This Privacy Policy describes how the RiseReps mobile application ("RiseReps," "we," "us," or "our")
handles information when you use the app. RiseReps is a proof-of-wake alarm that uses on-device
camera processing to verify exercise reps before dismissing your alarm.
Short version: RiseReps is built to keep most data on your device. Camera frames used to
count reps are processed locally and never recorded, uploaded, or transmitted. We don't sell your data,
we don't run ads or track you across apps. We use TelemetryDeck and PostHog for product analytics —
including anonymous wireframe replays of the app's own screens, with the camera preview and your
signature masked — RevenueCat to validate subscription status, and Apple CloudKit for optional partner
features and public leaderboards, as described below.
1. Information We Handle
Information processed entirely on your device
Camera input. While you are completing reps, the camera feed is analyzed in real time using Apple's Vision body-pose framework. Frames are not stored, recorded, or sent to any server.
Onboarding answers and profile. Goals, schedule, fitness level, and similar responses you provide during setup are stored locally on your device.
Alarms, workouts, and progression history. Your scheduled alarms, exercise selections, completed reps, streaks, and stats are stored locally.
Settings. Sound choices, notification preferences, partner alert preferences, and Screen Time configuration are stored locally.
Information handled by Apple on your behalf
In-app purchases. Weekly and annual Pro subscriptions are processed by Apple via StoreKit. We never see your payment details. RevenueCat receives an app-generated identifier and subscription transaction/status information so purchases can be validated and synchronized.
Accountability Partner pairing. If you choose to pair with a partner, pairing and partner status are synced through Apple's iCloud / CloudKit using your Apple ID. We do not operate our own servers for this. Only your iCloud-derived partner identifier and partner status (e.g., paired, completed) are exchanged — never camera footage.
RiseReps Arena leaderboards. If you are signed in to iCloud, RiseReps stores an iCloud-derived user identifier, an assigned pseudonym such as “Riser 1234,” and leaderboard statistics in Apple's public CloudKit database. Statistics can include verified rep totals, XP, streaks, workout counts, exercise type, and wake-time or on-time values. Other RiseReps users can see the pseudonym and ranked statistics; they cannot see your Apple Account name or email. Camera frames are never uploaded.
Notifications. Alarm, workout reminder, weekly recap, and partner alerts are scheduled as local notifications on your device.
Information we do not collect
We do not record, store, upload, or transmit any video, photo, or audio from your camera or microphone.
We do not collect your precise location.
We do not use third-party advertising SDKs and do not track you across other companies' apps or websites.
We do not require an account, email, or password to use the app.
We do not sell or rent your personal information to anyone.
Product analytics and subscription services
TelemetryDeck. RiseReps sends product-usage events such as onboarding progress, alarm configuration, and workout completion, together with limited event parameters. We do not send camera frames, names, email addresses, precise location, or partner content.
PostHog. RiseReps sends the same product-usage events to PostHog, so the two data sets can be compared. PostHog assigns each installation a randomly generated identifier that is not linked to your name, email address, or Apple Account.
PostHog session replay. PostHog also captures anonymous replays of your activity inside the app. These are wireframes — an outline of the interface and where you tapped — not video or screenshots of your screen. Text and images are masked automatically, and the live camera preview and your commitment signature are masked explicitly, so neither is ever recorded. We use these replays only to find where the app is confusing or broken.
RevenueCat. RiseReps uses RevenueCat to synchronize purchase and entitlement status. RevenueCat receives a randomly generated app user identifier, subscription transaction/status data, and SDK diagnostics.
2. Permissions We Request
Camera — required to count reps. Used only while a workout is active. No frames are saved.
Notifications — required for alarms to fire and for reminders / partner alerts.
Screen Time / Family Controls (optional) — used locally to support lockdown features. Activity data stays on-device under Apple's framework.
3. How We Use Information
Information stored on your device is used to:
Schedule and trigger alarms.
Verify reps and dismiss alarms.
Track streaks, stats, and progression.
Personalize the experience based on your onboarding answers.
Sync partner status (if you opt in) through iCloud.
Calculate and publish pseudonymous Arena standings through CloudKit.
4. Data Retention and Deletion
You can remove local and iCloud-associated RiseReps data from Settings > Delete account. This removes
alarms, workout history, partner data, and public leaderboard records; it does not cancel an App Store
subscription. Deleting the app removes local data but may not remove public CloudKit records, so use the
in-app deletion control first when you want those records erased. Subscription receipts remain managed
by Apple under your Apple ID.
5. Children's Privacy
RiseReps is not directed to children under 13, and we do not knowingly collect information from
children under 13. If you believe a child has provided information to us, please contact us so we
can address it.
6. Security
Local data is protected by your device's standard security (passcode, Face ID, Touch ID, and iOS
sandboxing). Partner data uses private/shared iCloud storage. Arena standings use a public CloudKit
database so other players can read ranked pseudonyms and statistics; RiseReps does not allow personal
free-form names in the first release. No system is perfectly secure, but we minimize risk by limiting
what leaves the device.
7. Your Rights and Choices
Access / deletion: use Settings > Delete account to remove local data, partner data, and public leaderboard records.
Permissions: camera, notifications, and Screen Time access can be revoked at any time in iOS Settings.
Subscriptions: manage or cancel in your Apple ID subscription settings.
Depending on where you live, you may have additional rights under laws such as the GDPR or
CCPA/CPRA. See User Privacy Choices for details.
8. International Users
RiseReps is operated from the United States. If you use the app from outside the U.S., understand
that any iCloud-synced data is handled by Apple under Apple's terms and may be processed in
other countries.
9. Changes to This Policy
We may update this policy from time to time. Material changes will be reflected by updating the
"Last updated" date at the top of this page and, where appropriate, in-app.