Trust Center
Security, privacy, and compliance are at the core of everything we build at The Tracker App.
Overview
Our commitment to protecting your health data
The Tracker App is a text-based fitness and nutrition tracking platform that lets you log workouts, meals, water intake, and body metrics via iMessage, SMS, or Telegram. Our AI-powered system understands natural language, making health tracking as simple as sending a text message.
Compliance
Frameworks and regulations we adhere to
GDPR
European data protection regulation
CompliantCCPA
California Consumer Privacy Act
Compliant10DLC/A2P
Registered SMS business sender
VerifiedSecurity Controls
Active measures protecting your data
Updated May 2026
Infrastructure Security
- ✓Data encrypted in transit (TLS 1.3)
- ✓Data encrypted at rest (AES-256)
- ✓US-region cloud infrastructure
- ✓Edge network DDoS mitigation
- ✓Automated dependency security updates
- ✓Infrastructure as Code (version controlled)
- ✓Production database authentication enforced
- ✓Encryption key access restricted
Organizational Security
- ✓Confidentiality agreements signed by team
- ✓Role-based access control (RBAC)
- ✓Periodic access reviews
- ✓Incident response plan documented
- ✓Vendor/subprocessor security reviewed
Product Security
- ✓Session timeout enforced
- ✓Rate limiting on API endpoints
- ✓Input validation and sanitization
- ✓SQL injection protection (parameterized queries)
- ✓XSS prevention (output encoding)
- ✓Secure API authentication
- ✓Audit logging enabled
Data & Privacy
- ✓User data deletion on request
- ✓Data retention policies documented
- ✓No third-party data selling
- ✓Minimal data collection principle
- ✓User consent for data processing
- ✓Data export available on request
- ✓Privacy policy publicly available
Subprocessors
Third-party services that process data on our behalf
Vercel
Web hosting & edge network
United StatesGoogle Cloud Platform
Compute, storage & AI (Gemini)
United StatesApple iMessage
Message delivery (iMessage)
United StatesTwilio
SMS message delivery
United StatesTelegram
Message delivery (Telegram bot)
GlobalStripe
Payment processing
United StatesGitHub
Source code version control
United StatesContact
Get in touch with our security team