Privacy Policy
Last updated: 1 October 2026 — Version 1.1 · Lire en français
1. Who is responsible
Jimi is published by Arahmie SAS, 47 rue Vivienne, 75002 Paris, France (SIREN: 108 386 863), which acts as data controller under the EU General Data Protection Regulation (GDPR).
Contact for any privacy question or request: support@jimifit.com
2. Data we collect
Account data: email address, nickname, language, sign-in method (email, Google or Apple).
Profile and goals: age, gender (including a custom gender if you enter one), weight, height, target weight and pace, fitness goal and level, training frequency, place, type and duration, daily activity level, coaching preferences.
Health and wellness data (special-category data under Article 9 GDPR): body measurements (chest, waist, hips, arms, thighs), weight history, coaching notes which may describe injuries or physical limitations, and — only if you enable health sync — data from Apple Health or Health Connect: steps, active calories, heart rate, sleep, weight. This data is processed only with your explicit consent, given at sign-up and withdrawable at any time (disable sync, edit or clear your data, or delete your account).
Usage data: food journals (foods, meals, macro- and micronutrients), meal photos you choose to take, workout sessions and history, personal records, progress, badges and streaks, messages exchanged with the AI coach, voice recordings transcribed to text for voice logging.
Body progress photos: these are saved only inside the App's private storage on your phone. They are never sent to our servers or to any processor, no artificial intelligence looks at them, and we therefore have no access to them at all. They are gone if you delete them, if you delete your account, or if you uninstall the App — in that last case we cannot restore them, because we hold no copy. Only your phone's own backup (iCloud or Google), if you have enabled it, may hold a copy, in your own account.
Technical data: device tokens needed for push notifications, diagnostic and aggregated usage statistics via Firebase Analytics (screens viewed, onboarding progression, notification interactions).
We do not collect your location. The App shows no advertising and we never sell your data.
3. Why we process your data
- Providing the service (account, programs, tracking) — performance of the contract;
- Personalizing your programs, nutrition tracking and AI coach — your explicit consent for health data, performance of the contract for the rest;
- Managing your subscription and free trial — performance of the contract;
- Notifications and reminders — your consent, adjustable in the App and system settings;
- Audience measurement and App improvement — your consent;
- Security, fraud prevention and legal obligations — legitimate interest or legal obligation.
4. The AI coach
The conversational coach relies on Claude models provided by Anthropic. When you use the coach, the information needed to personalize its answers — your profile (goals, age, weight, measurements), coaching notes and conversation history — is transmitted to Anthropic through our secure server, which acts as an intermediary (your device never communicates directly with our AI providers). This data is used solely to generate the coach's answers, under Anthropic's commercial terms, which do not allow it to be used to train their models. No decision producing legal effects about you is made automatically.
Meal photo analysis instead relies on Google's Gemini model, to which our server sends the photo directly (Gemini API, United States). The photo is sent for the sole purpose of identifying the visible foods and estimating their quantities.
Body progress photos are sent to no artificial intelligence and to no processor: they never leave your phone (see section 2).
5. Who can access your data
Your data is accessible only to you and, strictly as needed, to our technical processors:
- Google Firebase (Google Ireland Ltd / Google LLC): database and meal photo hosting, authentication, push notifications, analytics, server functions. Hosting region: United States (us-central1);
- Anthropic (United States): generation of AI coach answers (see section 4);
- Google (United States): meal photo analysis by the Gemini model (see section 4);
- RevenueCat (United States): technical subscription management (user identifier and purchase status only — never your payment details);
- Apple / Google: App distribution, optional sign-in, payment processing (we never access your payment data), health sync if enabled.
Food searches query public nutrition databases (notably Open Food Facts): only search terms or barcodes are transmitted, never your identity. We do not sell or rent your data, and we never share it for advertising.
6. Transfers outside the EU
Some processors are located in the United States. These transfers are safeguarded by the European Commission's adequacy decision for companies certified under the Data Privacy Framework and/or by standard contractual clauses, supplemented where necessary by additional measures. You can obtain a copy of these safeguards by contacting us.
7. How long we keep your data
- Account, profile, health and usage data: for the life of your account. Deleting your account (available directly in the App) erases all your data from our active systems without delay, then from backups within 30 days at most;
- Meal photos: deleted together with the meal they belong to, and straight away if you cancel the analysis; those still attached to a logged meal are kept with your account and deleted with it. Body progress photos are not covered by this: they stay on your device and we keep nothing;
- Coach conversation history: while your account is active; you can clear it from the App;
- Analytics data: 14 months at most;
- Billing data tied to accounting and tax obligations: 10 years (held by the stores and RevenueCat).
When you delete your account, the subscription record held by RevenueCat is kept in pseudonymised form: it stays attached to an identifier that no longer maps to any person in our systems, and we attach neither your email nor your name to it. We keep it to meet our accounting obligations and to handle refunds and disputes; erasing it would in any case not remove the records Apple and Google keep on their side. This is pseudonymisation, not anonymity: RevenueCat attaches its own technical metadata, such as IP address, country and device. If you would still like that record erased, write to us and we can request it once your subscription has fully expired.
8. How we protect your data
Your data is encrypted in transit (TLS) and protected by strict access rules: each user can only access their own data, and our servers enforce this on every request. Sensitive access keys — notably the AI service key — are held server-side and never embedded in the App; the only keys present in the App are read-only tokens for public food databases, which contain no personal data. If a data breach were to create a high risk for your rights, we would inform you as required by law.
9. Your rights
You have the right to access, rectify, erase, restrict, port and object, the right to withdraw your consent at any time (without affecting past processing), and the right to define post-mortem directives. To exercise them:
- directly in the App: edit your profile, disable health sync, clear coach notes, delete your account (Settings);
- by email: support@jimifit.com — we answer within one month.
You may lodge a complaint with the CNIL (cnil.fr) or the supervisory authority of your country of residence.
10. Minors
The App is intended for users aged 16 and over. We do not knowingly collect data from children under 16; any such data brought to our attention will be deleted.
11. Changes
We may update this policy. In case of substantial change (new purpose, new recipient), you will be informed in the App and, where required by law, your consent will be collected again. The current version is always available from the App.