Legal

Privacy Policy

Your privacy matters to us. This policy explains what personal data Mintr collects when you use our website and mobile applications, why we collect it, how we protect it, and the rights you have over it.

Last updated: July 17, 2026

01Who we are

Mintr (“Mintr”, “we”, “us”) operates an EMOM-based training platform available through our website and our iOS and Android applications (together, the “Service”). We are the data controller for the personal data described in this policy. This policy applies to all users of the Service; by using it, you acknowledge the practices described here. Use of the Service is also governed by our Terms and Conditions.

02Information we collect

We only collect the data we need to run the Service. It falls into the following categories:

  • Account information: your email address, name, username, and password (stored only in hashed form — we can never read it). If you sign in with Google, we receive your basic Google profile (name, email address, and profile picture) instead of a password.
  • Fitness profile: information you provide during onboarding and in your settings, such as your body weight, preferred weight unit (kg/lbs), training goals, and equipment or program preferences.
  • Workout & performance data: the workouts you complete, movements, sets, reps, intensities, difficulty feedback, personal records, scores, achievements, and ranking history generated by your training.
  • Subscription information: your membership plan, billing period and dates, subscription status, applied discounts, and payment history — but never your card details (see the next section).
  • Technical & usage data: device type, operating system, app version, language, log data, and how you interact with the Service, used for security, debugging, and improving the product.
  • Communications: messages you send us (for example support requests) and your email verification status.

03Payment data & Stripe

We never store your card details

All payments are handled by Stripe, our third-party payment processor, which is certified to the highest industry security standard (PCI-DSS Level 1). Your bank card number, expiry date, CVC, and other sensitive payment credentials are transmitted directly to and stored exclusively by Stripe — they never touch or reside on Mintr’s servers.

We only keep non-sensitive billing metadata: your Stripe customer reference, subscription plan and status, billing dates, amounts paid, applied discounts or referral credit, and the card brand and last four digits that Stripe exposes so you can recognize your payment method. For details on how Stripe processes your data, see Stripe’s Privacy Policy.

04How we use your information

We use your data to:

  • Create and manage your account, and authenticate you (including via Google Sign-In);
  • Deliver the core Service: generate and adapt your training programs, calculate workout intensities from your results and body weight, and track your progress;
  • Compute scores, rankings, leaderboards, and achievements;
  • Process your membership: subscriptions, renewals, trials, discounts, and referral rewards (via Stripe);
  • Send you service communications such as email verification, password resets, billing notices, and important changes to the Service or these policies;
  • Provide customer support and respond to your requests;
  • Monitor, secure, debug, and improve the Service, including enforcing our Terms and preventing fraud or leaderboard manipulation;
  • Comply with legal obligations, such as accounting and tax requirements.

We do not sell your personal data, and we do not use your fitness data for third-party advertising.

05Leaderboards & public information

Rankings are a core part of Mintr. When you participate, your username, scores, ranks, and rank evolution are visible to other users on leaderboards. Your email address, body weight, and other profile details are never shown publicly. Choose your username with this visibility in mind.

06Referral program data

If you use the referral program, we process your personal referral code, the accounts that subscribed with it, and the rewards you earned, in order to grant discounts and credit on both sides. A person who uses your code does not see your personal details beyond what is needed to apply the discount, and you do not see theirs beyond anonymized or aggregate reward information shown on your referral page.

07How we share information

We share personal data only with service providers who help us operate the Service:

  • Stripe — payment and subscription processing, as described above;
  • Google — only if you choose to sign in with Google, to authenticate your account;
  • Infrastructure & communication providers — hosting, database, and email-delivery providers that store or transmit data on our behalf under contractual confidentiality obligations;
  • Authorities — where required by law, court order, or to protect our rights, users, or the public;
  • Business transfers — if Mintr is involved in a merger, acquisition, or asset sale, your data may be transferred as part of that transaction, subject to this policy.

We never sell or rent your personal data to third parties.

08Data retention & deletion

We keep your personal data for as long as your account is active. If you delete your account, your personal data is deleted or irreversibly anonymized within a reasonable period, except for data we must retain to comply with legal obligations (such as invoices and payment records, kept for the legally required retention period) or to resolve disputes. Anonymized, aggregate training statistics that can no longer be linked to you may be retained to improve the Service.

09Security

We protect your data with industry-standard measures: encryption in transit (HTTPS/TLS), hashed passwords, access controls limiting who on our team can access personal data, and secure, reputable infrastructure providers. The most sensitive category — payment credentials — is never in our systems at all, by design (see Payment data & Stripe). No system is 100% secure, but we take reasonable and appropriate steps to safeguard your information, and we will notify you and the relevant authorities of any data breach where required by law.

10Your rights

Depending on your jurisdiction (including under the GDPR if you are in the EU/EEA), you have the right to:

  • Access the personal data we hold about you and receive a copy of it;
  • Correct inaccurate or incomplete data (much of it directly in your account settings);
  • Delete your account and personal data;
  • Restrict or object to certain processing;
  • Receive your data in a portable, machine-readable format;
  • Withdraw consent at any time where processing is based on consent;
  • Lodge a complaint with your local data-protection authority.

To exercise any of these rights, contact us at [email protected]. We may need to verify your identity before acting on a request.

11Children's privacy

The Service is not directed at children and is intended for users who are at least 18 years old (or the age of legal majority in their jurisdiction), as set out in our Terms and Conditions. We do not knowingly collect personal data from children. If you believe a child has created an account, contact us and we will delete it.

12International transfers

Our service providers (such as Stripe, Google, and our hosting providers) may process data outside your country of residence. Where personal data of EU/EEA users is transferred internationally, we rely on appropriate safeguards such as adequacy decisions or standard contractual clauses to ensure an equivalent level of protection.

13Changes to this policy

We may update this Privacy Policy from time to time. The “Last updated” date at the top indicates the latest revision. For material changes, we will notify you by email or through the Service before the change takes effect. Your continued use of the Service after that date constitutes acceptance of the updated policy.

14Contact us

For any privacy question or to exercise your rights, contact us at [email protected].