Privacy policy
Effective and last updated: 16 July 2026
This policy explains how Chavannes Ltd processes information for the Pump Ledger mobile app and website.
The short version
- Your training records stay on your device and are not sent to us.
- Exports are created locally and shared only when you choose a destination.
- RevenueCat processes anonymous purchase information to provide and restore Pump Ledger Pro.
- The website waitlist is closed; email addresses submitted while it was open are kept only to send the launch email that was requested.
- We do not sell personal information or use it for third-party advertising.
Training records and exports
Sets, reps, loads, rest intervals, Pump Score inputs, challenge history, posing holds, optional body-weight input, and derived training comparisons are processed locally. They are not sent to Chavannes Ltd, an analytics service, or the purchase processor. Local records remain until you delete them or remove the app, subject to your operating system's backup and removal behaviour.
The app can create a user-initiated JSON or CSV export locally. You choose whether and where to share it. We do not receive the export; the destination you select handles it under its own terms and privacy practices.
Purchases and restore
The app uses RevenueCat as a service provider to retrieve store-localized Pump Ledger Pro plans, validate monthly and annual subscriptions or a lifetime purchase, restore purchases, and return entitlement status. RevenueCat processes purchase history, the platform receipt or purchase token, product and transaction metadata, an anonymous RevenueCat app user ID, platform and app version context, timestamps, country or locale, and connection metadata required to operate the service.
Purchase information is encrypted in transit. Pump Ledger does not provide RevenueCat with your name, email address, phone number, advertising identifier, training records, body-weight input, or nutrition data. The app does not link purchase information to a known identity or use it for advertising or cross-app tracking. RevenueCat processes purchase history for app functionality and purchase analytics. Card and bank details remain with the platform store and are never received by the app.
App analytics, diagnostics, and notifications
The production app has no remote product-analytics or crash-reporting service and contains no advertising SDK. Optional product analytics, commerce events, and limited JavaScript crash diagnostics are stored only on the device. They exclude names, email addresses, free text, RevenueCat user IDs, transaction IDs, and advertising identifiers. Local reminders use generic notification text and do not send training history to a push-notification server.
Optional platform workout sharing
If you explicitly connect the platform health service, the app can write a completed workout summary with its start time, end time, and strength-training type. It does not request health-data read access or include sets, reps, loads, rest intervals, Pump Score, nutrition input, or notes. Chavannes Ltd does not receive the platform workout record.
Website waitlist, analytics, and security
The website waitlist is closed. If you joined while it was open, we store the email address you submitted for the launch notification you requested. Resend processes it on our behalf. We retain it until launch, withdrawal of consent, or deletion of the list. You may request deletion at any time.
Google Analytics processes page and interaction information only if you accept optional website analytics; if you decline, its script is not loaded.
Retention and deletion
RevenueCat processes purchase records while Chavannes Ltd's RevenueCat service account is active so it can validate and restore subscriptions and lifetime entitlements, prevent fraud, and provide support. When Chavannes Ltd completes a customer-deletion request through the RevenueCat dashboard or API, RevenueCat deletes that customer's data. If Chavannes Ltd terminates the service, it may request secure return or destruction of customer personal data within 30 days; after that window, RevenueCat may permanently delete it from live systems, subject to standard backup and archival practices and legal retention duties.
Send requests concerning RevenueCat customer data or the waitlist to hello@pumpledger.app. Because Pump Ledger does not attach your email to purchases, include the anonymous RevenueCat App User ID shown in Profile → Data & privacy with a purchase-data deletion request. Pump Ledger's local-data deletion removes its app-managed records, but RevenueCat's native purchase-service cache and identifier, plus platform-store transaction records, are outside that inventory. Store records may remain where required for fraud prevention, accounting, store operations, or law.
Your rights
Where UK or EU data-protection law applies, you may request access, correction, deletion, restriction, or withdrawal of consent by contacting us. No system can be guaranteed perfectly secure; we will update this policy before introducing a materially different data flow.
Contact
Chavannes Ltd · hello@pumpledger.app