Your information

Privacy Policy

LabStack LLC operates Goal.fit. This policy explains what information Goal processes, why it is needed, and the choices available to you.

Last updated · September 4, 2026

Information you provide

Account information may include your verified email address or phone number, optional name, authentication credentials, settings, and support correspondence. Tracker information may include nutrition entries, remembered foods, calorie and macro targets, goals, weight, body-composition records, notes, and the dates and time zones needed to place those records correctly.

Optional food estimation

When you ask Goal to estimate a meal's calories, Goal sends the food description you entered, your locale, and a pseudonymous abuse-prevention identifier to a model service provider. Account credentials and connected health information are not sent for this feature. The result is shown for your review and does not become a tracker entry unless you choose to use and save it.

Optional connected health information

Apple Health and Health Connect access is optional, read-only, and requested only after an action you take. Depending on the permissions you approve, Goal may synchronize normalized daily summaries for weight, body composition, steps, workouts, activity, energy, sleep, heart rate, or related supported context. These summaries can include the source app identity and an opaque reconciliation identifier, but not a health-store record identifier. Raw sensor samples and clinical-style history do not leave the device health store. Declining or withdrawing a category does not prevent manual nutrition and weight tracking.

Technical and operational information

We process limited device, request, synchronization, security, and diagnostic information needed to deliver the service, prevent abuse, restore sessions, investigate failures, and keep records consistent across supported clients. Operational reports are designed to aggregate results without exposing personal nutrition, weight, food, note, or Health payloads.

Optional product analytics

In the iOS and Android apps, Goal uses Google Analytics for Firebase to understand which app screens and actions are used, whether features complete successfully, and which store-provided acquisition source or campaign led to an install. App analytics is enabled by default after your signed-in account preference loads, and you can turn it off at any time in Settings under “Help improve Goal.” While enabled, Google receives a random analytics identifier, a resettable app-instance identifier, coarse region, device model, operating-system and app versions, bounded app interactions and timing buckets, coarse feature-area and failure categories, and bounded store campaign labels or identifiers. Turning app analytics off stops collection, resets the app-instance identifier, and requests deletion of analytics associated with the random identifier.

On this public website, visitors in the EEA, United Kingdom, and Crown Dependencies are asked before Google Analytics loads. Goal uses Cloudflare's same-origin country signal to decide whether that prompt is required; the country result is not stored or sent as an analytics property, and an unavailable or unknown result requires consent. Elsewhere, website analytics starts without a prompt, but you can turn it off below. If your browser sends a Global Privacy Control signal, website analytics does not start and you are not prompted, because you have already answered; choosing “Allow analytics” below overrides that signal on this browser, since your own choice is the more specific one. Do Not Track is not consulted: the specification was withdrawn in 2019 and the browsers that still carry the setting leave it off, so it says nothing reliable about what a visitor wants. The site sends a fixed page path and title, the referring site's origin, Google's basic browser, device, coarse-region, and session information, and standard events for completed scrolls, store and other outbound links, forms, embedded video, and file downloads. It retains only controlled utm_id, utm_source, utm_medium, utm_campaign, utm_content, and utm_term campaign labels from a page URL; all other query parameters and fragments are discarded, and query-based site-search measurement is disabled. Website analytics is not linked to a Goal account.

Checking whether website analytics consent is required in your region.

Across the apps and website, Goal does not send Google logs, stack traces, request or response bodies, your email, phone number, Goal account ID, advertising ID, precise location, food descriptions, nutrition or weight values, connected health information, passkeys, notes, or other free text. Analytics event data is configured for two-month retention.

How information is used

  • Provide account access, synchronization, tracking, progress views, and conditional outlook features.
  • Send transactional verification or support messages.
  • Protect accounts, enforce rate limits, diagnose failures, and improve reliability.
  • Honor Goal.fit data-deletion, account-deletion, and other privacy choices.

Sharing and service providers

We do not sell or rent personal information, and we do not use health-adjacent information for advertising. We disclose only what is necessary to service providers that operate hosting, databases, storage, communications, security, observability, and optional product analytics for Goal, or when disclosure is required by law. Google processes the product-analytics information described above through Google Analytics and Google Analytics for Firebase. Providers are expected to process information only for the service they perform for us.

Retention and deletion

Account and tracker information is retained while needed to provide Goal and meet legitimate security or legal obligations. “Delete Goal.fit data” removes tracker data while leaving account access intact. An account-deletion request removes the account and associated tracker information from active systems after verification, subject to limited security, backup, fraud-prevention, and legal retention periods. Backups expire on their normal protected schedule and are not used to restore a deleted account into active service.

Your choices

You may turn off “Help improve Goal” to stop app analytics, change the website analytics choice above, disconnect Apple Health or Health Connect, correct your information, choose “Delete Goal.fit data” to remove tracking data while keeping your account, delete your account in the app, or ask about access and correction. See the account-deletion instructions or contact [email protected] if you cannot access the app. Device privacy controls also govern Goal.fit's access to connected health data.

Children

Goal is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. Contact us if you believe a child has provided information so we can investigate and remove it.

Security and changes

We use encrypted connections, access controls, scoped credentials, and operational safeguards designed to protect information. No system is perfectly secure. We may update this policy as the service changes; the effective date above identifies the current version.

Contact

Privacy questions and requests can be sent to [email protected].