Attendance, and little else
When you arrived, when you left, which gym, and how the check-in happened. Your name, and a photo if you add one. No weight, no height, no body measurement of any kind — there is nowhere in the database to put one.
Every line below was written against the database, one table at a time. Where the answer is uncomfortable, it is still the answer.
Last updated 5 September 2026 · applies to MyGymDay and MyGymDay Partner
When you arrived, when you left, which gym, and how the check-in happened. Your name, and a photo if you add one. No weight, no height, no body measurement of any kind — there is nowhere in the database to put one.
Name, photo, membership status, last seen, visits and streak at their gym. Never your email address, your date of birth or your gender. Your written plan and your logged workouts are yours alone.
No analytics, no crash reporter, no advertising network, no tracking pixel, no marketing tool. There is no push infrastructure and no device token. We do not sell data, because there is no arrangement under which we could.
Settings, then Delete account, then hold the button. It runs immediately and it cannot be undone.
How deletion works
MyGymDay is two apps over one database. Members use MyGymDay to record that they turned up; gym owners and their staff use MyGymDay Partner to run the room. Both are described here together, because a member's check-in and a gym's roster are the same row read from two sides.
Your account is an email address, and either a password you choose or a Google account you sign in with. If you use Google, we receive your name, your email address and your profile picture, and nothing else — the app requests no additional access, so your mail, contacts, calendar and files are never in reach.
Your profile holds your name, and optionally a phone number, a photo, a date of birth and a gender. The last two are collected on a single screen you are free to skip, and that screen says so in as many words. There is no field anywhere in MyGymDay for your weight, your height, any body measurement, your heart rate or any other health figure. Not "we choose not to ask" — there is no column to put one in.
Each visit is one row: which gym, when you checked in, when you checked out, how the check-in happened (a scan of the gym's poster, the front desk, or your own phone noticing you had arrived), a confidence marker, and the latitude and longitude your phone reported at the moment you scanned. A check-in done for you at the desk carries no coordinate at all, because your phone is not involved in it.
Alongside that: the weekly plan you write and the workouts you log; the gyms you have connected to and your membership status at each; and, if your gym records money in the console, the amount, the date, whether it is settled or outstanding, and which member of staff wrote it down. MyGymDay takes no payment and holds no card details — those figures are your gym's own bookkeeping, typed in by hand.
On the partner side we hold what a gym has to publish to be found: its name, address, opening hours, capacity, photos, currency, timezone, the coordinate the owner stood on to fix the gym's position, and the radius around it. And if you write to us, we hold what you wrote and the address you wrote from.
Android and iOS will ask you for each of these separately, in the app, at the moment it first matters. You can refuse any of them; what you lose is described alongside each one.
Two jobs: showing you gyms near you, and confirming you are actually standing in the gym whose code you just scanned. Without it you can still be checked in at the desk.
This is the one that ends a session you forgot about. Your phone compares its own position against your gym's point and radius and closes the visit when you leave, so your logged duration is the time you were there rather than the time until you remembered. Both iOS and Android ask for it as a separate, explicit choice on top of the permission above, and you can say no: check-out then falls back to the app noticing on next open, and to a server sweep that closes sessions nobody ever ended. Neither the app nor MyGymDay keeps a trail of where you went — the comparison happens on your phone, and the only thing written down is that the visit finished.
Reading the gym's poster code. The camera is open on one screen, it decodes one string, and no image is stored or transmitted at any point.
One notice, ever: your phone telling you it closed a session you left open, with the gym's name and the minutes logged. It is silent, it is raised by your own device, and the check-out happens whether you allow it or not. There is no marketing notification, no streak reminder and no server-sent push in MyGymDay at all — the product collects no device token, so there is nothing for a push to travel to.
In the member app, choosing a profile picture. In the partner app, choosing your gym's logo, cover photo and gallery. Both open the system picker, which hands over the single image you select and nothing else.
An owner stands inside their own gym during setup so the app can record that exact point. The partner app never asks for background location and never watches an owner's position afterwards.
Nothing in either app records audio, video or your screen There is no microphone feature, no recording feature and no screen capture in MyGymDay or MyGymDay Partner. The camera exists to decode one string from a poster.
This is the question worth asking of any app a gym hands you, so here is the answer at the level of the columns themselves.
On the roster screen, your gym's staff see your name, your photo, whether your membership is active, when you were last seen, and the date you connected. If a manager opens your card, they additionally see your phone number, your plan name, your membership start and end dates, whether your payment is settled, your total visits at their gym, your current streak, and a consistency percentage.
Not on either screen, at any permission level: your email address, your date of birth, your gender. The screen that collects the last two promises they are only ever visible to you, and the database rules behind it are the reason that promise holds — your profile row can be read by exactly one account, yours.
Your gym's staff can read the visit rows belonging to their own gym, and a visit row includes the coordinate your phone reported when you scanned. So the honest statement is not that location merely "verifies" a check-in and is thrown away: the point you scanned from is stored on the visit and your gym can see it. It is one coordinate per check-in, taken at the door of the gym you were walking into, and nothing between visits is ever recorded. If you would rather not have even that, ask the desk to check you in — a manual check-in sends only who and where, never a position.
One number is not limited to your gym The consistency percentage counts the distinct days you checked in anywhere over the past four weeks, measured against the number of non-rest days in your own weekly plan. It is capped at 100 and it is blank if you have not written a plan. So a gym reading it can be nudged by a visit you made somewhere else — but it reveals no other gym's name, no date and no duration, only a single figure shaped mostly by the plan you set yourself.
Everything else is yours alone. The weekly plan you write and the workouts you log are readable by one account and no other, with no staff exception anywhere in the rules. And other members see none of this: how busy a gym is arrives as a count, never as a list of who is inside.
Supabase hosts the database, the file storage and the handful of small server functions MyGymDay runs. Google is involved only if you choose to sign in with Google. Google Play distributes the apps. Cloudflare touches this website alone, where it runs the check that tells a person from a script on the job application form. Whichever host serves these pages sees the request log every web server keeps, and nothing beyond it. That is the entire list.
There is no analytics package in either app, no crash reporter, no advertising network, no tracking pixel and no marketing or attribution tool — a fact you can check against the dependency list rather than take on trust. We do not sell your data and we do not share it with advertisers, because there is no mechanism in the product by which we could. Beyond your own gym seeing the columns listed above, your information leaves MyGymDay only where the law compels it.
Your profile picture is stored in a bucket that serves files to anyone who has the file's address. That is deliberate and it is how your photo appears next to your name in your gym's member list without a signed request for every avatar in the room. The address contains a random account identifier and a timestamp, it is not listed anywhere and it is not searchable — but treat your profile picture as public rather than private, and choose it accordingly. Gym photos work the same way, for the same reason: people compare gyms before they join one.
Writing is a different matter. Only your own account can add, replace or remove a file in your own folder; nobody else can overwrite your picture, including your gym.
We keep your information for as long as your account exists, and then we do not. Deleting your account runs immediately, removes your profile, your photo files, every visit, every logged workout, your plan, your gym connections and memberships, your notifications, the payment rows recorded against you and any support ticket you raised — and it cannot be undone. Signing in again afterwards starts a genuinely new account with nothing carried over.
Leaving a gym is a smaller thing and does not touch your account: you disconnect, your visits stay in your own history, and the gym stops seeing you on its roster.
The one route that is not a button is a partner account, which has no in-app deletion yet and is handled as a written request. Both paths, and exactly what survives each of them, are set out on the deletion page.
Deletion is immediate and irreversible There is no grace period, no recycle bin and no way for us to restore an account afterwards — the rows are gone, not flagged. Read how deletion works before you use it.
The careers page is the one place on this site where you hand us something without having an account, so it gets its own section. Applying does not create a MyGymDay account, nothing you write in the form appears in either app, and no gym ever sees any part of it.
What the form collects is what it shows you as you fill it in: your name, email address, phone number and city; where you are in your education or your work, which is why it asks about a college, a course, a year, a qualification or previous jobs; the languages you speak and how comfortable you are in English; which parts of the work interest you and anything you have done like them before; how many hours a week you have and when you could start; and your resume as a PDF, DOC or DOCX of up to 5 MB. Every one of those is a question a hiring decision actually turns on, and there is nothing in the form that a decision would not use.
Two things are recorded that you do not type. The first is a one-way hash of your IP address: the address itself is never written down, and the hash is mixed with a secret that exists only on the server, so it cannot be turned back into an address or matched against a list of them. The second is your browser's user-agent string. Both are there to stop one script filing a thousand applications, and neither is used to work out anything else about you. The check that tells a person from a script is Cloudflare Turnstile, which runs on the careers page and nowhere else on this site.
While you are filling the form in, your answers sit in your own browser so that you can close the tab and come back to it, and they are cleared from it the moment the application is filed. On our side the answers are written first and the resume goes straight to storage a moment later, which means an application abandoned between those two steps exists for a short while as an unfinished row. Those delete themselves, within about an hour, file included.
A filed application can be read by a MyGymDay administrator signed in to the internal console, and by nobody else — the database declines the request rather than trusting the screen, so that is enforced rather than promised. Your resume goes to a private bucket, not to the kind that serves a file to anyone holding its address described further up this page; opening it takes an administrator's session and produces a link that stops working after a minute. Your email address is used to reply to you about the application and for nothing else — there is no mailing list here to be added to.
Twelve months, or sooner if you ask We keep an application for twelve months and then delete it, resume included. Unlike deleting an account, that clear-out is done by a person rather than by a timer, so treat it as the practice we hold to rather than a promise about a particular day. Asking is the quick route: write to [email protected] and we will remove yours. There is nothing to unpick, because an application is not attached to anything else.
Like the rest of this page, the paragraphs above were written against the table the form writes to, and they describe what the software does today rather than what we might like it to do. They are a statement of practice and not legal advice — where the hiring law where you live gives you more than this describes, that law wins.
MyGymDay is built for people who train at a gym and for the businesses that run them, and it is not directed at children. We do not knowingly hold an account for anyone under 16. If you believe a child has one, write to us and we will remove it.
You can refuse any permission and keep using the app with the consequences described above. You can skip the optional profile fields, or clear them later. You can leave a gym and its staff stop seeing you. You can ask us what we hold about you, and you can erase the whole account yourself without asking anybody. If you would rather have a copy of your data than delete it, write to us and we will put one together.
When this policy changes the date at the top changes with it, and the change is described here rather than absorbed silently. If a change means MyGymDay collects something new or shares it somewhere new, the app will say so before it happens.
Write to [email protected] — the same address the apps use, read by the people who build MyGymDay. We usually reply within a couple of days. The support page lists what to include so the first reply is a useful one.