KocFit

Privacy Policy

Last updated: 2026-05-31

KocFit ("we") values the protection of trainers' and clients' data. This policy explains what data we collect, how we use it, and your rights, including those under GDPR (EU) and KVKK (Turkey).

1. Data we collect

Account data: first name, last name, email, password (stored hashed), role.

Profile & health data: goal, height, weight, gender, birth year, workout/nutrition logs, measurements and progress photos (only if you add them).

Communication data: messages and check-ins exchanged with your trainer/client.

Video calls: live sessions run over LiveKit; we do not record calls.

Payment data: payments are processed by providers such as Lemon Squeezy / Shopier; we do not store card details.

Usage/technical data: session cookie, approximate location (country) and signup IP for security and fraud prevention.

2. How we use data

To provide the service: managing your account, the trainer–client relationship and your programs.

Your health/fitness data is visible only to the trainer/business you are linked to, for coaching purposes.

Security, abuse prevention and legal obligations.

Notifications (push/email) — with your consent.

3. Data sharing

The business/trainer you are linked to can access your data. We do not sell your data to third parties for advertising.

We share only with processors needed to run the service: hosting, email delivery, video calls (LiveKit), payment providers.

We may disclose data to authorities where legally required.

4. Retention and deletion

We retain your data while your account is active.

You can permanently delete your account in-app via "Profile → Delete Account". Deletion is irreversible and removes all related data (programs, measurements, messages, photos).

Records subject to legal retention (e.g. invoices) may be kept for the required period.

5. Your rights (GDPR / KVKK)

You have the right to access, correct, delete and restrict the processing of your data.

Contact us at the address below to exercise these rights.

6. Security

Passwords are one-way hashed; connections are encrypted (HTTPS). No system is 100% secure, however.

7. Children's privacy

The service is not directed to people under 18.

8. Contact

Questions: privacy@kocfit.com — or the form on the /contact page.

Privacy Policy · KocFit