Data Security

Enterprise Grade Protection FitHealth Wellness Solutions

We take health data security seriously. FitnessTracker AI is built on a foundation of zero-trust architecture and world-class cloud security.

1. Infrastructure Security

Our platform resides within the Google Cloud Platform (GCP) ecosystem. We leverage GCP's advanced firewall, intrusion detection, and DDoS protection systems. All servers are hosted in secure, ISO-certified data centers in India.

2. Encryption Standards

  • Data In Transit: All communication between your device and our servers is encrypted using TLS 1.2+ (HTTPS).
  • Data At Rest: Sensitive health logs and database records are encrypted using AES-256 standard encryption.

3. Access Control

We use Supabase Row Level Security (RLS) to ensure that your health data is only accessible by you. No other user can view your health logs, meals, or profile. Internal access by our team is strictly audited and limited to authorized engineers.

4. AI Privacy

Images uploaded for AI scanning are used strictly for nutritional analysis by Google Gemini. We do not sell your personal images or health data to third-party advertisers. Your data is used only to improve your personal fitness insights.

5. Continuous Monitoring

Our security team performs regular vulnerability assessments and automated security scans to protect against emerging threats. We maintain strict compliance with Indian data protection laws.

6. Secure Billing

All "Pro Plan" payments are processed via multi-layered secure payment gateways. We do not store your full credit card or bank details on our internal servers.