Gauge ("the Service") is a training intelligence platform that helps athletes track training load, monitor recovery, and make informed decisions about their training. This policy explains what data Gauge collects, why, and how it is protected.
Gauge is built by That Data Person Limited, registered in England and Wales (company number 13632844).
1. Data we collect
Gauge collects data that you provide directly and data received from connected third-party services.
| Category | Data | Source |
|---|---|---|
| Account | Email address, password (hashed) | You, at registration |
| Profile | Gender, birth date, height, weight, heart rate zones, training preferences | You or synced from Garmin |
| Workouts | Activity type, duration, date, heart rate samples, GPS tracks, laps, exercise sets (name, reps, weight), power data, pace, cadence | Garmin, manual import |
| Daily health | HRV, resting heart rate, sleep score, sleep stages, body battery, stress, respiration rate, steps | Garmin |
| Body composition | Weight, body fat percentage, muscle mass | Withings |
| Planned workouts | Scheduled sessions from training calendars | Humango, manual entry |
| Computed metrics | TRIMP, training load, ATL, CTL, TSB, ACWR, monotony, strain, readiness, injury risk, VO2max trends, estimated 1RM, muscle fatigue scores | Calculated by Gauge |
2. How we use your data
Your data is used solely to provide the Service:
- Training analysis — calculating load, fatigue, fitness trends, and readiness
- Workout recommendations — suggesting what to train based on your current state
- Progress tracking — personal records, exercise progression, route performance
- Recovery monitoring — sleep, HRV, and body composition trends
Gauge does not:
- Sell your data to third parties
- Use your data for advertising
- Share your data with other users (unless you explicitly enable sharing in future features)
- Use your data to train machine learning models
3. Third-party services
Gauge connects to the following services to import your fitness data:
Garmin — Gauge accesses your Garmin Connect data via the Garmin Health API. This includes activities, daily summaries, sleep, HRV, body battery, and GPS data. Gauge requests only the data categories listed in Section 1. You can disconnect Garmin at any time in Settings, which immediately stops all future data sync. Upon disconnection, Gauge deletes your Garmin OAuth tokens. Previously synced workout and health data is retained in your account unless you request its deletion. See Garmin's privacy policy.
Withings — Gauge connects to Withings via OAuth2 to sync body composition data (weight, body fat, muscle mass). You can disconnect at any time. See Withings' privacy policy.
Humango — Gauge reads your Humango training calendar via iCal feed to import planned workouts. No authentication credentials for Humango are stored by Gauge.
4. Data storage and security
- Data is stored in encrypted databases on secured infrastructure
- All connections to Gauge use HTTPS (TLS 1.2+)
- Third-party OAuth tokens are encrypted at rest
- Passwords are hashed using industry-standard algorithms and never stored in plaintext
- Access to production systems is restricted to authorised personnel
5. Data retention
Your data is retained for as long as your account is active. If you delete your account, all personal data — including workout history, health metrics, and connected service tokens — is permanently deleted within 30 days.
6. Your rights
You have the right to:
- Access — request a copy of all data Gauge holds about you
- Export — download your data in a standard, machine-readable format
- Correct — update or correct inaccurate personal data
- Delete — request deletion of your account and all associated data
- Disconnect — revoke access to any connected third-party service at any time
- Withdraw consent — stop using the Service at any time; your data will be retained only as described in Section 5
To exercise any of these rights, contact privacy@gauge.fit.
7. Cookies and tracking
Gauge uses only essential cookies required for authentication and session management. Gauge does not use advertising cookies, tracking pixels, or third-party analytics services.
8. Children
Gauge is not intended for use by anyone under the age of 16. We do not knowingly collect personal data from children.
9. Changes to this policy
If this policy changes in a material way, we will notify you via email or in-app notification before the changes take effect. The "last updated" date at the top of this page reflects the most recent revision.
10. Contact
For privacy questions or data requests:
That Data Person Limited
86-90 Paul Street, London, EC2A 4NE
Company number: 13632844