Notch — Last updated August 8, 2026
Notch ("the App") is a gym tracking application developed by Sinan Güleçyüz (sinangulecyuz@gmail.com). This Privacy Policy explains what information we collect, how we use it, and your rights regarding that information. By using Notch, you agree to the practices described here.
We collect information you provide directly, including your email address, display name, date of birth, body weight, unit preferences, and training goal when you create an account. You may also optionally tell us your gender; this field can be left blank and you can use the App without providing it. We also collect workout data you log in the App — exercises, sets, reps, weights, and session timestamps. We do not collect payment information.
Notch uses Supabase for user authentication and data storage. Your account credentials are managed by Supabase Auth; passwords are never stored in plaintext. Workout data, preferences, and session history are stored in a Supabase Postgres database hosted in the EU (Ireland region, eu-west-1). Supabase's security practices and infrastructure are described at supabase.com/security.
The AI Coach feature sends relevant workout context — such as exercise history, current session data, and any messages you type — to the OpenAI API in order to generate coaching responses. This data is transmitted over HTTPS and is subject to OpenAI's API data usage policies. We do not send personally identifiable information such as your name or email to OpenAI. Conversation history is stored in your Supabase account so you can review it later.
We use PostHog for product analytics to understand how users interact with the app — for example, which features are used and how often — so we can improve Notch. These analytics events are linked to your account through an internal identifier (your Supabase user ID), so we can understand usage on a per-account basis. We do not send personally identifiable information such as your name or email to PostHog. PostHog is hosted in the EU (eu.i.posthog.com).
We use Sentry to capture crashes and errors so we can diagnose and fix problems in the App. Sentry is hosted in the EU. We do not send your name, email address, or IP address to Sentry (the SDK's "send default PII" option is disabled), and errors are associated only with the same internal account identifier described above. Console log content is explicitly excluded from what we send to Sentry, so message content such as your AI Coach conversations is not captured in error reports.
We use your information solely to operate and improve Notch: to authenticate you, to store and display your workout history, to generate personalised AI Coach responses, and to maintain your preferences. We do not sell, rent, or share your personal data with third parties for marketing purposes.
Your data is retained for as long as your account is active. Deleting your account from the Settings screen in the app instantly and permanently removes all of your data — workouts, preferences, AI Coach conversations, and account details — from Notch's own database. The same deletion also erases the records our service providers hold: your product analytics profile and event history in PostHog (see Section 5) are erased shortly after deletion (PostHog processes erasure requests asynchronously), and your subscriber record in RevenueCat, our subscription and payment processor, is erased as well — note that deleting your account does not cancel an active Apple subscription, which is managed through your Apple ID. Error reports in Sentry, our error-tracking tool, are linked only to an internal account identifier (never your name or email) and are automatically purged within Sentry's retention window of at most 90 days.
We take reasonable technical measures to protect your data, including encrypted connections (TLS), row-level security policies in Supabase, and scoped API keys. No method of transmission over the internet is 100% secure; we cannot guarantee absolute security.
Notch is not directed at children under the age of 13. During setup we ask for your date of birth and use it to calculate your age: if you are under 13, you cannot complete setup or use the App. We use your date of birth to enforce this minimum age and to tailor your coaching. We do not knowingly retain personal data from children under 13. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date above. Continued use of the App after changes are posted constitutes your acceptance of the revised policy.
If you have questions about this Privacy Policy or how your data is handled, please contact Sinan Güleçyüz at sinangulecyuz@gmail.com.