What this covers
This policy explains what Tora collects when you use the website at tora.fitness and the Tora iOS app, why we collect it, and what you can ask us to do with it. Tora is operated by Tora Fitness. If anything here is unclear, write to us through the contact page.
Information you give us
- Waitlist. Your first name, last name and email address, the date you joined, and the member number we assign you. We use it to hold your place, tell you when your trial opens, and nothing else.
- Contact form. Your name, email address, the sport you mention, the subject you choose and your message, so we can reply.
- The app. When you create an account you give us an email address and a password, or sign in through Apple or Google. Using the app then records the training, nutrition, body measurements, check-ins and coach conversations you enter, and any Apple Health data you choose to share. This is the whole point of the product, and it stays yours.
Information collected automatically
Our servers keep ordinary request logs, including your IP address, the page or endpoint requested, and the time. We use them to keep the service running, to limit abuse, and to debug problems. The website does not use advertising trackers or analytics cookies. It loads fonts from Google Fonts, which means Google receives your browser's request for those font files.
How we use it
- To run the waitlist, answer messages, and operate the app and its coach.
- To protect the service from abuse, such as limiting how many form submissions one network can send.
- To understand aggregate usage and cost. We look at totals, not individual conversations, for this.
We do not sell personal information, and we do not use it for advertising.
Who processes it
Tora runs on Google Cloud in the United States. Firebase handles sign-in, Cloud SQL stores your data, and Cloud Run serves the API. The coach and food-recognition features send the text or photo you provide to a model provider (currently Google) to produce a response; no provider is given your account identity, and API keys never leave our servers. Food-database lookups go to FatSecret and the USDA. Each provider sees only what it needs to answer that request.
How long we keep it
Waitlist and contact records are kept until the waitlist closes and the message is resolved, then for as long as we reasonably need them for records. App data is kept while your account exists. Deleting your account from the app's settings removes your data from our production database.
Your choices
- Ask us to remove you from the waitlist or delete a message you sent.
- Delete your account, and with it your data, from inside the app.
- Ask what we hold about you, or ask for a correction, through the contact page.
If you are in a region with specific privacy rights, such as the EU, UK or California, those rights apply and we will honour them.
Children
Tora is not directed at children under 16, and we do not knowingly collect their information.
Changes
When this policy changes we update the date at the top. Material changes to how we handle app data will also be announced inside the app.