Skip to main content
Analytics are off by default, diary sharing is invitation-only, API keys are stored as hashes and shown once, and deleting your account removes everything immediately. This page explains the choices available to you and where to find them. Privacy settings are in Settings → Privacy & sync.

Analytics

OneRep includes two layers of measurement, and you control the optional one. Basic usage measurement runs regardless of your preference. It counts aggregate feature use anonymously and is described in full in the Privacy Policy. Your meal contents, workout data, body measurements, and Coach conversations are never part of this. Optional analytics is off by default. Turning it on shares anonymous feature-usage counts with the project to help prioritise development. No personal information, no log contents, and no Coach messages are ever included. To check or change this setting:
1

Open Settings

Tap the settings icon from the main navigation.
2

Go to Privacy & sync

Tap Privacy & sync in the App section.
3

Toggle Optional analytics

Find Optional analytics and switch it on or off. Tap Save privacy settings to apply.

AI sharing

AI features ask for your consent before sharing a request. The disclosure explains the data sent, including the message or photo you provide and relevant fitness or health details, and names OpenRouter and the downstream model provider. You can switch AI sharing off in Settings → Privacy & sync to stop future requests. This does not recall requests already sent. See the Coach guide and the AI section of the Privacy Policy.

Personalized insights

The Personalized insights toggle controls whether OneRep uses your logs to tailor coaching. When it’s on, your food diary, workout history, and check-ins inform the advice your Coach gives. When it’s off, coaching responses use only what you share in the conversation itself. This setting is separate from analytics: turning off personalized insights doesn’t affect the anonymous usage counts described above, and vice versa.

What OneRep collects versus what stays private

Stored on OneRep servers

Your account details, food logs, workout history, body measurements, and preferences. This data is what makes sync across devices possible.

Private by design

Your meal contents, Coach conversations, workout details, and body data are never included in analytics or shared with third parties.
Your food diary, workout logs, body check-ins, and Coach memory are yours. OneRep does not sell this data and does not include it in any analytics payload.

Health data you choose to share

Health sync is off until you turn it on in Settings → Health & wearables, and turning it on is not all-or-nothing. Each of the ten health metrics OneRep can score on has its own switch, so you can share steps and sleep while keeping your weight and body composition to yourself. A metric switched off is never requested from Apple Health or Health Connect at all. Nothing is fetched, so there is nothing sitting on the server to delete later. Your choices are stored per metric on your account and survive updates: a metric you switched off stays off when a new release adds others. The Health page covers the switch list in full.

API key privacy

When you create an API key in Settings → API & MCP, the full key is shown to you exactly once, so copy it then. It cannot be retrieved afterwards. OneRep stores only a cryptographic hash of the key, not the key itself. If you lose a key, revoke it and create a new one. Each key shows its first few characters in the key list so you can identify which is which. You can revoke any key individually at any time, cutting off that key’s access immediately without affecting any others.
Keys you create for yourself (“personal keys”) do not expire. Keys issued to connected apps via OAuth have their own expiry managed by that flow.

Diary sharing

You can share your food diary with a coach or training partner on a read-only basis. Sharing is controlled entirely by you:
  • You invite someone by entering their email in Settings → Privacy & sync → Sharing
  • They must accept the invitation before they can see anything
  • You can revoke any share at any time; access stops immediately
  • Each share has a scope (diary view, reports, and comments) that you set when you invite
The people you share with cannot edit your diary, log food on your behalf, or change any of your settings. Their access is strictly read-only.
To see who currently has access to your diary, scroll to the People I share with list in Privacy & sync. Any share you no longer want can be revoked with one tap.
OneRep’s full Privacy Policy and Terms and Conditions are linked at the bottom of the Privacy & sync settings screen. The Privacy Policy describes in detail what is collected, how it is used, and your rights.

Account deletion removes all your data

If you choose to delete your account, every piece of data OneRep holds about you is removed: logs, history, preferences, API keys, Coach memory, and diary shares. This is immediate and permanent.
Account deletion cannot be undone. Export your data first if you want a personal backup. See Exporting Your Data for instructions.
Opting out stops any further optional analytics from being recorded. Historical aggregate counts collected while the setting was on are anonymised and cannot be associated with your account.
No. Diary shares grant read access to your food diary and nutrition reports only. Coach conversations, workout logs, body measurements, and account settings are never accessible to a diary viewer.
Yes. Revoking a key takes effect immediately. Any script or application using that key will receive an authentication error on its next request.
Signing out removes your session from the current device only. Your data stays in the cloud and is there when you sign back in. Deleting your account permanently removes all your data from every device and from the server.