Privacy policy

Draft, not legal advice. This policy was drafted from the way the software is actually built, for the operator's review. It has not been reviewed by a lawyer and is not in force until the operator publishes it with an effective date.

Applies to: the Intero service, the Intero: Athlete OS app for iPhone and Apple Watch, and this website (intero.endurosync.com). Operator: [operator name]. Effective: [effective date, set on publication].

The short version

What data Intero processes

Health and fitness data from your devices

Things Intero computes

Estimates, error bands, refusals, forecasts and their scores, and the receipts that explain each one. These are stored in an append-only ledger linked to your account's identifier.

Profile details you provide

Optional details kept in a settings file on the server, such as time zone history, event dates and changes in how a device is worn, used to date and interpret your data.

Credentials

Technical and security records

Where the data comes from

Intero only reads from these services; it does not write back to them. Your use of each vendor is governed by that vendor's own privacy policy. You can withdraw Intero's access at any time from each vendor's account settings.

The iPhone app does not use Apple HealthKit.

Where it is stored

Data is not pooled across athletes. Every stored record carries the athlete's identifier, and the code refuses to mix them.

The iPhone and Apple Watch app

TestFlight beta

The app is distributed as a private beta through Apple's TestFlight. When you install a TestFlight build, Apple shares certain information with the operator under Apple's own terms, such as your name and email address as a tester, the build you installed, and crash reports and feedback you choose to send. That information is handled by Apple under Apple's privacy policy and used by the operator only to run the beta.

Language models

Intero does not send your data to language-model or other AI services. If you choose to connect an AI assistant of your own to Intero's local interface, what that assistant does with the data is governed by its provider's policy.

Who data is shared with

This website

Export, correction and deletion

Depending on where you live, you may have further rights, such as to object to or restrict processing, or to complain to a data-protection authority.

How long data is kept

Your health data and ledger are kept until you ask for deletion, because the point of Intero is a long, continuous record. Security audit records are kept for as long as the operator needs them to investigate abuse. [Operator to set a retention period for audit and request logs.]

Security

Connections use HTTPS. Tokens are random, stored hashed on the server and revocable. Enrolment codes expire and are single-use. The server process runs without administrator rights. No system is perfectly secure; if a breach affects your data, we will tell you without undue delay.

Children

Intero is not intended for anyone under 16, and we do not knowingly process children's data.

Changes and contact

If this policy changes in a way that matters, the new version will be posted here with a new effective date before it applies. Questions or requests: support@endurosync.com.