Privacy Policy
Last Updated: April 3, 2026
Structured Works LLC (“Company”) operates the blueprint TRAIN platform at blueprinttrain.app and its associated mobile applications (collectively, the “Service”). This Privacy Policy describes how we collect, use, disclose, and protect your personal information when you use our Service.
1. Information We Collect
1.1 Information You Provide
| Data Type | Examples | Purpose |
|---|---|---|
| Account Information | Name, email address, password | Account creation and authentication |
| Profile Data | Avatar, timezone, bio, specialties | Profile display and coach directory |
| Coaching Data | Workouts, nutrition plans, habits, check-ins | Core service functionality |
| Health & Fitness Data | Weight, sleep quality, energy levels, stress levels, workout performance | Discipline score calculation and progress tracking |
| Communications | Messages between coaches and clients | In-app messaging feature |
| Payment Information | Billing details (processed by Stripe) | Subscription management |
1.2 Information Collected Automatically
- Device Information: Device type, operating system, app version
- Usage Data: Features used, pages visited, actions taken
- Log Data: IP address, browser type, access times
- Health Device Data: Data synced from Apple Health or Google Health Connect (with your explicit permission)
2. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve the Service
- Calculate Discipline Scores and track progress
- Facilitate communication between coaches and clients
- Send notifications (check-in reminders, workout updates, intervention alerts)
- Process payments and manage subscriptions
- Display coach profiles in the public directory (with consent)
- Send digest emails (daily or weekly, based on your preference)
- Detect and prevent fraud, abuse, and security issues
- Comply with legal obligations
3. How We Share Your Information
We do not sell your personal information. We share data only in these circumstances:
- Coach-Client Relationship: Coaches can view their clients’ check-ins, workouts, scores, and progress data. Clients can view workouts, nutrition plans, and messages from their coach.
- Coach Directory: If a coach opts into the public directory, their name, bio, specialties, location, and active client count are displayed publicly on our website.
- Community Features: Posts, comments, and reactions in the community are visible to all users in the same coaching group.
- Service Providers: We use third-party services to operate the platform:
- Stripe — Payment processing
- Resend — Email delivery
- Cloudflare R2 — File and media storage
- Railway — Application hosting
- Apple Push Notification Service / Firebase Cloud Messaging — Push notifications
- Legal Requirements: We may disclose information if required by law, court order, or governmental request.
4. Data Retention
We retain your personal data for as long as your account is active or as needed to provide the Service. After account deletion:
- Account and profile data is deleted within 30 days
- Coaching data (workouts, check-ins, scores) is anonymized or deleted within 90 days
- Messages are deleted within 30 days
- Payment records are retained as required by tax and financial regulations
- Aggregated, anonymized data may be retained indefinitely for analytics
5. Your Rights and Choices
You have the right to:
- Access your personal data
- Correct inaccurate information
- Delete your account and associated data
- Export your data in a portable format
- Opt out of email notifications (via settings)
- Withdraw consent for the coach directory listing
- Restrict processing of your data in certain circumstances
To exercise these rights, contact us at legal@blueprinttrain.app.
6. Data Security
We implement industry-standard security measures to protect your information:
- All data is encrypted in transit (TLS/HTTPS)
- Passwords are hashed using bcrypt with a cost factor of 12
- Authentication tokens are stored securely (Keychain on iOS, encrypted storage on Android)
- Database access is restricted and audited
- Regular security reviews and updates
No method of transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Health and Fitness Data
Health and fitness data (weight, sleep, heart rate, workout performance) receives special protection:
- Health device data (Apple Health, Health Connect) is only synced with your explicit opt-in permission
- This data is only shared with your assigned coach — never sold to third parties
- You can disconnect health data syncing at any time through your device settings
- We do not use health data for advertising or marketing purposes
8. Children’s Privacy
The Service is not intended for children under 16. We do not knowingly collect personal information from children under 16. If you believe a child under 16 has provided us with personal information, please contact us and we will promptly delete it.
9. International Data Transfers
Your data may be processed and stored in the United States. By using the Service, you consent to the transfer of your information to the United States and other jurisdictions where we operate. We comply with applicable data protection laws including GDPR for European users.
10. Cookie Policy
Our website uses minimal cookies for essential functionality (authentication, session management). We do not use advertising or tracking cookies. Our mobile apps do not use cookies.
11. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notification. The “Last Updated” date at the top indicates when the policy was last revised.
13. California Residents (CCPA)
California residents have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected
- Right to request deletion of personal information
- Right to opt out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
14. European Residents (GDPR)
If you are in the European Economic Area, you have additional rights including:
- Right to access, rectify, and erase your data
- Right to data portability
- Right to object to processing
- Right to lodge a complaint with a supervisory authority
Our legal basis for processing is: performance of contract (providing the Service), legitimate interests (improving the Service), and consent (health data, marketing).
15. Contact Us
Structured Works LLC
Data Protection Inquiries
Email: legal@blueprinttrain.app
Website: blueprinttrain.app