Effective August 27, 2026
Privacy Policy
Panda Stretch values your privacy. This policy explains what data the app and its service providers collect, why it is used, and the choices available to you.
Website analytics
This website's optional analytics are disabled by default. When enabled on the production site and only after you choose Allow analytics, PostHog receives limited page and section categories, interactions with public movement examples and the demo video, and the placement of an App Store button you click, with a random identifier held only for that page visit. These are website interactions, not your app training or body records. We do not add account information, full page URLs, query strings, referrers, or input text to these events. We do not use session recording or unrestricted automatic activity capture.
You can turn analytics off using the website analytics controls. Your choice and the random identifier reset when the page reloads. Withdrawal stops future events but cannot recall requests already sent. The receiving infrastructure handles network IP addresses even though geographic enrichment is disabled. App Store clicks do not tell us whether you install or purchase the app.
1. Information we collect
Account information. When you use Sign in with Apple, we receive an account identifier and, if you choose to share them, your name and email address. We use this information to create and maintain your Panda Stretch account.
Profile information. You may provide optional profile details, including a nickname, gender, birth date or birth year, selected body model, and preferred app language. These details and your account identifier may be synchronized with the Panda Stretch server for account functionality and personalization. For subscription management and customer support, Panda Stretch also sends RevenueCat your account identifier and, when available, your email address, display name or nickname, and Panda Stretch user number.
Body records and custom routines. Body sensation records can include the time, sensation type, intensity, body areas, and activity method or context that you enter. These records are stored on your device and may synchronize through your personal iCloud account. Panda Stretch does not receive the records on its server unless you explicitly request an AI monthly report, as described below.
If you use the routine library, Panda Stretch may synchronize saved movement identifiers and custom routine content needed to provide and restore that feature, including a user-entered routine name, icon, selected movement identifiers, order, and duration.
Subscription and usage data. We process subscription status, purchase history, and limited product interaction events to provide paid features, understand whether core app flows work, and improve the app. PostHog events can include app version and build, locale, sign-in or access state, coarse count buckets, an anonymous paywall experiment arm, a coarse purchase-cancellation or failure reason, and the category of a fixed training selected, started, or completed from a closed list.
These analytics fields do not include raw error text, raw product or Offering identifiers, movement identifiers, body areas, user-entered routine names, or custom-routine content. After sign-in, analytics events may be associated with a pseudonymous Panda Stretch account identifier. Automatic screen and element capture, session replay, and advertising tracking are disabled. Panda Stretch does not use this data to track you across other companies’ apps or websites.
Feedback and diagnostic data. Crash and performance reports may include app, device, operating-system, and diagnostic information. If you submit feedback in the app, the submission may also include its category and text, your signed-in or pseudonymous identifier, a reply email that you enter or the Apple email saved for your account, device and app details, and recent in-app diagnostic logs. This information is used to investigate problems and respond to feedback.
2. Optional AI monthly reports
When you choose to generate an AI monthly report in Panda Stretch 1.4 or later, the app sends the following to a Panda Stretch server: a pseudonymous account ID, your app language, activity records for the selected month, and summary data for the selected and previous month. Earlier versions may also send the previous month’s record fields to the Panda Stretch server.
A record can include its time, sensation type (relaxation or strain), intensity, localized body areas, and activity method or context. Summaries can include record counts, average intensity, body-area distribution, and weekday or hour patterns.
For analysis, the Panda Stretch server sends DeepSeek the selected month’s record fields, summary data for the selected and previous month, and the requested language. The pseudonymous account ID is not included in the DeepSeek prompt. Neither request includes your name, email address, location, or HealthKit sensor samples.
The app asks for your explicit consent before this data flow begins. If this disclosure changes materially, the app requires consent to the current disclosure before another report can be requested. You can review the disclosure in Settings.
3. How we use information
We do not sell personal data.
- Authenticate users and maintain accounts
- Synchronize profiles and custom routines
- Provide body records, guided sessions, and app experiences
- Manage subscriptions and restore purchases
- Generate an AI monthly report only when requested
- Diagnose crashes, answer feedback, improve reliability, and prevent abuse
4. Data storage and security
Account, profile, routine, and service data may be stored on Panda Stretch infrastructure hosted by service providers. Data is encrypted in transit, and access is limited to what is needed to operate and support the service.
Body records stored through iCloud are kept in your private iCloud data. Their protection depends on your Apple account security settings and Apple’s configuration for the relevant data.
5. Service providers
- Apple for authentication, iCloud synchronization, App Store distribution, and payments
- Supabase to host Panda Stretch account, profile, routine, and AI-request backend services
- RevenueCat for subscription status, purchase history, and related subscriber attributes
- PostHog for limited, manually defined product analytics events
- Sentry for crash, performance, diagnostic, and in-app feedback processing
- DeepSeek for the optional AI analysis described above
6. Your choices and data deletion
Optional profile fields, custom routines, and AI reports are controlled by the features you choose to use. You can decline the AI disclosure and continue using Panda Stretch without generating an AI monthly report.
You can delete your account in app settings. Associated server-side account data is scheduled for deletion within 30 days, subject to limited retention required for security, legal compliance, transaction records, backups, or a service provider’s documented retention period. Data in your personal iCloud account is controlled through your Apple account and device settings.
7. Children’s privacy
Panda Stretch is not intended for children under 13. We do not knowingly collect personal information from children under 13.
8. Policy changes
We may update this policy. If a change materially affects an optional data flow that requires consent, the app will request consent to the updated disclosure before that flow is used again.
9. Contact us
For app issues, general feedback, privacy questions, or feature requests: