TAC — The Athletes Calendar

Privacy Policy

Last updated May 2026

What Data We Collect

We collect: your athlete profile (name, sport, position, age, weight, height, club, optional injuries and goals), daily wellness status (sleep, energy, fatigue, optional notes), training calendar and completed-session history (including RPE), nutrition logs, video analysis scores and reports, test centre personal bests, and Ask TAC chat history. If you create a cloud account, your email address is also stored to authenticate sign-in.

How Your Data Is Used

Your data is used exclusively to personalise your training recommendations, readiness scores, and coaching feedback, and (if you create a cloud account) to sync that data across your devices. Data is never sold, never used to train AI models, and never shared for advertising.

AI Processing

When you use AI features (training generators, video analysis, nutrition coach, Ask TAC), the relevant subset of your data is sent to Anthropic's Claude API to produce a response. Transmission is over encrypted HTTPS via our Cloudflare Worker proxy. We minimise what is sent: for Ask TAC, only your first name, age, sport context, recent training summary, and current question reach Anthropic — your full name, date of birth, club, nationality and email never leave your device. Per Anthropic's API policy, your inputs are not used to train their models and are retained briefly only for abuse monitoring (currently 30 days).

Data Storage

Your data is stored in two places: (1) locally on your device in your browser's localStorage, used as a fast cache, and (2) if you sign in, on Supabase (a cloud database) so the app syncs across devices. Local data persists until you clear browser storage; cloud data persists until you delete your account or specific items via the app.

Cloud Sync (when signed in)

Sign-in is optional. If you create a cloud account, each piece of data you save is encrypted in transit and stored on Supabase under your user ID, protected by row-level security so only you (and TAC's backend) can read it. Subscription status is updated by our payment processor (Stripe) via webhook when you subscribe or cancel.

Your Rights (GDPR)

You have the right to: access your data (all of it is visible in the app), correct inaccurate data (via the Profile page), delete your data (use the Delete account button in Settings — clears both local and cloud data in one step), withdraw consent at any time by signing out and stopping use of the app, and request a machine-readable export.

Data Retention

Local data persists in your browser until you clear it or tap Delete account in Settings. Cloud-synced data persists until you delete it. Ask TAC chat history is automatically pruned to the most recent 48 hours on every load to keep the stored blob small. Anthropic retains AI inputs for around 30 days for abuse monitoring.

What Is Stored In The Cloud

In Supabase, under your user ID with row-level security: a public.users row (id, email, subscription status, role) plus public.user_data rows mirroring your local data. Each row is readable only by you (RLS policy). Subscription status is updated by Stripe webhooks when you subscribe or cancel.

What Is Sent To AI

When you use an AI feature, the minimum context needed to generate a useful answer is sent to Anthropic's Claude API via our Cloudflare Worker proxy. For Ask TAC: first name, age, sport, position, goals, recent training and status — never your full name, DOB, club, nationality or email. For video analysis: the frame data only, never the raw video file. Anthropic does not train on this input and retains it only briefly for abuse monitoring.

Exporting Your Data

Local: open browser DevTools → Application → localStorage → copy the 'tac_v5' value. Cloud: contact us to request an export of your Supabase rows in JSON format.

Deleting Your Data

Tap 'Delete account' in Settings to remove both local and cloud data in one step — your auth account, profile row, training data, and usage history are all deleted, and AI processing stops for the account. Deletion is irreversible.

Data Processors

Five third parties may process your data on our behalf: (1) Anthropic — AI inference for coaching responses (API data is not used to train models); (2) Supabase — cloud database hosting and authentication (EU region, Stockholm); (3) Stripe — payment processing for web subscriptions; (4) Apple — App Store payment processing for in-app subscriptions; (5) RevenueCat — subscription entitlement management for the iOS app (receives purchase and receipt data, never your training or health data). Each operates under its own published privacy policy. TAC remains the data controller.

Children's Privacy

TAC is not directed to children under 13. We do not knowingly collect data from children under 13. Athletes under 18 should ensure they have parental consent before using the cloud-sync features.

Contact

For privacy-related questions: theathletescalendar@gmail.com. To delete your account, use the Delete account button in Settings inside the app — no email needed.

Data Retention

Your account data (profile, training logs, nutrition, video scores) is kept until you delete your account — the in-app "Delete account" action erases both the cloud rows and the sign-in identity itself. Ask TAC chat history is automatically deleted from your device after 48 hours. AI requests are processed by Anthropic under API terms that do not use your data for model training.

Children

TAC is not directed at children under 13, and you must be at least 13 years old to create an account — or older where local law sets a higher age of digital consent. The app asks for your date of birth during onboarding and refuses accounts below the minimum age; nothing from a refused signup is retained. If we learn that we have collected personal data from a child below the applicable age, we delete the account and its data. If you are under 18, we recommend involving a parent or guardian in your use of TAC. Parents and guardians can contact us at any time to ask about or request deletion of a minor's data.