Cut AI — Privacy Policy

Effective May 18, 2026

This Policy is issued by Lead Logger LLC, an Illinois limited liability company, the operator of the Cut AI iOS application. Lead Logger is the controller of personal data processed in connection with the App. It describes what we collect, why, who we share it with, and the rights you may exercise. Contact: leadtrackerofficial@gmail.com.

1. What we collect

Account

When you sign in with Apple, we receive an Apple-issued identifier and, at your election, your name and either your real email address or an Apple-relay email address. We retain the resulting account identifier and any display name you supply. We do not receive your Apple ID password.

Onboarding profile

You provide fitness-related information during onboarding: biological sex, age, height, current weight, goal weight, primary goal, training experience, training location, available equipment, weekly schedule, session length, target weekly rate of weight change, diet, activity level, self-reported obstacles or roadblocks to training, and, if supplied, a referral code. This is stored as a structured record associated with your account. The age value you supply is also used to enforce the eighteen-and-over age requirement described in Section 9; if the value indicates you are under eighteen, the App will not provision an account.

Daily body photograph

To generate each workout, you capture or import a photograph using the App. The image is resized and JPEG-compressed on your device, then transmitted over TLS to our edge function. The edge function forwards the image, your onboarding profile, and your recent workout history to Anthropic's Claude API to generate the workout. We do not write the photograph to any database, file system, object store, or log under our control. Only the resulting workout plan is stored.

You acknowledge that a photograph captured for this purpose may contain identifying features, including your face, distinguishing marks, surroundings, or images of other persons. We do not screen or moderate the content of photographs you submit. You are responsible for what you choose to photograph.

Because the photograph and the associated fitness profile may constitute special-category personal data under Article 9 of the GDPR and sensitive personal information under Cal. Civ. Code § 1798.140(ae) and analogous state statutes, we process this information solely on the basis of your explicit consent under Article 9(2)(a) of the GDPR and only to generate workouts you have requested. You may withdraw consent by deleting your account.

Workout history and on-device data

Each generated workout, the date issued, and whether you marked it complete are stored on our backend under your account. A cache of recent workouts, your onboarding answers, streak count, last photograph date, and in-progress workout state are stored locally on your device in iOS UserDefaults. The photograph is not written to local storage.

Subscription information

When you start, restore, or cancel a subscription, Apple and RevenueCat exchange transaction information with the App and our backend (product identifier, entitlement status, expiration, renewal status). We use this solely to verify your entitlement before granting paid features.

Rate limits and a pseudonymous identifier

Our backend derives a SHA-256 HMAC of your authentication identity using a server-side secret. This pseudonymous identifier enforces a per-identity daily generation limit and records account-deletion events for fraud prevention. The HMAC is not reversible to your name or email, but it remains personal data and we treat it as such.

2. What we don't collect

The App contains no third-party analytics, attribution, advertising, or crash-reporting SDKs. No Firebase, Mixpanel, Amplitude, PostHog, AppsFlyer, Adjust, Branch, Sentry, Crashlytics, Bugsnag, Datadog, OneSignal, Segment, Meta SDK, or third-party Google SDKs. We do not collect the IDFA, present the App Tracking Transparency prompt, or engage in cross-app or cross-site tracking. We do not access your location, microphone, contacts, calendars, messages, or social-graph data. We do not engage data brokers or deploy marketing pixels.

3. How we use it

We process personal data to: provide the App's core functions (generating workouts, persisting your workout history, tracking streaks); authenticate you; verify entitlement before granting paid features; prevent fraud and abuse, including enforcing per-identity daily generation limits; diagnose errors; and comply with applicable legal obligations.

We do not engage in cross-context behavioral advertising. We do not sell or share personal information within the meaning of Cal. Civ. Code §§ 1798.140(ad) and 1798.140(ah). We do not engage in automated decision-making that produces legal or similarly significant effects within the meaning of Article 22 of the GDPR.

4. Service providers

We engage the providers below. Supabase, Anthropic, and RevenueCat act as our processors under written data processing agreements that limit their use of personal data to performing the services on our documented instructions. Apple acts as an independent controller for Sign in with Apple, App Store transactions, HealthKit, and push-notification delivery. Each provider's processing on its own infrastructure is governed by its own privacy policy.

Provider Role Data shared
Apple Inc. Independent controller for Sign in with Apple, App Store, HealthKit, push notifications. Apple-issued identity token; purchase receipts. HealthKit data stays on your device. Policy
Supabase, Inc. Processor: authentication, database, edge functions. Account identifier, onboarding profile, workout history, photograph in transient request memory only. Policy
Anthropic, PBC Processor: large language model (Claude API) used to generate workouts. Body photograph, onboarding profile, recent workout history. Policy
RevenueCat, Inc. Processor: subscription state and entitlement verification. Account identifier (used as App User ID), App Store purchase events, entitlement status. Policy

5. AI processing of your photograph

In plain language: Your photograph is sent to Anthropic, an AI company, so their Claude model can choose your workout. We do not keep the photograph. We do not send your name, email, or device ID with it.

Cut AI generates workouts by transmitting the body photograph, your onboarding profile, and your recent workout history to Anthropic, PBC through Anthropic's commercial Claude API. The model in use as of the effective date is Anthropic's Claude Sonnet 4.6. Anthropic returns a structured workout plan, which we store and present to you.

We do not transmit your name, email address, account identifier, or device identifiers to Anthropic. We cannot, however, prevent identifying features (face, marks, surroundings) from being visually present in the photograph itself.

Our use of the Claude API is governed by Anthropic's Commercial Terms of Service and Data Processing Addendum. Under our agreement with Anthropic: Anthropic acts as our data processor; Anthropic is contractually prohibited from using API inputs or outputs to train its models; and international transfers are governed by Standard Contractual Clauses incorporated into the agreement. Anthropic's own retention, security, and transfer practices are governed by Anthropic's then-current Privacy Policy and Trust Center, available at privacy.claude.com and trust.anthropic.com. We do not adopt or guarantee any representation made by Anthropic about its own practices; consult those documents directly.

We do not use any other AI, machine-learning, computer-vision, biometric, embedding, or transcription service. The App does not perform on-device computer vision, face detection, pose estimation, or biometric template extraction.

6. HealthKit

With your express permission, the App may request the following HealthKit permissions: read access to body mass, height, active energy burned, and step count; and write access for workout sessions. HealthKit data accessed under these permissions remains on your device within Apple's HealthKit framework and is not transmitted to any server under our control. HealthKit data is not used for advertising, marketing, or data mining, is not sold, and is not disclosed to any third party except with your explicit consent or as required by law. Permissions may be revoked in iOS Settings at any time.

7. Notifications and in-App web views

Push and local notifications

The App may ask for permission to deliver notifications, used to remind you to complete your daily workout and to surface session-related prompts. If you grant permission, scheduled notifications are produced locally on your device by iOS; the App does not maintain a server-side push service, does not collect a remote-notification device token for marketing, and does not engage any third-party push or messaging provider (such as OneSignal, Firebase Cloud Messaging, or Airship). You may revoke notification permission at any time in iOS Settings.

In-App web views

The App may render this Privacy Policy, the Terms of Service, and similar legal or informational pages inside an in-App web view (Apple's WKWebView). These web views load static documents from URLs we control and do not transmit your account identifier, photograph, onboarding profile, or workout history to the loaded page. We do not embed third-party trackers, advertising pixels, or session-replay scripts in these documents.

8. Retention and deletion

We retain your account record, onboarding profile, workout history, and pseudonymous identifier for the duration of your account. The body photograph is not retained by us beyond the duration of the request. The pseudonymous identifier and account-deletion ledger are retained indefinitely for fraud prevention. Operational logs are retained by our infrastructure provider as set forth in its then-current documentation. Operational logs associated with workout generation may include the request identifier, a SHA-256 digest of the photograph bytes (used to deduplicate requests), and the pseudonymous identifier; they do not contain the photograph itself.

Network traffic is encrypted in transit using TLS. Data at rest is encrypted by our infrastructure provider. Database access is governed by row-level security policies enforcing per-account isolation.

You may delete your account at any time within the App. Open your profile and tap "Delete Account." Upon confirmation, our backend records a deletion event (the pseudonymous identifier, the identifier of the deleted authentication record, and a timestamp) and then permanently deletes your authentication record. Deletion cascades to remove your profile, workout history, and rate-limit record. The deletion-ledger row is retained for fraud prevention and contains no name, email address, photograph, or workout content.

Active App Store subscriptions are managed by Apple and must be cancelled separately through your Apple ID subscription settings. Deletion of your Cut AI account does not cancel an active App Store subscription. If you cannot complete deletion within the App, email leadtrackerofficial@gmail.com from the email address associated with your account; we will process the request within thirty (30) days.

9. Your rights, children, contact, changes

European Economic Area, United Kingdom, Switzerland

You have the rights of access, rectification, erasure, restriction of processing, data portability, and objection; the right to withdraw consent; and the right to lodge a complaint with your supervisory authority. We rely on the following lawful bases: performance of a contract under Article 6(1)(b) (providing the App); explicit consent under Article 9(2)(a) for the photograph and associated special-category data; consent under Article 6(1)(a) for HealthKit, camera, photo library, and notification permissions; legitimate interests under Article 6(1)(f) (security, fraud prevention, reliability); and legal obligations under Article 6(1)(c). International transfers to our processors in the United States are governed by Standard Contractual Clauses.

California

You have the rights to know, access, delete, correct, and limit the use and disclosure of sensitive personal information, and not to be discriminated against for exercising those rights. We do not sell or share personal information under the CCPA/CPRA, and have not done so in the preceding twelve months. Sensitive personal information is used only as reasonably necessary to provide the App's services and as otherwise permitted by Cal. Civ. Code § 1798.121(d).

Other US jurisdictions

Residents of Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Delaware, Iowa, Tennessee, New Jersey, New Hampshire, Minnesota, Maryland, Indiana, Kentucky, and Rhode Island have substantially similar rights under their respective comprehensive privacy statutes. We do not engage in targeted advertising, sale, or profiling that produces legal or similarly significant effects.

To exercise any right described above, email leadtrackerofficial@gmail.com. We will respond within thirty (30) days.

Age requirement; minors

The App is intended exclusively for adults aged eighteen (18) or older. During onboarding, you are asked to confirm your date of birth or age, and the App will refuse to provision an account if the supplied age is under eighteen. By using the App you represent and warrant that you are at least eighteen years old. The App is not directed to, marketed to, or intended for use by minors. We do not knowingly collect personal data from any person under eighteen. If we become aware that we have collected personal data from a person under eighteen, we will delete the account and associated data without undue delay; a parent or guardian may also request such deletion by contacting leadtrackerofficial@gmail.com.

Changes to this Policy

We may amend this Policy. Material changes will be reflected by updating the effective date above and, where appropriate, by in-App notice. Where applicable law requires renewed consent for a change in processing, we will obtain that consent before the change takes effect.

Contact

Lead Logger LLC
State of Illinois, United States
Email: leadtrackerofficial@gmail.com