Last updated: 1 October 2026
The short version
Mode has no user account. Your training records, settings and cached health trends are stored on your devices. Optional iCloud synchronization is handled by Apple.
AI features are optional. They require separate permission to send selected content and relevant training, health and recovery information to Anthropic through Mode’s relay. You can decline or switch off AI sharing and keep using non-AI features.
Other information leaves your device when needed for features you choose, including connected wearables, weather, purchases, sharing and support. Mode does not sell personal information, use it for advertising or track you across other companies’ apps and websites.
1. Who is responsible for your information
This policy covers Mode for iPhone and Apple Watch and the supporting services described below. Mode is published by Luc Mathery, who is responsible for Mode’s handling of personal information. For privacy questions or requests, contact [email protected].
2. Information stored on your devices
Mode stores workouts, programmes, schedules, completed sessions, strength sets, training history, goals, profile details, preferences and generated plans or reviews. Session records may include heart rate, zones, duration, distance, calories, splits, recovery readings, perceived effort and notes about how you felt.
Mode also stores permitted health readings and derived trends locally, together with settings and consent records. Temporary session snapshots and pending recovery files help restore interrupted sessions and finish saving completed workouts. Some completed-session recovery files remain until the record has been saved successfully.
These records are used to provide your training history, planning, progress and recovery features. They remain on your devices unless you enable synchronization, request a feature that sends information, or share it yourself as described below.
3. iCloud and device backups
Mode’s optional iCloud synchronization is off by default. If enabled, records Mode creates are synchronized through your private iCloud database under your Apple account. The Mode operator cannot access that private database. Apple provides this service under its own terms.
Mode does not synchronize its general cache of Apple Health readings through this feature. However, health figures incorporated into a Mode session record, such as average or peak heart rate, calories or heart-rate recovery, synchronize with that record. Heart-rate series recorded during Mode sessions may also be part of synchronized records.
Turning synchronization off stops future synchronization; it does not erase existing iCloud copies. Device backups and Apple Health’s own synchronization are separate Apple services and may retain information independently. Manage those copies through Apple’s settings.
4. Apple Health and sensitive health information
With the permissions you grant, Mode can read workouts, activity totals, heart rate, resting heart rate, heart-rate variability, sleep, VO₂max, respiratory rate, blood oxygen, body mass and composition, blood pressure and glucose. When women’s health features are enabled, it can also use relevant cycle and symptom information.
Mode uses this information for training, recovery and progress features, and caches readings and derived trends on your device. With the relevant permissions, it can write completed workouts and supported cycle or symptom entries to Apple Health.
Health access and AI sharing are separate choices. Granting Health access does not itself authorize AI sharing. Mode does not sell Health information or use it for advertising or marketing.
You can change Health permissions in Apple Health or iOS Settings. Revoking access stops further access to the affected categories; it does not automatically erase information already imported into Mode, existing Health records or information previously sent with your permission.
5. Optional AI features
Mode uses Anthropic’s commercial API for AI coaching, daily briefs, PT reviews, planning, AI workout imports and certain movement explanations. Before an AI request can be sent, Mode asks for separate AI-sharing permission. Accepting Mode’s terms does not grant this permission. You can withdraw it in Settings under AI privacy.
Depending on the feature, a request may include your message, selected import content, age, goals, recent workouts, training volume, zone time, strength estimates, sleep, HRV, resting heart rate, readiness, recovery, VO₂max, fitness age, blood pressure, glucose and body composition, where relevant and available.
Information you enter about illness, injury, travel, stress or family circumstances may also be included. When women’s health features are enabled, relevant cycle, pregnancy, life-stage, contraception and symptom fields may be included. Turning those features off excludes their dedicated fields from future AI summaries; it does not erase previously stored information or requests already sent. Information you type into a message may still contain these details.
Mode does not automatically add your name, email address or raw heart-rate series to the AI summary. Messages, workout names, documents and images you select may themselves identify you or someone else. Only include information you intend to share.
The provider processes the request to generate the response. Mode does not maintain a server-side coaching profile or use your records to train its own models. Anthropic states that commercial API inputs and outputs are not used for model training by default; separate opt-in programmes and feedback arrangements can have different terms.
Anthropic’s standard API policy normally removes inputs and outputs from its backend within 30 days. Safety investigations, legal requirements and service-specific exceptions can result in longer retention. Mode does not promise zero provider retention. Current details are available at privacy.claude.com.
Switching off AI sharing cancels pending requests and blocks further AI requests until you allow it again. It cannot recall information already transmitted. Non-AI features remain available.
6. Workout imports
AI imports require the same AI-sharing permission. Mode first reads text from photos, screenshots and supported documents on your device. Extracted text is then sent through Mode’s relay to Anthropic to structure the workout; local text recognition does not make the entire import local.
For photo imports, if too little text can be read, Mode may send the selected image itself for AI interpretation. PDF imports send extracted text from the pages being processed. An unreadable PDF may fail and require another input, such as a screenshot imported as a photo.
CSV, Excel and supported Numbers content is parsed or read on your device, but the extracted text is then sent for AI structuring. Pasted text is also sent. Supported direct FIT and ZWO imports are processed locally without AI.
Only the content needed for the import should be selected. Remove unrelated personal information before importing. Text and images sent to Anthropic are subject to the processing and retention terms above.
7. Mode’s relay and service security
Mode uses a relay hosted by Cloudflare to forward AI requests and handle supported wearable authorization and token refreshes. It keeps service credentials out of the app. The relay does not persist AI prompts, replies or uploaded images, or keep copies of wearable tokens it exchanges.
The relay receives your network IP address and an installation identifier for security and usage limits. It stores pseudonymous daily identifiers and usage counters, including for AI and supported connection requests. These records normally expire after about two days; infrastructure backups may last longer. The client IP address and installation identifier are not included in the AI request forwarded to Anthropic.
Hosting and service providers may process connection metadata or retain security logs under their own terms. Requests use encrypted network connections. These safeguards reduce risk but cannot guarantee absolute security.
8. Connected wearables
WHOOP, Oura and Polar connections are optional. When you use their sign-in flow, authentication takes place with the provider and Mode does not receive your password. Authorization exchanges and refreshes may pass through Mode’s relay.
Mode keeps connection credentials on your device and uses them to retrieve permitted training, sleep, recovery and physiology information. OAuth credentials use Apple’s Keychain. A manually entered Oura personal access token is stored locally in app settings. Polar may also require registration with its AccessLink service using a generated identifier.
You can disconnect integrations in Mode’s settings and revoke access with the provider. Remove any manually entered token separately. Disconnecting does not automatically erase previously imported history or records held by the wearable provider. That provider’s own privacy policy applies to its service.
9. Location and calendar
When you use weather features, approximate coordinates are sent to Apple Weather, or to Open-Meteo if the fallback service is used. The weather card identifies the source. As with other network services, the provider may also receive connection information such as your IP address.
Outdoor workout recording on Apple Watch can use GPS for route and distance. Routes are stored with the workout and in Apple Health, subject to your permissions and Apple’s synchronization settings. Mode does not automatically include GPS routes in AI summaries.
With permission, Mode reads calendar information to help plan around your availability and can add scheduled sessions at your request. AI planning may include aggregate availability information, such as counts of upcoming events or busy days; event descriptions are not automatically sent. Your calendar provider may separately synchronize calendar entries.
You can manage location and calendar permissions in iOS Settings.
10. Purchases, sharing and support
Apple handles App Store purchases and subscriptions. Mode checks purchase status to enable the appropriate features and does not receive your payment-card details. Deleting Mode does not cancel an App Store subscription; manage subscriptions through Apple.
When you choose to share a workout, image or other record, the selected content is provided to the recipient or service you choose. Anyone with a full workout-sharing link may be able to read its contents and pass it on. Mode cannot remove copies saved or shared by recipients.
If you contact support, the information you send is used to respond and investigate the issue. Mode’s feedback email includes app version, device model, operating-system version and locale, along with your message. It does not automatically attach your workout or Health records. Any screenshots, attachments or health details you add are your choice. Support correspondence is kept as needed to handle the request, resolve issues and meet applicable legal obligations.
11. Advertising, analytics and international processing
Mode does not sell personal information or share it for advertising or marketing. The app contains no third-party advertising, analytics or crash-reporting SDKs and does not track you across other companies’ apps or websites.
Services you choose to use, including Anthropic, Cloudflare, Apple and connected wearable or weather providers, may process information in countries other than your own. Their processing is subject to their applicable terms, privacy policies and legal requirements. Mode does not promise that all information will remain in one country.
12. Your choices, retention and privacy rights
Where applicable law requires a legal basis, Mode relies on your consent for optional health and AI processing, processing necessary to provide the features you request, legitimate interests in operating and securing the service and responding to support requests, or applicable legal obligations. Sensitive health information is not used for advertising or marketing.
Local records remain until you remove them or the app’s local data. Deleting Mode removes the app’s local database, caches and recovery files from that device. It does not necessarily remove Keychain credentials, copies on other devices, Apple Health records, iCloud data, device backups, provider-held requests or support correspondence. Disconnect wearables and remove manually entered tokens before uninstalling; credentials in Keychain can survive app deletion.
Use the relevant controls in Apple Health, iCloud, your device backup settings and connected services to manage their copies. Withdrawing a permission or deleting local data does not erase information already sent to a provider. Relay usage records and AI requests follow the retention arrangements described above.
Depending on the law that applies to you, you may have rights to access, correct, erase or obtain a copy of personal information, restrict or object to processing, withdraw consent, or complain to a data-protection authority. Withdrawing consent does not change the lawfulness of processing already carried out.
Contact [email protected] to ask a question or exercise a right. Because Mode has no user account and much of its information is stored on your devices or in your private Apple services, the operator may not hold or be able to retrieve the records you ask about. We will explain the available controls and help with requests concerning information we do hold. We may need enough information to verify and locate a request without collecting unnecessary health details.
13. Adults and family information
Mode is intended for people aged 18 and over. It is not designed for children to use. Adult users may choose to enter family context, such as children’s ages, to help plan training around their responsibilities. This can form part of an AI request when AI sharing is allowed. Do not enter unnecessary identifying information about children or other people.
14. Changes to this policy
The date at the top identifies the latest revision. Updated wording will be made available in the app and at dataloup.io/mode/privacy. If a change requires fresh permission under applicable law, that permission will be requested before the new processing begins.