← Back to Spartan

Spartan Privacy Policy

Last updated: 2025-11-06

This Privacy Policy explains how Spartan ("Spartan," "we," "us," or "our") collects, uses, and shares information about you when you use our iOS application and related services (the "Service").

Owner/Operator: Yiming Bai (operating Spartan)

Contact: support@thespartan.app

Governing Law: Texas, USA (venue: Collin County, Texas)

Spartan is intended for users aged 13 and over. If you are under 13, do not use the Service. If you are under the age of majority in your jurisdiction, you must have a parent or legal guardian's consent to use the Service.

Information We Collect

We collect the following categories of information:

1) Information you provide directly

2) Information we collect automatically

3) Information from third parties and integrations

Payments: Spartan does not process payments or collect payment card information at this time.

We do not request access to HealthKit, location services, or contacts. The Service is iOS-only at this time.

How We Use Information

We use your information to:

Device Permissions and Background Activity

Legal Bases for Processing (EU/UK users)

If you are in the EU/UK, we process personal data under the following legal bases:

How We Share Information

We do not sell your personal information and we do not share it for cross-context behavioral advertising.

We may share information as follows:

Firebase Data Architecture & Access Controls

Spartan is hosted on Google Firebase (Cloud Firestore, Firebase Storage, and Cloud Functions). We enforce least-privilege access through Firebase Security Rules that require authentication (request.auth != null) for all user data. Key controls include:

We periodically review and update these rules to address new features and minimize the amount of data each role can access.

International Data Transfers

We store and process data primarily in the United States (e.g., on Google Cloud/Firebase). If you are outside the U.S., your data may be transferred to and processed in the U.S. Where required, we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses, including those provided by our processors (e.g., Google for Firebase).

Data Retention

We retain your information for as long as your account is active or as needed to provide the Service and for legitimate business purposes (e.g., security, backups, legal compliance). At this time, Spartan does not maintain a fixed deletion schedule for backups. If you request deletion of your account, we will delete or de-identify your personal information within a reasonable period, subject to retaining limited data as required by law or for legitimate interests such as security and fraud prevention.

Your Rights and Choices

We will respond to verified requests consistent with applicable law. We may need to verify your identity before fulfilling requests.

Security

We use reasonable administrative, technical, and physical safeguards to protect personal information, including encryption in transit (TLS) and encryption at rest by our cloud providers (e.g., Firebase), and role-based access controls. No method of transmission or storage is 100% secure.

Direct message content is stored in Firebase without end-to-end encryption, so it may be reviewed by authorized personnel when investigating abuse, security incidents, or legal requests.

Not a HIPAA Covered Entity; No Medical or Emergency Service: Spartan is not a medical provider and is not a "covered entity" or "business associate" under HIPAA. Do not use the Service for medical or emergency communications. If you have a medical emergency, call your local emergency number (e.g., 911 in the U.S.).

Nutrition/Content Accuracy: Nutrition databases and third-party content may contain inaccuracies or be incomplete or outdated. Use your judgment and consult professionals where appropriate.

Children's Privacy

The Service is not directed to children under 13 and we do not knowingly collect personal information from children under 13. If we learn we have collected such information, we will delete it.

Changes to This Policy

We may update this Policy from time to time. If we make material changes, we will update the "Last updated" date and provide additional notice as appropriate (e.g., in-app notice). Your continued use of the Service after an update indicates your acceptance of the revised Policy.

Contact Us

If you have questions or requests regarding this Policy or your data, contact us at: