Privacy for OptiFit and this website.
Learn which personal data OptiFit processes, how you control it and which separate processes a website visit or a contact enquiry involve.
1. Controller and contact
Johann Prestel, JW-Software-Solutions, sole trader. Am Perlbach 13, 94505 Bernried, Germany.
For privacy enquiries, contact Johann Prestel at the email below. Start with your request only, without health data, photos or backups.
2. Your local app data
OptiFit processes your local profile, such as name, age, sex, height, weight, body fat, activity and goals. It also handles foods, recipes, nutrition diary entries, calories and nutrients, fasting intervals, training plans and completed sessions, body measurements and progress history.
Optional progress photos include the image, a preview, date, view and an optional note. These entries support your own records and displays. Core features do not require a user account. The reviewed app code stores these records locally; it does not give the provider a central copy of your entries.
3. Storage and technical limits
Saved tracking data and permanently saved photos reside in a SQLCipher-encrypted database. Its key is tied to the installation and managed in the operating system’s protected storage.
Temporary photo drafts, ordinary settings and local diagnostic logs are partly outside that database. Device protection and the security of your own copies therefore remain relevant. Encryption cannot guarantee protection against every access to an unlocked or compromised device.
4. Camera, images and reminders
The camera is used for barcode scans or progress photo captures you deliberately start. For existing images, you select individual files using the system photo picker. OptiFit does not request blanket access to your image library for this.
Saved progress images are re-encoded and embedded EXIF and GPS metadata is removed. This does not change originals in the selected storage. A barcode scan is not saved as a progress photo.
Notifications and local, inexact alarms support fasting and training reminders. The app may reconcile these after a device restart; vibration can accompany a reminder. Other features remain usable without permission. You can revoke permissions in system settings.
5. Barcode library and technical data
Barcode recognition uses Google ML Kit. Google describes technical diagnostic and usage data, including installation identifiers. Whether and which transmission is possible in the final OptiFit package must be checked before publication. This page does not promise that no technical data is ever collected.
6. Backups, exports and sharing
You initiate exports and choose the destination. A portable backup is an ordinary ZIP file containing readable JSON; database encryption does not protect it. It contains supported nutrition, numeric progress and training content, but no progress photos, photo details or photo mutation records.
A protected full backup contains the encrypted database, including saved photos, and requires the key from the same installation. It may remain usable after “Delete all data”; after uninstalling, resetting app data through the operating system or losing the key, restoration is not possible.
Other apps and storage destinations may forward or synchronize files. Deletion in OptiFit does not remove these copies. Restoring an older full backup may bring back content you deleted later.
7. Retention and deletion
Local content normally remains until you delete it or remove app data. App-owned drafts and temporary files are removed on completion or cancellation and through recovery cleanup; an interrupted operation can remain until the next successful startup.
Deleting an individual photo removes its active content. Minimal technical mutation records are valid for at most 30 days and are cleaned up during subsequent app operations. No more than 4,096 unexpired records are admitted. Older backup copies are not rewritten.
“Delete all data” removes the active database, settings, internal backups and temporary files on the next successful restart and stops local reminders. First-run setup indicates completion. Forensic removal of every storage remnant is not guaranteed.
8. Website and email
This website is provided through OpenAI’s ChatGPT Sites. Our page code uses no advertising trackers, analytics scripts, persistent browser storage or external fonts. We do not create usage or advertising profiles from website visits.
Launch notification, beta registration and support forms are currently closed. They do not accept new addresses or messages.
When open forms are used, we limit abusive requests. The website temporarily stores cryptographically pseudonymised identifiers, used verification identifiers and timestamps in a Sites database. That database contains no email addresses, messages or health data. The longest quotas expire 48 hours after the last counted form attempt; bounded maintenance jobs remove expired records. Closing a form does not by itself remove existing protection records. Binding retention periods and the operation of deletion jobs remain subject to the required review.
Existing signups and support contacts from previously open forms also remain subject to their original purpose, unsubscribe options and the email provider’s deletion process. Closing a form does not by itself delete these records.
If you email us directly, your sender address, message and any voluntary attachments are used to handle the enquiry. Contact processes are separate from your local app entries. Do not send unnecessary health data, photos, databases or credentials.
For technical delivery, the hosting platform processes connection and operational data. This may include IP address, time, requested page and device information. Platform features and contractual terms determine the scope. The reviewed public documentation does not specify a universal fixed retention period for Sites access logs.
9. Purposes and legal bases
Purposes are your chosen local recordkeeping, providing and securing the website, and responding to your enquiry. The applicable grounds under Article 6 GDPR must be confirmed before publication; the application of Article 9 GDPR must also be assessed for health data.
An operating system permission is not blanket data-protection consent. This draft does not assume that a contract or special consent already exists. It does not describe advertising profiles or automated decisions with legal effects.
For hosted data, OpenAI provides processing on behalf of the site operator under the applicable agreement. The binding agreement, transfer safeguards, specific hosting retention periods and the email provider and deletion criteria must be reviewed before publication. Exclusively European storage is not promised.
10. Your rights
Where the legal conditions apply, you can request access, correction, erasure, restriction and portability, object to processing or withdraw consent for the future. Use the contact above to exercise these rights.
We cannot remotely retrieve or delete app entries stored only on your device. Use the app controls for those records. Requests about emails or other contact information actually held by us are handled separately. You can complain to a data protection authority, particularly where you live, work or believe an infringement occurred.
11. Audience and changes
OptiFit is intended as a personal recordkeeping tool. The initial release is planned for Germany, Austria and Switzerland and is aimed at adults. The binding age selection remains to be confirmed before store publication. The app does not offer medical care for children.
This version is dated 7 September 2026. Changes to data flows, providers or features require an updated version and, where applicable, new disclosures or consent.