01Introduction
This Privacy Policy describes how Apace Active LLC ("Apace Active," "we," "our," or "us"), a California limited liability company, collects, uses, and shares information about you when you use 75 Together and our website at 75together.com (collectively, the "Services").
We built 75 Together because we wanted an app for couples doing hard fitness challenges together that didn't exist. We take the privacy of your fitness data — and your relationship — seriously, and this policy describes in plain language what we do with the information you share with us.
If you don't agree with this policy, please don't use our Services. By using the Services, you agree to the collection and use of information as described here.
02What we collect
Information you provide directly
When you create an account or use the Services, you may provide:
- Account information: your email address, a chosen display name, and (optionally) a profile photo. If you sign in with Apple or Google, we receive a name and email from your Apple or Google account based on the permissions you grant.
- Partner pairing information: a 6-digit code (or QR code) that you share with your partner to pair your accounts. We use this code only to establish the pairing and discard it afterward.
- Daily challenge data: your daily progress on the five daily requirements you choose to track — workout completion, water intake, reading status, diet adherence, and progress photos. This is the core data the app exists to track.
- Body weight: if you choose to log your weight, we store the entries you type in so the app can show your trend over time. You enter this manually — we do not read it from any scale, health app, or other source.
- Calorie and macro calculator (optional): if you use the built-in calorie and macro calculator, you provide your height, biological sex, birth year, and diet type. We use these to compute your daily calorie and macro targets and store both what you entered and the targets we calculated. You can skip this feature entirely.
- Progress photos: if you choose to take or upload daily progress photos, those photos are stored in our backend and made available only to you and (if you choose) your paired partner. We do not analyze, share, or use your progress photos for any other purpose.
- Communications: if you email us at [email protected] or [email protected], we keep a record of that correspondence so we can respond and improve our services.
Information we collect automatically
When you use the Services, we and our service providers automatically collect:
- Device and technical information: device type, operating system version, app version, device identifiers (such as Apple's IDFV), language settings, and time zone.
- Usage information: how you use the app — which screens you visit, which features you use, how often you complete daily check-ins. We use this to improve the app and prioritize what to build next. This information is collected in aggregate and does not include the content of your check-ins.
- Crash and diagnostic information: if the app crashes or encounters an error, we receive a crash report through our error monitoring provider (Sentry). A report includes device state and the line of code that failed. It does not include your photos, your check-in details, your weight, or your name or email. Reports are associated with a random account identifier so we can diagnose recurring issues, not with your identity, and any screen recording attached to an error report has all text and images masked.
- Subscription and purchase information: if you subscribe to a paid plan, Apple processes your payment and tells us only that you have an active subscription. We do not receive your payment card information or billing address. Subscription status is delivered to us through RevenueCat.
Information we do NOT collect
To be explicit about what is not collected:
- We do not collect your precise location. The app has no location features.
- We do not access your contacts. Partner pairing is done via 6-digit codes, not by reading your address book.
- We do not access your microphone or camera roll (beyond photos you specifically choose to upload).
- We do not read data from Apple Health, HealthKit, or Google Fit (this may change in a future version; if it does, we will obtain your explicit consent first and update this policy).
- We do not collect biometric data, fingerprint scans, face data, or voice recordings.
- We do not track you across other apps or websites for advertising purposes. We do not use the Apple IDFA (advertising identifier).
03How we use information
We use the information we collect to:
- Provide, operate, and maintain the Services — including syncing your daily progress between your devices and (if paired) with your partner's account.
- Send you transactional notifications about the app (challenge milestones, partner activity, account events) — only those you have opted into.
- Process subscription purchases and provide subscription benefits.
- Respond to your support requests and other communications.
- Analyze usage patterns to improve the app and decide what to build next.
- Detect, prevent, and respond to security incidents, fraud, and violations of our Terms of Service.
- Comply with legal obligations, including responding to valid legal process.
We do not use your information for advertising. 75 Together is supported by paid subscriptions, not by selling user data or showing ads.
05Health and fitness data
Apace Active treats the data you log in our apps as health and fitness information — your daily progress, your weight, and the height, biological sex, birth year, and diet type you enter into the calorie calculator — even though we are not a medical device or healthcare provider. Specifically:
- We never use, sell, or disclose your fitness data — including workout completion, photos, and other daily tracking — for advertising, marketing, or any purpose other than providing the Services to you and your paired partner.
- We do not share your fitness data with data brokers, ad networks, or marketing partners.
- Personal health information is not stored in iCloud. Your daily progress and weight entries are stored in our backend (Firebase), encrypted in transit and at rest by Firebase. Your progress photos get stronger protection than that — they are encrypted on your device before they ever reach us, so we cannot read them. See Data security for exactly how.
- 75 Together is a fitness tracking tool. It is not a medical device, and the information it provides is not medical advice. Consult your physician before starting any fitness program.
If you live in Washington or Nevada, the data described here is also covered by a separate Consumer Health Data Privacy Policy written for those states' consumer health data laws.
06Data retention
We retain your information for as long as your account is active. When you delete your account, we delete your information from our active systems within 30 days, except where we are required to retain certain information for legal, tax, or fraud-prevention reasons.
Crash reports and aggregated analytics data may be retained beyond account deletion, but in a form that is not associated with your account or personal identity.
07Your rights
Account deletion (all users)
You can delete your account at any time from within the app. Account deletion will:
- Remove your account, profile information, daily progress, and weight entries from our active systems.
- Delete the progress photos you have uploaded — both your private copies and any copies you shared with a partner.
- Disconnect any active partner pairing.
- Cancel your access to paid subscription benefits (subscription itself is managed by Apple — see below).
One thing account deletion does not do: if you were paired, it does not delete your partner's data. Your partner keeps their own challenge and their own progress, and simply continues on a solo run. We delete what is yours, not what is theirs.
About your photo password: if you set a photo password, it protects a backup copy of the key that encrypts your photos. We never receive that password and we cannot reset it. If you forget it and then sign in on a new device, your photos cannot be recovered — not by us, and not by anyone. Keep it somewhere safe.
Important note about subscriptions: Deleting your account does not automatically cancel your Apple subscription. To cancel a paid subscription, manage it in your Apple ID Settings or at apps.apple.com/account/subscriptions. We do not have the ability to cancel an Apple subscription on your behalf.
If you have trouble deleting your account through the app, you can email [email protected] and we will process the deletion manually within 30 days.
Access and correction
Most of the information we have about you is visible directly within the app. You can edit most of it in app settings. If you would like a complete export of your data, email [email protected].
California residents
If you are a California resident, the California Consumer Privacy Act ("CCPA") may give you additional rights, including the right to know what personal information we have collected, the right to request deletion, the right to correct inaccurate information, and the right not to be discriminated against for exercising your privacy rights.
We do not sell or share your personal information as those terms are defined under the CCPA. To exercise your California rights, email [email protected] with the subject line "California Privacy Request."
European Economic Area, United Kingdom, and Switzerland residents
If you are in the EEA, UK, or Switzerland, you have rights under the GDPR or equivalent local law, including the right to access, correct, delete, restrict, or object to our processing of your personal data, and the right to data portability.
Our legal basis for processing is generally: performance of a contract (to provide the Services), legitimate interests (to operate and improve the Services), consent (for optional features like push notifications), and legal obligation. To exercise your GDPR rights, email [email protected].
Washington and Nevada residents
If you are a Washington or Nevada resident, the health and fitness data you log — your daily check-in status, your weight, and your progress photos — is "consumer health data" under Washington's My Health My Data Act and Nevada's consumer health data law (SB 370). We publish a separate Consumer Health Data Privacy Policy that describes what we collect, who it is shared with, your rights, and how to withdraw your consent to sharing. We do not sell your consumer health data.
08Children's privacy
The Services are not directed at children under 13 (or under 16 in the EEA). We do not knowingly collect personal information from children under these ages. If we learn that we have collected information from a child under the applicable minimum age, we will delete that information promptly.
If you are a parent or guardian and believe we may have collected information from your child, please contact us at [email protected].
09Data security
We implement reasonable technical and organizational measures designed to protect your information, including:
- Encryption in transit (TLS) for all communications between the app and our backend.
- Encryption at rest, provided by Firebase, for the backend data we can read — your daily progress, weight entries, and account details.
- Authentication — your account is protected by Sign in with Apple, Sign in with Google, or a strong password.
- Limited internal access — only the small number of people who operate Apace Active have access to personal data, and only when necessary.
How your photos are protected
Your progress photos are handled differently from everything else, and more strictly:
- They are encrypted on your device before they are uploaded. Each device generates a random encryption key and keeps it in the device's secure hardware (the iOS Keychain / Android Keystore). That key never leaves your device and we never receive it, so what lands in our storage is ciphertext we cannot read. This is done with well-reviewed, open-source encryption (AES-256-GCM, via the
@noblelibraries). - Location and other metadata are removed before encryption. Photos are re-encoded on your device, which drops EXIF and GPS data. Because we only ever receive the encrypted photo, this stripping has to happen on your device — and it does, every time.
- Photos you share with a partner get a second encrypted copy under a key that only the two of you hold. When we deliver that shared key to your partner, it is sealed so that only their device can open it — it passes through our servers as a blob we cannot unlock. So shared photos are encrypted in storage and in transit, and we cannot read them either.
- We limit screen capture while a progress photo is on screen. On Android, screenshots and screen recording are blocked while a photo is displayed. On iPhone and iPad, we block screen recording and hide photos when the app moves to the background, but Apple does not permit any app to block a still screenshot — so instead the app detects one and warns that the photo is private. This reduces casual capture; it is not a guarantee, and no app can stop someone from photographing your screen with another device.
The trade-off of encryption this strong is that recovery depends on you. If you set a photo password, it wraps a backup of your key; we cannot see it or reset it, and if you forget it and move to a new device, your photos cannot be recovered by anyone. If you never set one and you reinstall or switch phones, the same is true. This is a deliberate design choice in your favor, not an oversight.
No system is perfectly secure. If you become aware of a security issue, please email [email protected] so we can investigate.
10International data transfers
Apace Active is based in the United States. If you use the Services from outside the United States, your information will be transferred to and processed in the United States, where data protection laws may differ from those in your country. By using the Services, you consent to this transfer.
11Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email and/or by an in-app notice before the changes take effect. Your continued use of the Services after the effective date constitutes acceptance of the updated policy.
12Contact us
If you have questions about this Privacy Policy or our privacy practices, please contact us:
- Apace Active LLC
- Email: [email protected]
- Website: apaceactive.com
- Mailing address: 2108 N St, Ste N, Sacramento, CA 95816, USA