Privacy Policy
Last Updated: March 17, 2026
1. Scope
This Privacy Policy explains how Rally (“Rally,” “we,” “our,” or “us”) collects, uses, shares, and protects information when you use the Rally mobile application, visit the Rally website, join our waitlist, or contact us for support, feedback, or privacy requests.
This Policy does not replace the privacy policies of third-party services such as the Apple App Store, Google Play, or other external platforms you may use together with Rally.
2. Information We Collect
Information you provide directly
- Waitlist and contact information: email address and signup source when you join the waitlist or contact us.
- Account information: name, username, email address, phone number, date of birth, language, and login credentials or authentication details.
- Profile information: profile photo or avatar, bio, goals, workout preferences, and related account settings.
- Fitness and activity information: workout logs, exercise history, schedules, streaks, challenges, leaderboard data, personal records, and related training inputs you choose to enter.
- Social content: posts, comments, reactions, messages, invitations, and other content you create or share in Rally.
- Support communications: information you send us when requesting help, reporting a bug, or exercising privacy rights.
- Subscription information: subscription tier, purchase status, renewal status, and related transaction metadata. Purchases are processed by Apple or Google, so we do not receive your full payment card number.
Information collected automatically
- Device and technical information: device type, operating system, app version, browser type, language, time zone, and device identifiers reasonably necessary to operate the service.
- Usage information: app activity, pages or screens viewed, session timing, features used, and interactions with Rally content and features.
- Log and security information: IP address or approximate network information, request metadata, rate-limit events, and other server-side logs used to protect the website and app.
- Performance information: crash reports, diagnostics, and error logs used to troubleshoot and improve reliability.
- Notification data: push notification token and related preference settings, if you choose to enable notifications.
Information from third parties
- Subscription and purchase confirmations: from RevenueCat, Apple, and Google to validate subscriptions and manage entitlements.
- Invitations and social connections: limited information another user provides when inviting you or interacting with you in Rally.
3. How We Use Information
- Provide, operate, and maintain the Rally website, waitlist, and mobile app.
- Create and manage user accounts, profiles, subscriptions, and leaderboard participation.
- Store, display, and sync workout history, streaks, challenges, and social activity.
- Enable community features such as friends, groups, challenges, rankings, and messaging.
- Send service-related messages, launch updates, support replies, and push notifications you choose to receive.
- Personalize your experience, including profile settings, visibility controls, and relevant in-app features.
- Monitor usage, debug issues, improve performance, and develop new features.
- Prevent abuse, fraud, spam, ranking manipulation, and other harmful activity.
- Enforce our Terms of Service and other policies.
- Comply with legal, regulatory, accounting, and security obligations.
We do not sell your personal information. We also do not use workout or fitness data for third-party advertising.
4. How We Share Information
We may share information in the following circumstances:
- Service providers and processors: with vendors that help us run Rally, such as Supabase for hosting, authentication, and database infrastructure; Google Sheets / Google APIs for website waitlist submissions; RevenueCat for subscription management and purchase validation; and Apple App Store and Google Play for billing, subscription processing, and related storefront operations.
- Other users: profile details, workouts, streaks, leaderboard placement, posts, comments, and similar social activity may be visible to other users depending on your settings and the features you use.
- Legal and safety reasons: when reasonably necessary to comply with law, respond to lawful requests, protect users, investigate fraud or abuse, or enforce our rights.
- Business transfers: in connection with a merger, acquisition, financing, reorganization, asset sale, or similar transaction.
We require service providers to process information on our behalf only as needed to provide their services to us.
5. Social and Visibility Features
Rally is a social fitness product. Some information you choose to share, such as your profile, workout summaries, streaks, challenge participation, leaderboard position, posts, comments, and similar activity, may be visible to other Rally users.
Your visibility settings help determine what other users can see, but anything you choose to share socially may be viewed, copied, or re-shared by people who can access it.
6. Device Permissions
Depending on the features you use, Rally may request permission to access certain device capabilities, such as:
- Notifications, to send workout reminders, leaderboard updates, or account messages.
- Camera or photo library, if you choose to upload a profile image or other user content.
- Other device permissions, only when needed for a feature you choose to use.
You can manage app permissions in your device settings. If a permission is denied, some features may not function as intended.
7. Data Retention
We retain information for as long as reasonably necessary for the purposes described in this Policy, including to provide the service, maintain records, resolve disputes, and comply with legal obligations.
In general:
- waitlist information is kept until launch communications are sent, you ask us to delete it, or it is no longer needed;
- account and profile information is kept while your account remains active;
- social, workout, and subscription records may be retained as needed to operate the service and maintain account history;
- when you delete your account, we begin deleting or de-identifying personal information, subject to limited retention for backups, fraud prevention, legal compliance, or dispute resolution; and
- backup copies may be retained for up to 90 days for disaster recovery and security purposes.
8. International Transfers
Rally and our service providers may process information in countries other than the one where you live. Those countries may have different data protection laws.
When required, we rely on appropriate safeguards for cross-border transfers and limit access to information to what is reasonably necessary for the purposes described in this Policy.
9. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect personal information, including encryption in transit, access controls, authentication protections, rate limiting, and backup procedures.
No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
10. Your Choices and Rights
Depending on where you live and how you use Rally, you may have the right to:
- access the personal information we hold about you;
- correct or update inaccurate information;
- request deletion of your information;
- request a copy of certain information in a portable format;
- object to or restrict certain processing;
- withdraw consent where processing is based on consent; and
- opt out of marketing communications.
You may also:
- update profile and visibility settings inside the app;
- disable push notifications from your device settings;
- use unsubscribe links in marketing emails, where applicable; and
- request waitlist removal or account deletion by contacting us.
To exercise privacy rights, contact us at francobales3@gmail.com.
11. Children's Privacy
Rally is not intended for children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us and we will investigate and delete the information where appropriate.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the “Last Updated” date above and, where required, provide additional notice through the website, the app, or other appropriate channels.
13. Contact Us
For privacy questions or to exercise your rights: francobales3@gmail.com