Legal
Privacy Policy
Effective date: July 29, 2026
PR Foundry (“the app”, “we”) is designed to protect your privacy. The app is local-first: by default everything stays on your device. Cloud sync, connecting your own AI, and posting to Strava are opt-in features you turn on only if you want them. This policy explains what happens in each case.
If you don't sign in (default)
With no account and nothing connected, PR Foundry does not collect, transmit, sell, or share any personal information, and it makes no network calls for your data. Note that connecting Strava does not require a PR Foundry account: it is off until you turn it on, but once connected it does send workout data to Strava. The app contains no analytics, advertising, or third-party tracking SDKs (this website is covered separately in This website below). Your profile, 1-rep maxes, plans, logged workouts, body measurements, and settings are stored locally on your device using Apple's on-device storage (SwiftData). This data may be included in your iCloud/iTunes device backups if you have enabled Apple device backups, which are governed by Apple's privacy policy.
If you turn on cloud sync
Cloud sync is optional. To use it you create an account by signing in with Apple or Google. We act as the relying party for that sign-in and store a basic identity record: the identifier the provider gives us, and your email address and display name where provided. We do not receive your Apple or Google password.
Once cloud sync is on, the training data listed above is mirrored to our backend so you can reach it on another device and connect an AI. The backend runs on Cloudflare (Workers and the D1 database). Data is encrypted in transit (TLS) and at rest. We use it to provide sync, your web dashboard, and AI connections, and we do not sell it or use it for advertising. You can turn cloud sync back off at any time.
If you connect your own AI
You can connect an AI client you already use (such as Claude or ChatGPT) to PR Foundry through our remote MCP server, secured with OAuth 2.1. You authorize each client in your browser before it gets access. Once connected, that client can read your synced training data and push a proposed program back to your account, which shows up as a program you can pick and run in the app.
The AI client and its provider are operated by third parties you choose. Any training data your AI reads is handled by that provider under their privacy policy and terms, not ours. We never store API keys for any AI provider. You can see every connected client and revoke its access from your account on the web at any time.
If you connect Strava
You can connect your Strava account so that finished workouts post to your Strava feed. This is optional and off until you turn it on, it needs no PR Foundry account, and you can disconnect at any time in Settings → Integrations → Strava.
When a workout posts, PR Foundry sends Strava the workout title and date, each exercise with its sets, weights and reps, the RPE you logged, the session duration, and — when an Apple Watch tracked the session — your heart-rate track and calories. Warm-up sets are not included. Nothing is sent for a workout you keep off your feed using the toggle on the finish screen, and nothing is sent while you are disconnected.
Strava is a third party. Anything posted there is held by Strava under their privacy policy and terms, not ours, and deleting an activity is done in Strava. PR Foundry requests write access only: it never reads anything from your Strava account. Your Strava tokens are stored in your iPhone's Keychain; our server holds the credentials needed to obtain and refresh them but stores nothing about your Strava account. Disconnecting revokes PR Foundry's access at Strava and clears the tokens from your device; workouts already posted stay on Strava until you delete them there.
This website
This section covers prfoundry.fit, not the app. The website uses Google Analytics 4 to measure how it is used: pages viewed, the referring site, approximate location derived from your IP address, device and browser type, and a few interactions such as choosing a download link, emailing support, expanding an FAQ, or copying the MCP server URL. Google sets first-party cookies on this site for that purpose and processes the data under its own privacy policy.
We use these statistics to see which pages are useful, not to profile you. Advertising storage, ad personalization, and ad user data are disabled; we run no ads and we do not sell this data. Website analytics is not connected to your PR Foundry account or your training data, which are covered by the sections above. We also use Google Search Console, which reports how the site appears in Google Search and adds no tracking to it. If you would rather not be counted, a content blocker, Google's opt-out browser add-on, or your browser's cookie controls will all do it, and the site works the same either way.
Notifications
With your permission, the app schedules local notifications (rest-timer completion and optional plan reminders). These are generated on your device and are not transmitted anywhere.
Payments
PR Foundry is currently free, so the app does not process payments or collect any payment information. If a paid tier is added later, purchases will be handled by Apple In-App Purchase and PR Foundry will never see or store your payment details.
Data export and deletion
You can export your data as JSON or CSV from the app using the iOS share sheet; where that file goes is up to you. If you have an account, you can delete your account and all associated cloud data from inside the app (Settings → Account → Delete Account), from your account on the web, or by contacting us. Deleting the account erases the copy we hold and revokes access for any AI clients you had connected; the training history on your device is not affected. You can also export your cloud data from the app or the web. Deleting the app removes the local copy; resetting program data is also available in the app's Settings.
Children
The app does not knowingly collect data from anyone, including children.
Changes
If this policy changes, we will update this page and the effective date.
Contact
When you use PR Foundry without an account, no data is collected. When you opt into cloud sync or an AI connection, we process the training and identity data described above to provide those features. The App Store privacy label reflects this opt-in data use.