Privacy policy
This is a translation. In case of doubt, the German version prevails.
Liftando is an app for training and nutrition. To provide it, we process data about your body, your food and your training, in other words health data. This policy tells you what data this is, what we need it for, who other than us gets to see it and what rights you have. It applies to the website and the app at https://liftando.com.
The governing law is the Swiss Federal Act on Data Protection (FADP). If you live in the European Union or the EEA, the General Data Protection Regulation (GDPR) also applies. Where the two laws use different terms, we give both.
1. Controller
The controller responsible for processing your personal data is:
[please add: first and last name or company]
[please add: street and house number]
[please add: postcode and town]
Switzerland
Email: [please add: email address]
Phone: [please add: phone number (optional, otherwise null)]
UID: [please add: UID (optional, otherwise null)]
You can reach us at [please add: email address] with any data protection matter. Representative in the EU under Art. 27 GDPR: [please add: name and address of the EU representative, if required].
2. What data we process
Account data
- name, email address, time zone and, optionally, a profile picture
- your password, stored only as an irreversible hash (PBKDF2), and the public keys of your passkeys
- the times at which you gave your consents and registered
Health and body data
Under the FADP, this data is sensitive personal data and, under Art. 9 GDPR, it is health data:
- sex, date of birth, height, weight, body fat percentage, body measurements and progress photos
- goals, everyday activity, training experience, diet, allergies and dislikes
- food diary, water, supplements, recipes, meal plans and shopping lists
- workouts, sets, programmes, routines and personal records
- values calculated from this data, such as calorie and macro targets, weight trend, estimated energy requirements, streaks and achievements
Data from connected sources
Only if you set up a source under Settings › Connections, Liftando takes over from it:
- from Apple Health (via a shortcut on your iPhone or as an export file) and in future from Health Connect (Android): daily values for steps, active energy, resting heart rate and heart rate variability, sleep sessions with start, end, duration and stages, weight, body fat percentage and workouts with type, time, distance, energy and heart rate
- from Strava: your activities with title, sport, time, distance, energy and heart rate
- for every value, its source, so you can see where it comes from
Liftando reads a Health export directly in your browser. Only the daily values, sleep sessions, weigh-ins and workouts listed above reach our server – not the file itself and no raw data such as individual heart-rate readings, routes or clinical records.
Content for the AI coach
Only if you switch on the AI features: your messages to the coach and its replies, and photos of meals and voice recordings that you send for recognition. More on this in section 5.
Technical data
- signed-in sessions with the device name (User-Agent), the time of sign-in and the time of last use
- the IP address of your requests: to protect against misuse (rate limiting, bot protection) and in short-lived server logs; we do not store it in your account
- for reminders, the push address of your device and your reminder settings
- counters for your daily use of the AI features
- personal import tokens with name, creation date and last use; the token itself is stored only as a hash
- if you connect Strava: your Strava athlete ID, your first name and Strava’s access keys, stored encrypted
We do not use any analytics or advertising tools, we do not create usage profiles for marketing purposes and we do not sell any data.
3. Purposes and legal bases
| Purpose | Legal basis (GDPR) |
|---|---|
| Managing your account, sign-in, synchronisation between your devices | Contract, Art. 6(1)(b) |
| Storing and analysing health data in order to provide you with the app | Explicit consent, Art. 9(2)(a) and Art. 6(1)(a) |
| Importing data from Apple Health, Health Connect or Strava that you connect | Explicit consent, Art. 9(2)(a) and Art. 6(1)(a) |
| AI coach, photo and voice recognition, AI plans | Separate explicit consent, Art. 9(2)(a) and Art. 6(1)(a) |
| Emails relating to account security (confirmation, password, deletion) | Contract, Art. 6(1)(b) |
| Reminders as notifications | Consent (by allowing notifications in the browser), Art. 6(1)(a) |
| Security, protection against misuse and bots, troubleshooting | Legitimate interest in secure operation, Art. 6(1)(f) |
Under the FADP, we process your data in accordance with the principles set out in Art. 6 FADP. For sensitive personal data, we obtain your explicit consent (Art. 6(7) FADP).
Liftando calculates targets and suggestions automatically from your data. These are recommendations: the app does not make decisions that have legal effects or similarly significant consequences. You apply any changes to your targets yourself.
4. Consent for health data
When you register, you explicitly consent to Liftando processing your health data for the purposes stated above. Without this consent, we cannot offer the app, because every feature is based on this data.
You can withdraw your consent at any time by deleting your account (Settings › Data and privacy). We will then delete all data immediately. This does not affect the lawfulness of processing carried out before the withdrawal. You withdraw your consent to the AI features separately, using a toggle in Settings, without losing your account.
Liftando is intended for people aged 16 and over.
5. AI features
The AI features are optional and switched off by default. We only send data to AI models once you activate them in the app and consent to this:
- Coach: your message and the data needed for the reply, such as your profile, goals, food diary entries, workouts or weight trend
- Recognition: the photo of a meal or your voice recording, in order to recognise foods, quantities or sets
- Plans: goal, equipment, diet and allergies, in order to create a programme or a meal plan
The models run on Cloudflare Workers AI; requests are routed through the Cloudflare AI Gateway, which logs the time, model and volume of requests for cost control and protection against misuse. Cloudflare processes the content on our behalf and does not use it to train models. The computation may take place in Cloudflare data centres outside Switzerland and the EU (section 7).
We never pass activities from Strava to AI models, not even to the coach.
We do not store photos or voice recordings used for recognition. Conversations with the coach remain in your account until you delete them or your account. AI responses are estimates and may be wrong. The coach does not make diagnoses.
6. Recipients and processors
We only pass your data on to service providers who process it on our behalf and in accordance with our instructions, or where we are required to do so by law.
| Recipient | Task | Location |
|---|---|---|
| Cloudflare, Inc., San Francisco, USA, and affiliated companies | Hosting of the app (Workers), database (D1) and file storage (R2), sending of emails, bot protection (Turnstile), rate limiting, server logs | Database and files: data centres in the EU. Delivery: Cloudflare’s global network |
| Cloudflare, Inc. (Workers AI, AI Gateway) | AI features, only with your consent | Cloudflare’s global network |
| Your browser’s push service (e.g. Apple, Google, Mozilla, Microsoft) | Delivery of reminders. The content is end-to-end encrypted; the service only sees the push address and the time | Depending on the provider, including the USA |
| Strava, Inc., San Francisco, USA | Only if you connect Strava: with your authorisation, Liftando retrieves your activities from Strava and receives notifications about new activities. Strava learns that you use Liftando. Strava’s privacy policy applies to your data at Strava | USA |
| Open Food Facts (Association Open Food Facts, France) | Product data for a scanned barcode. Our server only queries the barcode number, without any personal data | France |
We serve fonts, exercise images and all other files ourselves. No content is loaded from third-party providers such as Google Fonts or advertising networks.
7. Processing abroad
The database and files are stored in Cloudflare data centres in the European Union (EU jurisdiction). Cloudflare is headquartered in the USA; in the course of operations, delivery via the global network and the AI features, data may be processed in the USA or in other countries. Cloudflare is certified under the EU-US Data Privacy Framework and the Swiss-US Data Privacy Framework, which the European Commission and the Swiss Federal Council recognise as adequate. In addition, the European Commission’s standard contractual clauses apply under Cloudflare’s data processing agreement, supplemented by the adaptations required for Switzerland.
8. Cookies and storage on your device
Liftando uses a single cookie: __Host-liftora_session. It keeps you signed in, is technically necessary for using the app, is valid only for this website, cannot be read by scripts and expires 30 days after your last use. That is why we do not need a cookie banner.
So that the app also works in the gym when there is no signal, it stores the following on your device:
- a copy of your most recently loaded data (IndexedDB, no more than 24 hours old)
- changes that have not yet been transmitted, and a workout in progress (IndexedDB)
- the app’s files and exercise images (Service Worker cache)
- your choice between the light and dark theme (Local Storage)
When you sign out or delete your account, the app removes the stored data. You can also delete it at any time via your browser settings.
When you register, sign in or reset your password, Cloudflare Turnstile checks whether the request is being made by a human. To do this, Turnstile evaluates characteristics of your browser and your IP address, but does not set any tracking cookies.
9. Notifications and emails
We only send reminders if you allow notifications in your browser and set up reminders. You can switch off either at any time in the settings of the app or of your device. You only receive emails relating to the security of your account: confirmation of your address, a new password, a changed password and confirmation that your account has been deleted. We do not send newsletters or advertising.
10. Retention period
- Account and health data, photos, conversations with the coach: for as long as your account exists. If you delete your account or a photo, we remove the data from the database and file storage immediately. If you delete individual entries, they are no longer visible straight away; so that synchronisation between your devices works, they remain marked as deleted for no more than 30 days and are then permanently removed. All data disappears from the database’s automatic restore points after 30 days at the latest.
- Sessions: until you sign out, at the latest 30 days after your last use and 180 days after sign-in
- Links in emails: 1 hour (password) or 24 hours (confirmation), then deleted
- Server logs: no more than 7 days
- Push addresses: until you deactivate notifications or the push service declares them invalid
- Imported data: until you delete it under Settings › Connections or delete your account. If you disconnect Strava or revoke Liftando’s access on strava.com, we delete the data imported from Strava immediately, at the latest within 48 hours
- Import tokens: until you revoke them; requests to connect Strava: 10 minutes
11. Data security
All connections are encrypted (HTTPS with HSTS). We store passwords only as a hash, and session, email and import tokens likewise only as a hash. We store Strava’s access keys encrypted with AES-GCM. An import token only allows importing data into your account. Every query is restricted to your account, and photos can only be accessed by you. The data is stored in encrypted form at Cloudflare. No protection is perfect; if we become aware of a data security breach, we will inform you and the competent authorities in accordance with the statutory requirements.
12. Your rights
Under the FADP and the GDPR, you have the following rights:
- access to your data (Art. 25 FADP, Art. 15 GDPR)
- rectification of inaccurate data (Art. 32 FADP, Art. 16 GDPR)
- erasure (Art. 32 FADP, Art. 17 GDPR)
- receipt and transfer of your data (Art. 28 FADP, Art. 20 GDPR)
- restriction of processing and objection (Art. 18 and 21 GDPR)
- withdrawal of your consents with effect for the future
- lodging a complaint with a supervisory authority
You can exercise most of these rights directly in the app: under Settings › Data and privacy, you can download all your data as a ZIP file (JSON, CSV tables and photos) or delete your account. Under Settings › Connections, you can disconnect sources and delete the data imported from them. For anything else, write to us at [please add: email address]. We reply within 30 days and may first check that the request really comes from you.
13. Supervisory authorities
In Switzerland: Federal Data Protection and Information Commissioner (FDPIC), Feldeggweg 1, 3003 Bern, www.edoeb.admin.ch.
In the EU and the EEA: the data protection authority of the country in which you live or work or in which the alleged infringement took place. You can find a list on the website of the European Data Protection Board.
14. Changes
We update this policy when the app or the legal situation changes. The version published here applies. We will inform you of any material changes in the app.