Legal
Privacy Policy
1. Who we are
Nostia Labs ("we", "us") operates Nostos Fit, a fitness and body progress app registered in the Netherlands. This policy explains what personal data we collect, why, how long we keep it, and your choices.
2. Account and identity
We collect your email address so you can sign in and recover your account. Your password is hashed by our auth provider. We do not store plaintext passwords. Your display name is shown in your profile. If you set a social username it is used for friend discovery and compare features. This is optional.
Waitlist
If you join the waitlist on nostialabs.com, we store your email address to notify you about Nostos Fit beta access and launch updates. Waitlist emails are separate from app accounts until you create one. You can ask us to remove your waitlist entry at any time by emailing support@nostosfit.com.
3. Profile and body metrics
Your gender and date of birth or age feed peer scoring, body metric formulas, and your profile. Your height and weight feed BMI, body metrics, and your workout and diet targets. Your fitness goal and experience level drive personalization and progression. One rep max (1RM) estimates per exercise drive workout XP, stats, and anticheat peer references. Tape style body measurements support progress tracking and body metrics. Your measurement units preference controls display and input formatting.
4. Body scan (optional, sensitive)
The 360° turntable capture is optional and not required to use the app. Before your first scan you must confirm you are 18 or older, that you are not located in Illinois, and that you consent to camera use in the capture flow. 360 body capture is not offered to people located in Illinois. Other US states may use capture with 18+, clothed scan, and explicit consent. Estimates are not medical.
We process clothed body images for fitness tracking. Nude or sexually explicit 360° images are not permitted. If we find them, we delete them.
Other people can see your scan only if you set profile visibility to friends only or public. Private is the default. Body stills and compare reels can be seen by friends or the public if you change visibility.
The camera capture of your body powers segmentation, metrics, and optional display features such as the home turntable, muscle overlay, and workout volume comparisons. From it we derive estimates such as body fat %, skeletal muscle mass, circumferences, and posture and symmetry scores. Processed turntable images (WebP frames) are used for on device display and, when signed in, cloud backup.
On device processing: pose and segmentation use MediaPipe on your phone. We do not upload raw camera frames to a server for inference unless you separately opt in to Help improve 360 scans (see below).
Optional Help improve 360 scans: if you turn this on in the capture flow or in Profile, a chin cropped 1080p copy of your capture video and scans you do not pick when you lock in a level may be kept in a separate private EU archive for up to 12 months to improve 360 quality. Your name is not used in that training copy. You can withdraw in Profile. Delete account removes it immediately.
Cloud storage: when signed in, processed turntable assets and session metadata are stored in Supabase Storage in the European Union (Ireland, eu west 1) under your account. We keep them until you delete your account. There is no 12 month cap on 360 assets. Meal Scan photos are different.
On device files are not encrypted at rest. Protect your phone.
Social sharing: your profile visibility is private by default. Body scan display images are shared only if you manually set visibility to friends only or public.
5. Activity and health
Workout logs (exercises, sets, reps, weight, RIR, session metadata) build your training history, XP, and stats. Diet logs (foods, macros, meal structure) support nutrition tracking and diet XP. Open Food Facts product lookups (barcode or search queries) are used to resolve items against the food database.
Google Health Connect is optional on Android. With your permission we may read steps, distance, active calories, heart rate, resting heart rate, sleep stages, weight, body fat, and workouts.
Apple Health is optional on iPhone. With your permission we may read the same activity types.
Steps and calories drive walking XP. Heart rate, sleep, weight, body fat, and workouts appear on Connected Apps tabs. You can refuse Health Connect or Apple Health and still use the app.
6. Meal Scan
Meal Scan is optional. When you take a photo or choose one from your gallery, we send a normalized copy to Google Gemini to identify visible foods and estimate portions. You can still adjust the crop while identification runs. Identified foods appear after you confirm the crop with Use Photo. If you retake, choose another photo, or leave without confirming, that attempt is cancelled and the photo is not logged.
You review every result. Calories and macros come from the Nostos Fit food catalog, not from Gemini.
Meal Scan uses the camera or a photo you choose. It does not request device location or nearby restaurant data.
If Help improve Meal Scan is off, the source photo is deleted after analysis and corrections stay private to your account. If you opt in, normalized photos and confirmed corrections may be used to improve shared results and photos are kept for no more than 12 months. You can withdraw in Profile then Settings, which deletes retained photos and excludes prior scans from shared learning.
7. Diagnostics and support
Crash reports and performance data (Sentry, if you opt in) help us keep the app stable. PII is scrubbed before send. This is on by default in developer builds and off in user and tester builds unless you enable it in Profile then Settings. Optional bug reports (free text you submit) help us support you. They are scrubbed for emails and tokens. 360° capture failure diagnostics (NDJSON, no raw video unless you opted in to Help improve 360 scans) help engineering reliability when a capture fails.
We may use aggregated or irreversibly anonymized diagnostic statistics to improve capture reliability. We do not use identifiable body images from deleted accounts for model training. We do not sell your personal data. You can toggle crash reporting in Profile then Settings.
8. How we use data
- Provide and improve the app (sync across devices, restore after reinstall).
- Calculate in app XP, levels, and progress visualizations.
- Identify foods in Meal Scan photos you take or choose.
- Operate social and compare features you enable (visibility: private, friends only, or public; private by default).
- Diagnose crashes and capture failures when consented or submitted.
We do not sell your personal data.
9. Legal bases (EEA/UK users)
Where GDPR applies, we rely on: contract (providing the service), consent (Health Connect, Apple Health, optional crash reporting, 360° capture and camera use, Meal Scan photos), and legitimate interests (security, abuse prevention, aggregated product improvement) balanced against your rights.
Body scan images and derived health related metrics are special category data under GDPR. We process them only with your explicit 18+ camera consent in the capture flow and to provide the features you request.
10. Sub processors
| Provider | Role | Location |
|---|---|---|
| Supabase | Auth, database, file storage | EU (Ireland, eu west 1) |
| Google Play Billing | Android subscription payments. We do not store full card details. | Processed by Google |
| Apple App Store Billing | iPhone subscription payments. We do not store full card details. | Processed by Apple |
| RevenueCat | Subscription status | United States |
| Sentry (org: nostia labs) | Crash and diagnostics (opt in) | United States |
| Open Food Facts | Public food product database | EU |
| Google Gemini | Meal Scan photo identification | United States |
| Google Health Connect | On device health data bridge on Android | On device, via Google |
| Apple Health | On device health data bridge on iPhone | On device, via Apple |
11. Retention and deletion
While your account is active we retain your data to provide the service, including progress charts, cloud backup, and restore after reinstall.
360 body images and metrics stay in EU storage until you delete the account. There is no 12 month cap on 360 service assets. Opted in Help improve 360 scans research copies are retained for no more than 12 months and are deleted earlier when you withdraw or delete your account. Opted in Meal Scan photos are retained for no more than 12 months and are deleted earlier when you withdraw or delete your account.
When you delete your account in Profile then Settings, or when you request erasure at support@nostosfit.com, we permanently delete your account and identifiable personal data, including workouts, diet logs, steps, social data, and all 360° body images and metrics from our database and cloud storage. This cannot be undone.
Local on device caches are removed when you delete your account or uninstall the app. On device 360 files are not encrypted at rest. Protect your phone.
Aggregated or irreversibly anonymized statistics that can no longer identify you may remain for product improvement. We do not retain identifiable body images after account deletion.
Crash and diagnostic events in Sentry follow Sentry project retention settings. Short technical backup copies may persist briefly before automatic purge.
12. Security
We use HTTPS, row level security on user tables, secure session storage on Android, and private storage buckets for body assets and Meal Scan photos. No system is 100% secure.
13. Your rights
Depending on jurisdiction you may request access, correction, deletion, portability, or objection. Use Delete account in Profile then Settings, or contact support@nostosfit.com. You may lodge a complaint with your supervisory authority (in the Netherlands: Autoriteit Persoonsgegevens).
14. Children
The app is not directed at children under 16 (or applicable local age). We do not knowingly collect data from children. The 360° capture feature requires users to be 18 or older.
15. International transfers
Some sub processors (such as Sentry when you opt in, and Google Gemini when you use Meal Scan) may process data outside the European Economic Area. Google Play Billing, Apple App Store Billing, and RevenueCat process payments. We use appropriate safeguards where required by applicable law.
16. Changes
We will post an updated policy and revise the "Last updated" date. Material changes may be notified in app.
17. Contact
Nostia Labs
KvK 42111839
Netherlands
support@nostosfit.com