iLog.fit iLog.fit

iLog.fit

Privacy Policy

Last updated 2026-08-22

iLog.fit holds health information about you — what you eat, how you train, how you sleep, how you feel, and if you choose to add them, your blood test results. This page explains what is collected, who can see it, and what leaves our servers. It is written to be read, not to be survived.

Who runs this

iLog.fit is operated by Global Computer Support Corp. Questions about anything here, or about your own data, go to mike@peer.vision.

What we collect

Your account

Email address, a password (stored only as a one-way hash — we cannot read it), display name, time zone, and the notification preferences you set. If you add them: full name, phone number, postal address, date of birth, height, a profile photo, a short bio and a city.

Your country is derived from the address you give and is not asked for separately. It is used to select the correct crisis line for where you are.

What you log

The entries you make — meals, exercise and the sets, weights and reps within it, supplements, sleep, mood check-ins, written check-in answers, notes, and any photos you attach. Your plan, your scores, your streak and your points are derived from these.

Lab work

If you use the lab section: the results you enter or upload, the reference ranges printed on the report, the date of the draw, and the photograph or PDF of the report itself. The file is kept so any value can be checked against its source later.

Wearables

If you connect a wearable account, we receive the daily summary that device produces — steps, distance, calories, resting heart rate, sleep duration. We never post anything back to it, and you can disconnect at any time.

Technical records

Sign-in events and certain account actions are recorded with a timestamp and the IP address they came from, so that access to a health record can be audited. Ordinary server logs are kept for operating the service.

There are no analytics, no advertising and no tracking pixels. Nothing on this site reports your behaviour to a third party.

Who can see your data

You always can. Everything you log is yours.

Coaches

A coach reaches your data only after you accept them. Being invited is not accepting — until you answer, an offered coach has no access at all.

Even once accepted, access is not automatic and not total:

  • Plans and the entries logged against them — a coach sees a plan they wrote for you, and any other plan only if you share it with them. You choose plan by plan.
  • Lab work — private unless you switch a specific coach on. It is all-or-nothing: a coach who can see your labs sees every panel, including ones you add later. Nobody is switched on by default.

Ending a coaching relationship revokes that coach's access immediately and clears the sharing choices you made for them. Feedback they already wrote stays on your record, because it is part of what happened to you — but they cannot reach your account again.

Administrators

Administrators of the service can reach account records to operate and support it. Administrator access to lab work is not automatic — it requires the same explicit permission a coach needs. Where an administrator views the app as another user for support, the action is recorded.

Other members

Only what you opt into. Leaderboards are off unless you turn them on, and they show a name and a points total — never your entries, photos, scores or lab results. Your bio and city are private unless you make them public.

Automated reading of documents and photos

Three features send content to Anthropic's API to be read by an AI model:

  • uploading a training or nutrition document to build a plan from it;
  • identifying the food in a meal photo you take;
  • reading a lab report you photograph or upload as a PDF.

In every case the model fills in a form that you then check and save. It never writes to your record on its own, and lab results do not appear in your trends until you have confirmed them against the report yourself.

Anthropic is used as a service provider for this processing. Uploaded content is sent for the purpose of reading it and returning the result to you. If you would rather nothing was sent, every one of these features is optional — plans, meals and lab results can all be entered by hand instead.

Other services we rely on

  • Hosting — the application and database run on a private server at GoDaddy. Your data is stored there.
  • Email — messages are sent through Microsoft 365. Anything we email you passes through it.
  • Wearables — only if you connect one, and only to retrieve your own data from that provider.

We do not sell your data, and we do not share it for advertising.

The crisis feature — what happens if you use it

If your mood check-ins indicate you may be in difficulty, the app shows a crisis line for your country. If you tap to dial it, an administrator and your coach are notified by email and text message, and the attempt is recorded with a timestamp.

You are told this on the screen at the time. It exists so that somebody knows to check on you. Where no verified line exists for your country we say so and point you to local emergency services rather than give you a number that may not connect.

How your data is protected

  • The site is served over HTTPS.
  • Your full name, phone number, postal address and height are encrypted at rest with AES-256-GCM. Your email address and country are stored in readable form because they are needed to sign you in and to select the right crisis line.
  • Passwords are stored as one-way hashes and cannot be recovered by anyone, including us.
  • Sessions use a single cookie (see below) and expire.

No system is perfectly secure, and we do not claim otherwise. If you believe your account has been accessed by someone else, contact us at the address above.

Cookies

One cookie, named ilogsess. It keeps you signed in, is marked Secure and HttpOnly, and is deleted when you sign out. There are no advertising, analytics or third-party cookies, so there is no consent banner to dismiss.

Children

Accounts for under-18s are supported with restrictions: they are excluded from the global leaderboard, and city is private by default. iLog.fit is not intended for children under 13, and we do not knowingly create accounts for them.

Keeping and deleting your data

Your logs, photos, scores, streak and lab results are kept while your account exists, because their value is the history.

If your coach's account is deleted, your data stays with you. Their branding and templates go; your logs, plans, photos, scores and lab results do not.

You can ask us to delete your account, and we will remove your personal information and the content you logged. Ask at the address above. Some records that exist for safety or audit reasons — such as a crisis escalation — may be retained where we are required to keep them.

Your choices

  • See and correct your details in your profile at any time.
  • Choose which coach sees which plan, and whether any coach sees your lab work.
  • Turn each leaderboard on or off, and control whether your bio and city are public.
  • Disconnect a wearable, or stop using the AI features, without losing anything you have already logged.
  • Ask for a copy of your data, or ask us to delete it.

Changes to this policy

If what we do with your data changes, this page changes with it and the date at the top is updated. Where a change materially affects how your health information is handled, we will tell you rather than rely on you noticing.

Questions, corrections, or a request about your own data: mike@peer.vision.