Legal

Privacy Policy

Last updated: May 8, 2026

Noostaa is a personal AI workout planning and workout-following app. This Privacy Policy explains what information Noostaa collects, how it is used, and the choices available to people who use the Noostaa website, iOS app, API, and ChatGPT app integrations.

Information We Collect

We collect the information needed to provide the product:

How We Use Information

We use information to authenticate users, provide workout planning and workout-following features, sync data across devices and integrations, power Noostaa's API and ChatGPT app tools, maintain security, troubleshoot problems, prevent abuse, and improve product reliability.

ChatGPT App and Assistant Integrations

When you connect Noostaa to ChatGPT or another assistant, the integration can read or write the Noostaa data that you authorize. For example, it may list workouts, create workouts, update workout fields, or archive workouts in your authenticated household. Noostaa does not give an assistant access to other users. Any information you provide to ChatGPT or another assistant is also handled under that provider's own terms and privacy policy.

Authentication Providers

Noostaa uses third-party authentication infrastructure to sign users in and issue OAuth tokens. That provider may process account and login information according to its own privacy practices. Noostaa stores or receives the tokens and account identifiers needed to maintain your session and authorize API access.

How We Share Information

We do not sell personal information. We share information only as needed to operate Noostaa, comply with law, protect rights and security, or complete actions you request through connected services. Service providers may process data for hosting, authentication, observability, email or support, and infrastructure operations.

Storage and Security

Noostaa stores user content in backend databases and uses access controls so authenticated requests are scoped to the user's private account. The iOS app stores login credentials in secure device storage. No internet service can guarantee perfect security, but we use reasonable technical and organizational measures to protect information.

Data Retention

We keep account, workout, training plan, workout session, and device information for as long as needed to provide Noostaa, comply with legal obligations, resolve disputes, and maintain security. If you delete content, we remove it from active product surfaces unless retention is required for backups, logs, security, or legal reasons.

Your Choices

You can choose what workout information you add to Noostaa. You can disconnect integrations, archive workouts, remove registered devices, or contact us to request access, correction, export, or deletion of your account information where applicable law gives you those rights.

Children

Noostaa is not directed to children under 13, and we do not knowingly collect personal information from children under 13.

International Use

Noostaa may process information in countries other than where you live. By using Noostaa, you understand that your information may be transferred to and processed in those locations.

Changes

We may update this Privacy Policy as Noostaa changes. If changes are material, we will take reasonable steps to notify users, such as updating this page or providing notice in the app.

Contact

For privacy questions or requests, contact privacy@noostaa.com.