1. Who we are
KegelCore ("we", "us", "our") is an Android application published by ASD Media. This Privacy Policy explains what information we collect when you use the KegelCore app, how we use it, and the rights you have over it.
2. What we collect
We collect only what's needed to power the app. Everything below is linked to your account.
2.1 Account information
- Google account email and display name — captured when you sign in with Google so we can identify your account on a new device and reach you if there's a problem with your subscription or your data.
- Google account profile picture URL — shown on your in-app profile screen.
- Firebase user ID (UID) — an internal identifier we use to store your data under your account.
2.2 Onboarding answers
To build a personalised training plan we ask you a short set of questions during onboarding:
- Primary training goal (e.g. pelvic floor strength, incontinence support, post-prostate-surgery recovery, postpartum recovery, sexual wellness).
- Gender and age range.
- Self-reported fitness level and prior Kegel experience.
- Optional notes on relevant conditions you want the plan to take into account.
- Preferred workout duration, weekly frequency, and reminder time.
These answers feed our on-device adaptive plan generator. We treat the "goal" and "conditions" fields as sensitive and never use them for marketing or analytics segmentation.
2.3 Workout activity
- Workouts you complete, their duration, difficulty, and the date.
- Cumulative stats: XP, current level, current streak, best streak, total minutes, total workouts.
- Programs you enrol in and how far you've progressed.
- Goals and challenges you complete or claim.
- Optional difficulty feedback you give us after a session ("too easy", "just right", "too hard"). We use this to tune your next plan.
2.4 Subscription state
If you purchase KegelCore Premium, our payments partner RevenueCat processes the purchase on top of Google Play Billing. We receive an entitlement flag ("active" / "expired") and the anonymised RevenueCat user ID. We never see your card number or your full Play purchase token.
2.5 Diagnostics
We use Firebase Analytics and Firebase Crashlytics for aggregate crash and usage analytics (e.g. "how many users finished onboarding this week"). These reports are not linked to your name or email and they don't use the Android Advertising ID — we explicitly remove that permission from the app.
2.6 What we do not collect
- We do not collect your precise or approximate location.
- We do not access your contacts, calendar, photos, microphone, or camera.
- We do not use any third-party advertising SDKs.
- We do not store your password (Google handles sign-in).
- We do not store your payment details (Google Play handles billing).
3. Why we collect it
- To run the app. Your onboarding answers and workout history are what the plan generator uses to build your sessions.
- To sync across devices. When you reinstall or switch phones, signing back in with the same Google account restores your progress.
- To honour your purchase. Subscription state needs to follow your account, not your device.
- To improve the app. Aggregate analytics tell us which features are working and which need attention.
4. Legal basis (GDPR / UK GDPR users)
- Performance of a contract — to deliver the app's core functionality you signed up for.
- Legitimate interests — to keep the app secure, debug crashes, and improve the product.
- Consent — for any optional feature (e.g. daily reminders); you can withdraw at any time in Profile → Settings.
5. Who we share it with
We do not sell your data. We share it only with the service providers that make the app work, and only to the extent each one needs:
- Google (Firebase Auth, Cloud Firestore, Analytics, Crashlytics) — stores your account and workout data and provides crash reports.
- RevenueCat — manages subscription entitlements on top of Google Play Billing.
- Google Play Billing — processes the actual purchase.
Each provider acts as a data processor on our behalf and is bound by its own privacy and security commitments.
6. Where it's stored and for how long
- Your data is stored on Google Cloud servers operated by Firebase. Data may be processed in any region Google operates.
- It's encrypted in transit (TLS) and at rest (AES-256, managed by Google).
- We keep your account data for as long as your account is active. When you request deletion (see below), we permanently delete it within 90 days.
- Anonymised aggregate analytics may be retained beyond that window.
7. Your rights
Depending on where you live, you have the right to:
- Access a copy of the data we hold about you.
- Correct any inaccurate information (most fields are editable in-app via Profile).
- Delete your account and all associated data — see Account Deletion.
- Export your data in a portable format (email us).
- Object to specific processing activities.
- Withdraw consent at any time where processing is based on consent.
To exercise any of these rights, email us at coderanil0@gmail.com. We'll respond within 30 days.
8. Children
KegelCore is intended for adults 18 years of age or older. We do not knowingly collect data from anyone under 18. If you believe a minor has used the app, please contact us and we will delete the associated account.
9. Security
We follow industry-standard practices to protect your data: Google-managed encryption in transit and at rest, Firebase Security Rules that restrict every document to its owner, hard server-side validation on subscription state, and mandatory Google sign-in (no passwords we can leak). No system is 100% secure, but we work hard to keep yours safe.
10. Changes to this policy
If we make a material change to this policy, we will update the "Effective date" above and, where appropriate, notify you in the app before the change takes effect.
11. Contact us
Questions, requests, or feedback?
Email coderanil0@gmail.com.