Privacy Policy
Last updated: 17 September 2026
This describes what TrainSmarter collects, why, and who sees it. TrainSmarter is operated by Nischal Mohan (see Contact Us).
1. What we collect
- Account details: name, phone number, and password (stored as a salted hash — we never see or store your plain-text password).
- Health & fitness data you or your trainer enter: workout logs, meal and nutrition logs, body measurements (weight, height, sex, date of birth), and macro goals.
- Trainer–client relationship data: who is attached to whom, and when, so the app can show a trainer their clients and a client their trainer.
- Payment records: the amount, plan, timestamp and payment reference for anything you buy. We do not collect or store your card, bank or UPI app credentials — a payment is either sent to a UPI ID you choose in your own payment app, or processed by a payment gateway partner, which handles the sensitive part directly.
- Basic technical data: standard server logs (e.g. request times, error logs) generated by running the app. We do not run third-party advertising or analytics trackers.
2. Why we collect it
- To provide the Service: showing you your own data, and — if you’re a client — showing your attached trainer what you’ve logged.
- To operate the account: logging in, password resets, and telling paid access apart from free.
- To confirm and reconcile payments, and to calculate referral rewards.
- To keep the Service secure and investigate abuse.
3. Who sees your data
- Your trainer sees the data you log, for as long as you’re attached to them — that visibility is the point of the product, and a client consents to a specific trainer seeing it at the moment they accept that trainer.
- We (TrainSmarter) can see account and usage data to operate and support the Service. We do not sell your data to anyone.
- Infrastructure providers that host the app and database on our behalf (e.g. our hosting platform and database provider) process data as part of running the Service, under their own security commitments to us.
- A payment gateway partner (such as Razorpay, once enabled), if you pay through one, processes your payment under their own privacy policy — we only receive confirmation that payment succeeded, plus a reference id.
- We may disclose data if required to by law.
4. How long we keep it
We keep account and activity data for as long as the account is active, and afterwards for as long as reasonably needed for record-keeping (including payment and financial records, which we keep for audit purposes). You can ask us to delete your account and associated personal data — see below.
5. Security
Passwords are hashed, not stored in plain text, and a password change invalidates other active sessions on your account. No system is perfectly secure, and we can’t guarantee absolute protection against every possible attack, but we take reasonable, standard precautions to protect your data.
6. Your choices
- You can view and edit your profile details from within the app.
- You can ask us to export or delete your data by contacting us (see below).
- A client can leave a trainer relationship, which stops that trainer seeing new activity you log afterwards.
7. Age
TrainSmarter is intended for users aged 18 and over. We do not knowingly collect data from anyone under 18 — a contract with a minor is not valid under Indian law, and the health data we handle needs an account holder who can consent to it themselves.
8. Changes to this policy
We may update this policy as the Service changes — for example, when a payment gateway or an email-based notification system is added. We’ll update the date at the top when we do.
9. Contact
Questions, or a request to access or delete your data: Contact Us.