Summit ("the App," "we," "our," or "us") is a fitness coaching application developed by Summit Systems, LLC. This Privacy Policy explains what data Summit collects, how it is used and stored, who it is shared with, and what choices you have regarding your data.
The short version: Summit has no advertising SDKs and no analytics trackers. We do not sell your data or use it for advertising. Summit routes AI coaching requests through our own secure cloud gateway (api.summitsystems.app), which holds the Anthropic API key and manages your credit balance. Your coach context (workout history, health metrics, goals, recovery data) is sent through this gateway to Anthropic to generate coaching responses. Your data is stored locally on your device and in your personal Apple iCloud account. Crash reports go to Sentry. If you connect Strava, WHOOP, or Polar, those integrations also route through the gateway. Section 4 explains each service in detail, including the weather, air-quality, and Intervals.icu services.
With your explicit permission, Summit reads the following data from Apple HealthKit:
Reproductive health data is treated with the same protections as all other HealthKit data: it is stored on your device and in your personal iCloud account, like the rest of your Summit data, is never used for advertising, and is never sold or shared with third parties. It is sent to Anthropic's Claude API only as part of the core coaching function described in Section 2.1.
Alongside your cycle data, you may record your breastfeeding status in Summit's Settings (Summit does not read it from Apple Health). It is used solely to provide coaching context (e.g. energy and hydration needs), is never used for advertising, and is never sold.
Summit reads the HealthKit data listed above with your permission. Summit also writes a limited set of data back to Apple Health by default — specifically, workouts you record or log in Summit (as Apple HealthKit workout sessions, including heart-rate and power samples from any paired Bluetooth device). The write feature is controlled by the "Apple Health Write" toggle in Summit's Settings; you can turn it off at any time, in which case Summit stores workouts locally only and Apple Health will not see them. You can change which categories Summit reads from or writes to Apple Health at any time in iOS Settings → Health → Data Access & Devices → Summit. Summit does not write to any other HealthKit category (no HR independent of workouts, no sleep, no body metrics, no recovery data).
During setup you may voluntarily provide your name, fitness level, training phase, goals, preferred activities, available equipment, coaching style preferences, and personal notes. During setup or later in the App, you may also enter current injuries and physical limits, and your training schedule (which days you train and how much time you have).
You may also enter RPE ratings, workout notes, manually logged sessions, recovery logs (sleep quality, energy ratings, wellness notes), and nutrition logs. You may answer check-ins about how your training is going (for example, at the end of a training block), including any injury or setback, which you can also report when returning from a break. Summit derives your personal records (such as your best lifts) from the sessions you log. You may message the coach and log workouts by voice (your speech is converted to text; see Section 4.12). The coach writes memory notes about you from your conversations (for example, milestones you share), which you can clear at any time (Section 7.3).
Location is used for three purposes. (1) Weather and elevation: your device sends your coordinates directly to Open-Meteo (Section 4.9) to retrieve local weather and ground elevation. (2) Air quality: your device sends your coordinates to Summit's gateway, which looks up current air quality from the U.S. EPA's AirNow service (Section 4.10). (3) Outdoor workout tracking: when you start an outdoor session, Summit records GPS fixes (latitude, longitude, altitude, speed) throughout the workout to build a route. This route is stored locally in the App and written to Apple Health if you have the Health Write feature enabled.
With Expert coaching, your city and elevation, along with local weather and air quality, are sent to Anthropic (Sections 2.1 and 4.2); your coordinates are not. GPS routes are not sent to the Summit gateway or to Anthropic — they never leave your device and your iCloud account except when written to Apple Health or included in an activity you choose to post to Strava.
Summit's primary function is AI-generated personalized fitness coaching. To generate coaching responses, Summit sends relevant portions of the following data — your "coach context" — through the Summit gateway (Section 4.1) to Anthropic's Claude API:
This applies to Expert coaching only. Summit's free on-device coaching mode — training plan generation, workout logging, recovery tracking, and history — runs entirely on your device, and none of that data is sent to the Summit gateway or to Anthropic. Starting with Summit 1.0.1, nothing is sent to Anthropic until you tap Agree and continue on the in-app AI data screen, which names Anthropic and lists the data above. You can stop at any time: switching to the free coach in Settings stops these sends in every version.
All data is stored locally on your device using Apple's SwiftData framework. It is used to display your workout history, maintain coaching context across sessions, and personalize your experience over time.
When you finish setting up Summit, it records a single install event in Summit's public Apple iCloud (CloudKit) database so we can count installs. The event contains an install identifier generated on your device and the time it was recorded, and iCloud attaches the iCloud user record ID of the account that wrote it. It contains no health data and no profile information. Summit does not link it to your name, uses it only to count installs, and never combines it with any other data described in this policy.
Share cards carry a random referral code. When someone scans one, our website keeps only the code and the date of the visit as a daily tally. It records no IP address, browser or device, and sets no cookies.
The code is in the QR code on the share cards you create in Summit. It is generated on your device, is not derived from your name, account, or health data, and is the same on every card you share from that installation. Each day's tally is deleted after 90 days (see Section 6.3).
In accordance with Apple's HealthKit guidelines, Summit confirms the following:
Summit routes all AI coaching requests through a Summit-operated cloud gateway hosted on Fly.io in the United States. This gateway is necessary to hold the Anthropic API key securely (rather than bundling it in the app), manage your credit balance, verify App Store purchases, and relay OAuth connections for third-party integrations (Strava, WHOOP, Polar).
What the gateway receives with each coaching request: workout history, health metrics, goals, recovery data, and profile information — the same context described in Section 2.1. The gateway does not permanently store this health data; it is passed through to Anthropic transiently. The one exception: the coach's reply is cached for up to 24 hours (so a retried request returns the same answer instead of charging you twice), then automatically deleted. Your own messages and health context are not written to any gateway database.
What the gateway stores persistently: your pseudonymous Apple Sign-In user ID (a stable identifier Apple generates for Summit that does not include your name or email), your credit balance, purchase transaction IDs for fraud prevention and lost-purchase recovery, and your workout favorites. If you sign in, workouts you favorite are stored with your account so they sync across your devices, and are deleted when you delete your account. Favorites are stored as identifiers of the library sessions you mark — not workout content or health data. No health data is stored persistently on the gateway.
The gateway is operated solely by Summit Systems, LLC. It does not share data with any advertising or analytics service.
Anthropic, PBC provides the Claude AI that writes Expert coaching. Summit sends your coach context (Section 2.1) to Anthropic's Claude API through the gateway described in 4.1. Summit uses Anthropic's commercial API under Anthropic's Commercial Terms and Data Processing Addendum. Under those terms:
These obligations give your data protection equal to the commitments in this policy: it is used only to provide your coaching and keep that service secure, and it is never sold, never used for advertising, and never used to train AI models.
Starting with Summit 1.0.1, nothing is sent to Anthropic until you tap Agree and continue on the in-app AI data screen, which names Anthropic and lists the data it receives; if you decline, Summit uses the free on-device coach. Switching to the free coach in Settings stops these sends in every version.
Summit reads HealthKit data based on the permissions you grant. Apple's own privacy policy governs HealthKit. Manage permissions anytime in iOS Settings.
Summit uses Sentry (sentry.io) for crash reporting and non-fatal error capture. When the App crashes or encounters a recoverable error, Sentry receives a diagnostic report so we can diagnose and fix bugs.
What Sentry receives:
What Sentry does not receive:
Sentry processes diagnostic data under their own privacy policy at sentry.io/privacy. Crash reporting is integral to maintaining App quality; it is not optional in the current version of Summit, and there is no in-app toggle to disable it.
Summit uses Apple iCloud (specifically CloudKit, Apple's cloud-database service for personal data) to sync your Summit data — workout history, training plans, profile, recovery logs, and coaching memory — across your own Apple devices when you are signed in to the same iCloud account on each device.
iCloud data is stored in your personal Apple iCloud account, not on any Summit-operated server. We do not have access to data stored in your iCloud account. Apple's own privacy policy governs iCloud data: apple.com/legal/privacy.
If you do not want Summit data to sync via iCloud, you can disable iCloud for Summit specifically in iOS Settings → [Your Name] → iCloud → Apps Using iCloud → Summit. When iCloud sync is off, Summit stores data only on the local device and your devices will not share data with each other.
If you choose to connect Strava, Summit uses OAuth 2.0 to authenticate with Strava's API via the Summit gateway. The gateway stores your Strava OAuth tokens securely to sync activities. Strava activity IDs and synced workout data are stored locally in the App. Connecting Strava is entirely optional; Summit's core features work without it. Strava's privacy policy: strava.com/legal/privacy.
If you choose to connect WHOOP, Summit uses OAuth 2.0 to authenticate with WHOOP's API via the Summit gateway. Recovery metrics (HRV, strain, sleep) retrieved from WHOOP are stored locally on your device and used to provide coaching context. Connecting WHOOP is entirely optional. WHOOP's privacy policy: whoop.com/privacy-policy.
If you choose to connect Polar, Summit uses OAuth 2.0 to authenticate with Polar's API via the Summit gateway. Workout and recovery data retrieved from Polar is stored locally on your device. Connecting Polar is entirely optional. Polar's privacy policy: polar.com/privacy-center.
If you allow location access, your device sends your coordinates directly to Open-Meteo (open-meteo.com) to retrieve local weather and ground elevation. These requests do not pass through the Summit gateway and carry no name, account identifier, or health data; as with any internet request, Open-Meteo also sees your device's IP address. Open-Meteo's terms state that it keeps server logs, which may contain coordinates, for up to 90 days and does not share them with third parties. Open-Meteo's terms and privacy statement: open-meteo.com/en/terms.
If you allow location access, your device sends your coordinates to the Summit gateway, which looks up current air quality from AirNow, the U.S. Environmental Protection Agency's air-quality service. AirNow receives the coordinates from Summit's server, not from your device, together with Summit's own service key — no name, account identifier, or health data. Coordinates outside AirNow's U.S. coverage are never sent to it.
If you choose to connect Intervals.icu, you sign in on Intervals.icu's own page and the Summit gateway stores the resulting access token, encrypted. Summit then sends, through the gateway, your planned sessions (dates, session names, and step-by-step targets) to your Intervals.icu calendar and your threshold running pace to your Intervals.icu sport settings, and reads your Intervals.icu profile and sport settings. Connecting Intervals.icu is entirely optional. Intervals.icu's privacy policy: intervals.icu/privacy-policy.
When you log a workout by voice, Summit uses Apple's speech recognition to convert your speech to text. Summit does not require this to run on your device, so Apple may process the audio on its servers under Apple's privacy policy (see Section 4.5). With Expert coaching, the resulting text is sent to Anthropic as described in Section 2.1.
Beyond the services described in Sections 4.1–4.12 and Apple's own sign-in and App Store purchase services, Summit does not send your data to any other third party. Summit does not integrate with any advertising networks, behavioral analytics services, social media platforms, data brokers, or other third-party SDKs.
Your Summit data lives primarily in two places: (1) on your iOS device, in Apple's SwiftData local storage, and (2) in your personal Apple iCloud account, via Apple's CloudKit service, so that your data syncs across your own Apple devices when iCloud is enabled. Apple's iCloud and CloudKit are governed by Apple's own privacy policy. We do not have access to your iCloud-stored data.
Summit also operates a cloud gateway (api.summitsystems.app) that stores your pseudonymous user ID, credit balance, purchase transaction IDs, and workout favorites (identifiers of library sessions you mark, synced across your devices and deleted with your account). This gateway does not store your health data or workout content. The coach's replies are cached for up to 24 hours for reliable delivery and duplicate-charge prevention, then deleted; your own messages are not stored.
Your data leaves your device and iCloud account in the following circumstances:
All data transmitted to the Summit gateway and to third parties (Anthropic, Sentry, Apple iCloud, Open-Meteo, AirNow, and any integrations you connect) is sent over HTTPS using TLS-encrypted connections.
Summit retains your data on your device for as long as the App is installed. Because your workout, health, and coaching data is stored locally (and in your own iCloud account), it persists until you take action to remove it. The gateway records described in Section 4.1 — pseudonymous user ID, credit balance, purchase transaction IDs, and workout favorites — are retained for as long as your account exists so that your purchases can be restored, and are deleted when you delete your account.
Anthropic deletes API inputs and outputs within 30 days, except where it must retain them longer to enforce its Usage Policy or to comply with the law (see Section 4.2 and Anthropic's retention policy).
The daily tally described in Section 2.2b — a referral code, a date, and a count — is deleted after 90 days.
Grant or revoke any HealthKit data category at any time via iOS Settings → Health → Data Access & Devices → Summit.
Grant or revoke location access anytime in iOS Settings. Revoking location disables weather-aware coaching and GPS route tracking for outdoor sessions; all other features continue to function normally.
Clear the AI coach's conversation memory at any time from within Summit → Settings. This removes all stored coaching context used to personalize ongoing conversations.
Reset your profile information at any time from within Summit → Settings.
Delete all Summit data by deleting the App from your device. Uninstalling Summit removes all locally stored data on that device. If you have iCloud sync enabled, your data will also remain in your Apple iCloud account until you sign in to Summit on another device (in which case it restores), disable Summit's access to iCloud in iOS Settings → [Your Name] → iCloud → Apps Using iCloud → Summit, or delete your iCloud account.
Toggle off "Apple Health Write" in Summit's Settings if you do not want Summit to write workouts to Apple Health. Existing entries Summit previously wrote to Apple Health remain as they are — you can remove them via the Apple Health app.
Contact us at support@summitsystems.app with any questions about your data.
Summit is intended for users who are 18 years of age or older. We do not knowingly collect personal information from anyone under the age of 18. If you are under 18, do not use Summit. If you are a parent or guardian and believe your child has provided data to Summit, please contact us at support@summitsystems.app and we will promptly remove their information.
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date at the top of this document and, where appropriate, notify you through the App. Your continued use of Summit after any changes constitutes your acceptance of the updated Privacy Policy.