technical support and optimization
How We Use Your Information
Personalized coaching: To provide tailored training, recovery, and nutrition guidance based on your data and goals
AI improvement: To refine Arlo's coaching models and recommendations (your data may be used to train and improve our AI systems)
Health insights: To analyze trends in your training, sleep, recovery, and nutrition to provide weekly insights and recommendations
Service communication: To send you in-app notifications, coaching messages, account updates, and product improvements
Customer support: To respond to your questions and resolve issues
Third-Party Services We Use
To deliver Arlo's coaching, we work with trusted third-party service providers:
OpenAI: Powers Arlo's AI coaching intelligence and meal photo analysis. Your messages and photos are processed by OpenAI's API (GPT-4o-mini and Vision models) to generate coaching responses. While we use OpenAI's technology, we have disabled data sharing for model training—your conversations are used only to generate your coaching responses and improve Arlo, not to train third-party AI models.
OpenAI Privacy Policy
Firebase (Google Cloud): Stores your account data, conversation history, workout logs, meal logs, and health data securely.
Firebase Privacy Policy
Apple In-App Purchase: Processes all subscription payments securely (we never see your payment information).
Apple Privacy Policy
RevenueCat: Manages subscription status and billing webhooks.
RevenueCat Privacy Policy
Railway: Hosts our backend API that processes your requests and communicates with OpenAI.
Railway Privacy Policy
Apple Health: When you grant permission, Arlo reads health and fitness data from Apple Health. This data never leaves your device except to be processed by our secure backend for coaching purposes.
Apple Health Privacy
Important: By using Arlo, you acknowledge that your data will be processed by these third parties in accordance with their privacy policies to deliver the coaching service.
What We Don't Do
❌ We never sell your personal data to advertisers or third parties
❌ We never share your fitness, health, or nutrition data with anyone outside of the services required to operate Arlo
❌ We never use your data for purposes other than improving your coaching experience
❌ We never share your Apple Health data with third parties for marketing or advertising
Data Retention
Active accounts: We retain your data for as long as your subscription is active to maintain coaching context and track progress
Canceled accounts: After subscription cancellation, your data is retained for 90 days (in case you resubscribe), then permanently deleted unless required for legal or billing purposes
Conversation history: Stored while your account is active; deleted within 90 days of account closure
Health data: Deleted within 90 days of account closure or immediately upon request
Meal photos: Stored for analysis and coaching context; deleted within 90 days of account closure
Your Data Rights
You have the right to:
Access your data: Request a copy of all information Arlo has collected about you
Delete your data: Request complete deletion of your account and all associated data
Correct your data: Update your profile information anytime in the app's Profile tab
Export your data: Request a downloadable copy of your conversation history, workout logs, meal logs, and insights
Revoke health permissions: Disable Apple Health sync at any time through iOS Settings or the Arlo app
To exercise these rights, contact us at support@arlo.coach or request deletion through the app's Profile settings.
Additional Rights for EU and California Residents: If you are a resident of California or the European Union, you have additional privacy rights under CCPA and GDPR, including the right to data portability and the right to opt out of data sales (note: we do not sell your data). Contact support@arlo.coach to exercise these rights.
Data Security
We take security seriously:
All data is encrypted in transit (TLS/SSL) and at rest
Access to user data is restricted to essential personnel only
We use industry-standard security practices with Firebase, Railway, and OpenAI
Regular security audits and monitoring
Apple Health data is accessed only with your explicit permission and processed securely
However, no system is 100% secure. By using Arlo, you acknowledge the inherent risks of transmitting data over the internet and storing data in cloud services.
Apple Health Data
When you grant Arlo access to Apple Health:
Arlo reads only the data types you explicitly approve (workouts, sleep, HRV, heart rate, steps)
This data is used solely to provide personalized coaching and insights
You can revoke access at any time through iOS Settings → Privacy & Security → Health → Arlo
Apple Health data is subject to Apple's Health Records privacy practices
Children's Privacy
Arlo is not intended for users under 18. We do not knowingly collect data from children. If you believe a child has provided us with personal information, contact us immediately at support@arlo.coach.
Changes to This Policy
We may update this Privacy Policy as Arlo evolves (e.g., when we add new features or integrations). We'll notify you of significant changes via in-app notification or email. Continued use of Arlo after changes constitutes acceptance.
International Data Transfers
Arlo is based in the United States. Your data may be transferred to and processed in the United States or other countries where our service providers operate. By using Arlo, you consent to the transfer of your data to these locations.
Contact Us
Questions about this Privacy Policy?
Email: support@arlo.coach
Website: https://arlo.coach
Last updated: October 29, 2025