Skip to content

Privacy Policy

Last updated: March 4, 2026

1. Information We Collect

When you create an account or use Steadfast, we may collect the following information:

  • Name — first and last name provided during registration.
  • Email address — used for account authentication and essential communication.
  • Phone number — optionally provided to enable SMS notifications. Stored securely and never shared with third parties for marketing.
  • Check-in data — weight, diet compliance, energy level, notes, and progress photos submitted by clients.
  • Usage data — anonymized analytics to improve the platform experience.

2. How We Use SMS Notifications

If you provide a phone number and explicitly opt in, Steadfast sends transactional SMS notifications through Twilio. These messages are strictly limited to:

  • Meal plan updates from your coach
  • Daily check-in reminders
  • New messages from your coach or client
  • Check-in feedback notifications
  • Missed check-in alerts (coaches)
  • New client signup alerts (coaches)

We do not use your phone number for marketing, advertising, or promotional purposes. Your phone number is used solely for the transactional notifications described above and in our SMS Policy.

3. How to Opt Out of SMS

You can stop receiving SMS notifications at any time by:

  • Turning off the SMS opt-in toggle in your Settings page.
  • Removing your phone number from your profile.
  • Replying STOP to any message received from Steadfast.

4. Data Storage & Security

Your data is stored on secure, encrypted servers. We use industry-standard encryption for data in transit (TLS) and at rest. Authentication is managed through Clerk, a third-party identity provider. Progress photos are stored in private cloud storage buckets accessible only through server-signed URLs.

5. Third-Party Services

Steadfast uses the following third-party services to operate:

  • Clerk — user authentication and identity management.
  • Twilio — transactional SMS delivery.
  • Vercel — application hosting and analytics.

We do not sell, rent, or share your personal data with third parties for their own marketing or advertising purposes.

6. Your Rights

You may request access to, correction of, or deletion of your personal data at any time by contacting us. Upon account deletion, all associated personal data will be permanently removed.

7. Contact

If you have questions about this Privacy Policy or your data, please contact us at: wong.jaden@icloud.com