WyVo: Weights & Volume ("WyVo") is an iPhone lifting log, rest timer, progress tracker, and optional AI Coach. This policy explains what information WyVo handles, when information leaves your device, and the choices available to you.
Summary
WyVo is local-first. Your workout log and related app data remain on your iPhone unless you choose to include relevant information in an online AI Coach request. Online AI Coach is optional, starts in Offline Preview, and asks for consent before its first online request.
Online Coach features use an anonymous Firebase identity by default. You may optionally link that Coach identity with Apple so the identity, consent choice, and monthly WyVo AI credit balance can be recovered on another device. Your workouts, Coach conversations, memories, photos, and saved provider keys do not move with that identity.
WyVo does not run ads and does not use your data to track you across apps or websites owned by other companies.
Information Stored On Your Device
WyVo stores the following information locally on your device:
- Workout and set records, including exercises, weights, reps, warm-up status, notes, timestamps, workout state, and rest-timer state.
- Profile settings, such as display name, profile photo, user-entered body weight, units, preferences, and notification settings.
- Progress summaries, exercise history, personal records, and training references.
- AI Coach conversations, replies, relevant read-only tool results, context snapshots, and saved Coach memories.
- Photos you attach to Coach conversations. WyVo converts attached images to compressed JPEG files before storing them with the conversation.
- Coach provider choices and OpenRouter keys saved in the iOS Keychain.
This information uses Apple's on-device app storage systems. It is not uploaded merely because it exists in WyVo. Information can leave the device when you deliberately send an online Coach request, link a Coach identity with Apple, contact support, or use an Apple service such as iCloud device backup.
Apple Health
Apple Health access is optional. If you enable Heart Rate snapshots and grant permission, WyVo reads recent Heart Rate samples so it can attach relevant snapshots to workout events, set logs, rest timers, and Coach context.
WyVo does not write data to Apple Health. WyVo does not sell Health data, use Health data for advertising, or use it for tracking. If you send an online Coach request, WyVo may include relevant Health-derived Heart Rate summaries or set-level Heart Rate context in that request. You can use WyVo without Health access and change the permission in iOS Settings.
Camera And Photos
Camera and Photo Library access are optional. Camera is used only when you choose to attach a photo to a Coach conversation. The Photo Library picker is used only when you choose a profile photo or attach a photo to a Coach conversation.
Profile photos remain local. Attached Coach photos remain local unless you send a turn that includes the photo or WyVo includes relevant prior photo context in an online Coach request. Offline Preview does not send photos online and does not analyze their pixels.
Coach Identity And Continue With Apple
WyVo uses Firebase Authentication for the identity attached to online Coach consent, usage, and monthly credits. The app starts with an anonymous Firebase identity, so a named login is not required. The Firebase authentication handler uses wyvo-a8754.firebaseapp.com.
Continue with Apple is optional. On the first device, linking with Apple preserves the existing Firebase user identifier, consent state, and credit balance. If Apple supplies a name or email address, including an Apple private relay address when you choose Hide My Email, that information may be sent to Firebase for authentication and account recovery. WyVo does not use it for advertising or marketing.
Signing in with the same Apple account on another device recovers the linked Coach identity. It does not merge or transfer the other device's anonymous identity or any local workouts, Coach conversations, memories, photos, or provider keys. Signing out creates a fresh anonymous Coach identity on that device. Version 1.2 does not offer unlinking; deleting the Coach account is the supported removal path.
AI Coach And Online Processing
AI Coach has three paths: Offline Preview, included WyVo AI, and optional user-funded OpenRouter. Offline Preview returns local sample responses and sends no Coach context to an online model provider. WyVo AI includes a monthly credit allowance, shown in the app; completed metered requests use credits and failed requests are not charged. OpenRouter lets you use a connected or pasted OpenRouter key under your own OpenRouter account.
Before the first routed online request, WyVo asks for consent and links to this policy. If you decline, the rest of the app and Offline Preview remain available. When you send an online Coach request, the app authenticates with its Firebase token and sends the request through WyVo's request service on Cloudflare Workers. The request service applies credit and routing policy, then forwards the request through OpenRouter to the applicable model provider.
An online Coach request may include:
- Your current Coach message and attached photos.
- Relevant prior Coach conversation history, summaries, or saved memories.
- Workout and set information, including exercises, weights, reps, user-entered body weight, notes, recent workout summaries, personal records, active-workout context, and read-only tool results.
- Relevant Apple Health-derived Heart Rate summaries or set-level context if you separately granted Health access.
- Coach configuration metadata, such as feature, selected provider and model, coaching level, prompt metadata, and image attachment counts.
Generated Coach context omits the stored profile name as a structured field. Your messages, notes, memories, or photos can still contain identifying or sensitive information you choose to enter. Do not send information you do not want an online provider to process.
What WyVo's Request Service Retains
WyVo's request service processes prompt, attachment, and response content in transit and does not persist or log that content. It retains operational records tied to the anonymous or Apple-linked Firebase user identifier, including app and feature identifiers, provider and model, token or operation counts, credits and funding source, provider and user cost where applicable, timestamps, request and event identifiers, latency and completion timing, SDK name and version, and error category.
These records are used for credit enforcement, metering, service reliability, troubleshooting, and abuse prevention. Cloudflare and Firebase may also process ordinary network and security information, such as IP address or user-agent information, under their own policies. WyVo does not use these records for advertising or cross-app tracking.
OpenRouter Keys
Connected and pasted OpenRouter keys are stored in the iOS Keychain. When you choose the OpenRouter path, the key is transmitted with each selected request through WyVo's request service to OpenRouter. The request service does not persist or log the key. WyVo does not use the key for included WyVo AI requests.
OpenRouter usage may be charged by OpenRouter under your account. You can remove a saved key in Profile > Settings > Coach Model and can revoke it through OpenRouter. Removing or deleting your WyVo Coach account does not revoke a key at OpenRouter.
Processing Partners
The following services may process information for the optional online features described above:
- WyVo's request service routes and meters online Coach requests. It processes request content in transit and stores the non-content operational records described above.
- Cloudflare provides Workers request infrastructure for WyVo's request service. See the Cloudflare Privacy Policy.
- Neon provides the database used for identity-scoped credit, metering, and operational records. See the Databricks Privacy Notice, which covers Neon, LLC.
- Google Firebase provides anonymous authentication and the Apple-linked Coach identity. See Privacy and Security in Firebase.
- Apple provides optional Continue with Apple, Health, notification, camera, photo-picker, and device services. See the Apple Privacy Policy.
- OpenRouter routes online Coach requests to model providers and processes user-funded keys. See the OpenRouter Privacy Policy.
- Model providers process the request content needed to generate a response. Depending on the selected path and availability, providers can include Anthropic, OpenAI, or xAI.
OpenRouter and model-provider retention and account controls vary. Their own terms and privacy policies govern data they receive. WyVo cannot delete provider-held data for you. Selecting Offline Preview avoids online AI processing.
Notifications
WyVo may ask for notification permission for rest-timer alerts, active-workout idle reminders, and test alerts you trigger from Settings. Notifications are optional and can be managed in iOS Settings.
No Ads Or Tracking
WyVo does not include third-party advertising SDKs or use App Tracking Transparency tracking. WyVo does not sell your information or use it to track you across apps or websites owned by other companies. Operational product and diagnostic records are used for the app functions described in this policy, not advertising.
Deleting Your Coach Account And Local Data
Delete a Coach account in the app at Profile > Settings > Coach Account > Delete Coach Account. For an Apple-linked identity, WyVo may ask you to reauthenticate. WyVo then asks its request service to anonymize the server-side account, revokes Apple authorization, and deletes the Firebase Authentication user. If a later step fails after server anonymization, Settings shows that deletion is incomplete and lets you retry safely.
Account deletion removes the Firebase user identifier from the request-service account and retained operational records. Non-content credit, usage, timing, and accounting records may remain under an opaque tombstone identifier that is not the Firebase user identifier, for service integrity, accounting, reliability, and abuse prevention. Firebase and Apple complete their parts under their respective retention practices.
Deleting your Coach account does not delete local device data. Workouts, sets, profile data, Coach conversations and memories, attached photos, and saved provider keys remain on that iPhone. Use the available in-app controls to remove individual local items and keys where provided, or delete WyVo from the device to remove the app's local data. Copies may remain in device backups you control.
Data already sent to OpenRouter or a model provider is governed by that provider's retention and deletion controls. Contact privacy@wyandvo.app if the in-app account deletion flow is unavailable or you have a deletion question.
Support And Legal Requests
If you contact WyVo, we receive the address, message, and attachments you choose to send and use them to respond, troubleshoot, maintain service integrity, and keep an appropriate support record. WyVo may also preserve or disclose information when reasonably necessary to comply with law or legal process, protect rights and safety, investigate abuse, or secure the service.
Children
WyVo is intended for users who are old enough to use fitness tracking and optional AI coaching features in their region. WyVo is not directed to children under 13.
Changes
WyVo may update this policy as the app or its service providers change. The latest version will be posted at this URL with a new last-updated date.
Contacts
For app help and troubleshooting, visit https://wyandvo.app/support/.
Data handling, identity, deletion, AI Coach, Health, photos, or provider context: privacy@wyandvo.app.
Everything else: contact@wyandvo.app.