Fitness Band – Health Tracker Privacy Policy

Last Updated: September 26, 2026

This Privacy Policy explains how Fitness Band – Health Tracker (“the App”, “we”, “us”, or “our”) collects, uses, stores, and discloses your personal information and health and fitness data.

Introduction

Fitness Band – Health Tracker is an app designed to help you sync, view, and manage your health and fitness information.

The App integrates with the Google Health API to access authorized health and fitness information, including activity, heart rate, weight, height, sleep, hydration, measurement settings, and age.

On Android devices, the App also supports Health Connect to write selected fitness data, including DistanceRecord, HeartRateRecord, and StepsRecord, to Health Connect when you grant the required permissions.

We only access health and fitness data after you grant the required permissions. The specific information accessed depends on the permissions you authorize and the features you choose to use.

What Information We Collect

Google Health Data

When you connect your Google Health account, Fitness Band – Health Tracker may access the following categories of health and fitness data that you authorize:

  • Activity and fitness data: steps and distance.
  • Health metrics and measurements: heart rate, weight, and height.
  • Sleep data: sleep stages and sleep duration.
  • Nutrition data: water and hydration intake only. The App does not access food or meal data.
  • Settings: measurement units used for distance, height, weight, and water.
  • Profile information: age, used to provide age-related fitness information and features.

Where supported by the applicable Google Health API permissions, the App may also write certain information to Google Health:

  • Weight: weight information that you choose to record or update in the App.
  • Water: water intake information that you choose to record or update in the App.
  • Measurement units: measurement unit settings used by the App.

Google Account and OpenID Connect Information

When you sign in with Google, the App may use Google OpenID Connect to obtain basic account information needed for your profile, such as:

  • Display name
  • Profile picture

This information is used only to display your account information within the App.

Google OpenID Connect profile information is separate from the health and fitness data accessed through the Google Health API.

Health Connect Data

On Android devices, Fitness Band – Health Tracker may write selected fitness data to Health Connect when you grant the required permissions.

The Health Connect data written by the App includes:

  • DistanceRecord
  • HeartRateRecord
  • StepsRecord

This data is written to Health Connect to allow the corresponding fitness records to be stored and managed through Health Connect on your Android device.

The App does not read or retrieve health or fitness data from Health Connect.

App-Local Information

The App may store limited app-local information on your device that is necessary to provide certain features, including:

  • Water reminders
  • Water portion presets

This app-local information is stored locally on your device and is not Google Health data.

How We Use Your Information

Provide Services

We use Google Health data to enable you to access and use our fitness tracking, health information visualization, and related App features.

For example, we may use:

  • Steps and distance to display activity and fitness information.
  • Heart rate, weight, and height to display health metrics and measurements.
  • Sleep stages and duration to display sleep-related information.
  • Water and hydration information to provide hydration-related functionality.
  • Age to provide age-related fitness information and features.
  • Measurement unit settings to display information using the appropriate units.

On Android devices, when you choose to use the Health Connect integration, the App may write selected fitness data, including DistanceRecord, HeartRateRecord, and StepsRecord, to Health Connect.

Synchronization

Where you choose to use synchronization features, the App may write authorized information directly to Google Health, including:

  • Weight information.
  • Water intake information.
  • Measurement unit settings.

On Android devices, the App may also write selected fitness records, including DistanceRecord, HeartRateRecord, and StepsRecord, to Health Connect when you grant the corresponding permissions.

The App only performs these write operations when the applicable permission has been granted and the feature requires it.

The App does not read or retrieve health and fitness data from Health Connect.

Google Health Data Processing

Fitness Band – Health Tracker is a native Android application and does not operate a backend server or developer-controlled database for Google Health data.

Google Health data accessed by the App is processed locally on your device to provide the App’s user-facing health and fitness features.

API responses containing Google Health data are held in application memory for rendering and processing and are not persisted in the App’s local database.

Google Health data is not uploaded to our servers, analytics services, advertising SDKs, data brokers, or other third-party services.

When you choose to record information such as weight or water intake, the App sends that information directly from your device to Google through the applicable Google Health API.

The App does not transmit Google Health data to our own servers.

Improve App Functionality

The App may use app-local information, such as water reminders and portion presets, to provide and improve the related features.

We do not use Google Health or Health Connect health and fitness data for advertising, personalized advertising, marketing, or unrelated data mining purposes.

Communications

If you voluntarily provide contact information when contacting us, we may use that information to respond to your requests, provide support, and address service-related inquiries.

Google Health API Data – Limited Use

Fitness Band – Health Tracker uses Google Health API data only to provide the health and fitness features described in this Privacy Policy.

We do not sell Google Health data.

We do not use Google Health data for:

  • Advertising or personalized advertising.
  • Creditworthiness or lending purposes.
  • Insurance underwriting.
  • Data brokerage.
  • Unrelated data mining or profiling.

We do not share Google Health health and fitness data with advertising partners, analytics services, data brokers, or other third-party services.

Google Health data accessed by Fitness Band – Health Tracker is processed locally on your device and is not transmitted to our servers or third-party services.

When you choose to write information to Google Health, that information is sent directly from your device to Google through the applicable Google Health API.

We only request access to the specific Google Health API data necessary for the features provided by the App.

Health Connect Data – Limited Use

On Android devices, the App may write selected fitness records, including DistanceRecord, HeartRateRecord, and StepsRecord, to Health Connect when you grant the corresponding permissions.

The App only writes these records to Health Connect when the corresponding permission has been granted and the feature requires it.

The App does not read or retrieve health or fitness data from Health Connect.

Health Connect data is not transmitted to our servers, analytics providers, advertising partners, data brokers, or other third-party services.

How We Disclose Your Data

We do not sell your personal information, Google Health data, or Health Connect data.

We do not transfer Google Health data or Health Connect health and fitness data to our servers, analytics providers, advertising partners, data brokers, or other third-party services.

Google Health data accessed by Fitness Band – Health Tracker is processed locally on your device and is not stored in a developer-controlled backend or database.

Information may be disclosed when required by applicable law, regulation, legal process, or when reasonably necessary to protect the rights, safety, security, or property of our users, the App, or others.

Required App Permissions

Fitness Band – Health Tracker requests permissions based on the health and fitness features you choose to use.

Google Health API Permissions

Activity and Fitness – Read

Scope: https://www.googleapis.com/auth/googlehealth.activity_and_fitness.readonly

We use this permission to read:

  • Steps
  • Distance

This information is used to display activity and fitness information within the App.

Health Metrics and Measurements – Read

Scope: https://www.googleapis.com/auth/googlehealth.health_metrics_and_measurements.readonly

We use this permission to read:

  • Heart rate
  • Weight
  • Height

This information is used to display health metrics and measurements within the App.

Health Metrics and Measurements – Write

Scope: https://www.googleapis.com/auth/googlehealth.health_metrics_and_measurements.writeonly

We use this permission to write weight information to Google Health when you choose to record or update your weight through the App.

Sleep – Read

Scope: https://www.googleapis.com/auth/googlehealth.sleep.readonly

We use this permission to read:

  • Sleep stages
  • Sleep duration

This information is used to provide sleep-related information within the App.

Nutrition – Read

Scope: https://www.googleapis.com/auth/googlehealth.nutrition.readonly

We use this permission to read hydration and water intake information.

The App does not access food or meal data through this permission.

Nutrition – Write

Scope: https://www.googleapis.com/auth/googlehealth.nutrition.writeonly

We use this permission to write water and hydration intake information to Google Health when you choose to record or update your water intake through the App.

The App does not write food or meal data.

Settings – Read and Write

Scopes:

  • https://www.googleapis.com/auth/googlehealth.settings.readonly
  • https://www.googleapis.com/auth/googlehealth.settings.writeonly

We use these permissions to read and update measurement unit settings used for:

  • Distance
  • Height
  • Weight
  • Water

We only access or modify the settings necessary for the measurement-unit functionality provided by the App.

Profile – Read

Scope: https://www.googleapis.com/auth/googlehealth.profile.readonly

We use this permission only to read your age to provide age-related fitness information and features.

We do not use this permission to access unrelated Google Health profile information.

Google OpenID Connect

Google OpenID Connect is used separately from the Google Health API to obtain basic profile information after Google sign-in.

The App uses the Google Identity Services authorization flow to obtain the information needed to display:

  • Display name
  • Profile picture

The App does not use Google OpenID Connect profile information for advertising or unrelated purposes.

Health Connect Permissions – Android Only

On Android devices, the App may write selected fitness records, including DistanceRecord, HeartRateRecord, and StepsRecord, to Health Connect when you grant the corresponding permissions.

The App only writes these records to Health Connect when the corresponding permission has been granted and the feature requires it.

The App does not read or retrieve health or fitness data from Health Connect.

OAuth Tokens and Authorization

Fitness Band – Health Tracker uses the Google Identity Services Authorization API through the Google Play services authentication library for client-side authorization.

The App does not use offline access and does not request or store Google OAuth refresh tokens.

The App uses short-lived Google OAuth access tokens for online access to the Google Health API. Access tokens are temporarily stored in the App’s private SharedPreferences storage.

The access token is protected by the Android application sandbox and the platform’s file-based encryption at rest. The token is not additionally encrypted at the application layer.

Access tokens are used only to make authorized requests to Google services. They are not transmitted to our own servers or to unrelated third-party services.

When an access token expires or is rejected, the App requests authorization again through the Google authorization flow.

The App does not store a Google OAuth client secret because it does not have a backend server component.

When you sign out, the App revokes the Google OAuth authorization grant through Google’s OAuth revocation endpoint.

Data Storage and Retention

Fitness Band – Health Tracker does not operate a backend server or developer-controlled database for Google Health data.

Google Health data accessed by the App is not persisted in the App’s local database. API responses are held in application memory only for rendering and providing the relevant App features.

Google Health data is therefore not retained by Fitness Band – Health Tracker after the relevant in-memory processing ends.

Google OAuth access tokens are temporarily stored in the App’s private SharedPreferences storage and remain there until they expire, are rejected, or are cleared through the applicable authorization or sign-out flow.

No Google OAuth refresh tokens are stored.

The App’s local database is limited to app-local information such as water reminders and water portion presets. It does not store Google Health API responses.

Fitness data written by the App to Health Connect is managed through Health Connect on your Android device.

App-local information remains on your device until it is deleted through the applicable App functionality or the App is uninstalled.

Data Deletion

Fitness Band – Health Tracker does not independently store Google Health health and fitness records on our servers. Therefore, deletion of Google Health health records from our systems is generally not applicable.

Google Health data accessed by the App is not persisted in the App’s local database.

You can manage or delete fitness data written to Health Connect through the controls provided by Health Connect.

You can also revoke Fitness Band – Health Tracker’s access to Google Health or Health Connect at any time through the relevant Google or Android settings.

When you revoke access, Fitness Band – Health Tracker can no longer access the corresponding Google Health data or perform the corresponding write operations unless you authorize access again.

Revoking access does not necessarily delete data that has already been stored in Google Health or Health Connect. Such data can be managed or deleted through the corresponding Google controls.

If you have other personal information stored by us, you may request its deletion by contacting us at [email protected].

Data Security

We use reasonable administrative, technical, and organizational measures to help protect information processed by the App.

For Google Health data specifically:

  • Google Health API communication occurs over HTTPS.
  • Google Health API data is processed on the user’s Android device.
  • Google Health API responses are held in application memory and are not persisted in our database or uploaded to our servers.
  • OAuth access tokens are stored only in the App’s private storage and are protected by the Android application sandbox and platform file-based encryption.
  • The App does not store Google OAuth refresh tokens.
  • The App does not contain or store a Google OAuth client secret for a backend service.
  • Google OAuth authorization can be revoked when the user signs out.

While we take reasonable steps to protect the information we process, no security measure is perfect or impenetrable, and no method of data transmission or storage can be guaranteed against every possible interception or misuse.

User Rights

Access and Control

You can control the permissions granted to Fitness Band – Health Tracker through the relevant Google Health and Health Connect settings.

You may grant or revoke access to your health and fitness data at any time.

Data Deletion

You can manage or delete Google Health and Health Connect data using the controls provided by Google and Android.

Because Fitness Band – Health Tracker does not persist Google Health data in a developer-controlled backend or database, there is no developer-side Google Health data repository to delete.

For other personal information that we independently store, you may request access or deletion by contacting our support team at [email protected], subject to applicable legal requirements.

Changes to This Policy

We may update this Privacy Policy periodically to reflect changes to our services, data practices, or applicable requirements.

When we make changes, we will update the “Last Updated” date at the beginning of this Privacy Policy.

We may also notify you of significant changes through the App or other appropriate communication channels.

We encourage you to review this Privacy Policy periodically to stay informed about how we handle your information.

Contact Us

If you have any questions or concerns about this Privacy Policy or the App’s handling of your information, please contact us at:

[email protected]