Privacy Policy
Last Updated: February 10, 2026
1. Introduction
FitCutter ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our browser extension and website services (collectively, the "Service").
By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use the Service.
2. Information We Collect
What we collect depends on whether you use FitCutter as a viewer or a creator.
2.1 Viewers (No Account Required)
If you use FitCutter as a viewer, we collect no personal data. All viewer data is stored locally in your browser:
- Skip Selections: Your choices about which exercises to skip on tagged videos
- Rest Time Preferences: Your custom rest duration settings
- Equipment Filters: Your available equipment selections
- Workout Schedule & Progress: Scheduled workout videos and tracked activity (daily, monthly, yearly breakdowns with category tracking)
This data never leaves your browser. It is not transmitted to our servers, shared with third parties, or accessible to anyone else. If you clear your browser data or uninstall the extension, this data is permanently deleted.
2.2 Creators (Account Required)
When you create a creator account, we collect:
- Google Account Information: Name, email address, and profile picture from your Google account (via Google Sign-In)
- YouTube Channel Metadata: Channel ID, channel custom ID, and channel name - collected via a one-time, read-only YouTube authorisation during registration. We do not access your video content, analytics, subscriber data, or any other YouTube data beyond basic channel identification.
- Workout Annotations: Rest zone timestamps, movement type labels, and equipment tags that you add to your videos through the extension
- Account Metadata: Subscription level, passkey, account creation date, and last update timestamp
2.3 Payment Information
All payments are processed by Paddle, our Merchant of Record. We do not collect, process, or store your credit card details, billing address, or other financial information. Paddle handles all payment data subject to their own privacy policy.
2.4 Session Data
When you sign in to the Creator Dashboard, your authentication token and basic profile information are stored in your browser's session storage (not cookies). This data is automatically cleared when you close your browser tab or sign out.
2.5 Automatically Collected Information
When you visit the FitCutter website, our servers may log:
- Log Data: IP address, browser type, operating system, access times, and referral URLs
- API Requests: Requests to our backend when saving or loading workout tags (creator accounts only)
3. How We Use Your Information
We use the information we collect for the following purposes:
- Provide the Service: To store and serve creator workout annotations so that viewers with the extension can personalise tagged videos
- Account Management: To create and manage creator accounts, verify YouTube channel ownership, and generate passkeys
- Channel Verification: To ensure only verified channel owners can tag their own videos by validating passkeys against channel ownership
- Payment Processing: To facilitate subscription payments and billing through Paddle
- Service Improvement: To analyse usage patterns, fix bugs, and develop new features
- Communication: To respond to support inquiries and send essential service-related announcements
- Security: To detect, prevent, and address technical issues, fraud, and abuse
- Legal Compliance: To comply with applicable laws, regulations, and legal processes
4. Data Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
4.1 Service Providers
We share information with third-party service providers who perform services on our behalf:
- Paddle: Merchant of Record for payment processing and subscription management. Paddle independently collects and processes payment data.
- Google Sign-In: Authentication services - we receive your name, email, and profile picture from your Google account
- YouTube API: Read-only channel identification during creator registration. We access only channel ID and channel name - not video content, analytics, or subscriber data.
- Cloud Hosting Providers: For data storage and server infrastructure
These service providers are contractually obligated to use your information only as necessary to provide services to us and are required to protect your information.
4.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., court order or subpoena).
4.3 Business Transfers
If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will provide notice before your information becomes subject to a different privacy policy.
4.4 With Your Consent
We may share your information with third parties when you give us explicit consent to do so.
5. Data Retention
We retain your information for as long as necessary to provide the Service and fulfil the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
- Creator Account Data: Retained while your account is active. When you cancel your subscription, your tags are paused (hidden from viewers) but your account data and tags are retained so you can restore them by re-subscribing
- Workout Annotations: Retained as long as you maintain your creator account. Tags are paused when your subscription lapses but are not deleted
- Server Logs: Typically retained for 90 days unless needed for security or legal purposes
- Viewer Local Data: Remains on your device until you clear your browser data or uninstall the extension. We have no access to this data
- Session Storage: Automatically cleared when you close your browser tab or sign out
6. Your Privacy Rights
Depending on your location, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to certain exceptions)
- Data Portability: Request your data in a machine-readable format
- Withdraw Consent: Withdraw consent for data processing where we rely on consent
- Opt-Out: Opt-out of marketing communications at any time
To exercise these rights, please contact us at [email protected]. We will respond to your request within 30 days.
7. Security
We implement appropriate technical and organizational security measures to protect your information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using SSL/TLS
- Encryption of sensitive data at rest
- Regular security assessments and updates
- Access controls and authentication requirements
- Secure payment processing through PCI-compliant providers (Paddle)
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee its absolute security.
8. Cookies and Browser Storage
FitCutter primarily uses browser session storage (not cookies) for authentication on the Creator Dashboard. Session storage is automatically cleared when you close the browser tab.
The Chrome extension uses the browser's local storage API to save viewer preferences and workout schedules. This data stays on your device and is not transmitted anywhere.
The FitCutter website may use minimal cookies or local storage for essential functionality. We do not use third-party advertising or tracking cookies.
9. Third-Party Services
Our Service integrates with and links to third-party services that have their own privacy policies:
- YouTube: Subject to Google's Privacy Policy
- Google Sign-In: Subject to Google's Privacy Policy
- Paddle: Subject to Paddle's Privacy Policy
We are not responsible for the privacy practices of these third-party services. We encourage you to read their privacy policies.
10. Children's Privacy
Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will delete such information from our systems.
11. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that are different from the laws of your country.
When we transfer your information internationally, we take appropriate safeguards to ensure your information remains protected in accordance with this Privacy Policy.
12. California Privacy Rights (CCPA)
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected, used, shared, or sold
- Right to delete personal information held by businesses
- Right to opt-out of sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising CCPA rights
To exercise these rights, please contact us at [email protected].
13. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR), including the rights listed in Section 6 above.
Our legal basis for processing your information includes:
- Consent: You have given explicit consent for processing
- Contract: Processing is necessary to fulfill our contract with you
- Legal Obligation: Processing is required by law
- Legitimate Interests: Processing is in our legitimate business interests
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
We encourage you to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
15. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
Email: [email protected]