سياسة الخصوصية
آخر تحديث: يناير 2026
1. Introduction
DoWell ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and services.
2. Information We Collect
Personal Information
We collect information that you provide directly to us, including:
- Name, email address, and phone number
- Profile information and photos
- Payment and billing information
- Fitness goals and preferences
Usage Information
- Gym check-in and check-out times
- Workout history and progress
- App usage statistics and preferences
- Device information and location data
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Process your gym memberships and payments
- Send you technical notices and support messages
- Provide personalized AI coaching recommendations
- Analyze usage patterns and optimize user experience
- Prevent fraud and ensure platform security
4. Information Sharing
We may share your information with:
- Partner gyms to facilitate your access and check-ins
- Service providers who assist in operating our platform
- Law enforcement when required by law
- Other parties with your consent
5. Third-Party Services and Data Sharing
We integrate with the following third-party services to provide our features. Your data may be shared with these services as described below:
Health Data Integration
- Apple Health (iOS): Synchronizes fitness data including steps, heart rate, calories burned, exercise sessions, and sleep data. You can control which data is shared through Apple Health permissions. Apple's privacy policy applies.
- Google Fit (Android): Synchronizes activity data, workout sessions, and health metrics. You can manage permissions in Google Fit settings. Google's privacy policy applies.
Payment Processing
- Stripe: Processes subscription and payment transactions. We do not store complete credit card information on our servers. Stripe's privacy policy and PCI DSS compliance standards apply.
Analytics and Performance
- Firebase Analytics: Collects anonymized usage statistics to improve app performance and user experience. This includes app crashes, feature usage, and device information.
- Google Analytics: Tracks website visits and user interactions for service optimization. IP addresses are anonymized.
Communication Services
- Email Service Provider: Sends account notifications, subscription confirmations, and support messages. We share only your email address and necessary transaction information.
- Push Notification Service: Delivers workout reminders, booking confirmations, and important updates through Firebase Cloud Messaging (Android) and Apple Push Notification Service (iOS).
Opting Out of Third-Party Data Sharing
You can control third-party data sharing by:
- Disconnecting Apple Health or Google Fit integration in app settings
- Disabling analytics tracking in your device privacy settings
- Unsubscribing from email communications via the unsubscribe link
- Disabling push notifications in your device settings
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.
Encryption
- Data in Transit: All data transmitted between your device and our servers is encrypted using TLS 1.3 (Transport Layer Security) protocol with 256-bit encryption.
- Data at Rest: All sensitive data stored in our databases is encrypted using AES-256 encryption standard. This includes personal information, health data, and payment details.
- Password Security: User passwords are hashed using bcrypt with salt, making them irreversible even if our database is compromised.
Additional Security Measures
- Regular security audits and penetration testing
- Multi-factor authentication available for account protection
- Secure data centers with physical access controls
- Employee access to user data is strictly limited and monitored
- Regular backup procedures with encrypted backups
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.
7. Data Retention
We retain your personal information for as long as necessary to provide our services and fulfill the purposes outlined in this Privacy Policy. Specific retention periods include:
- Account Information: Retained while your account is active and for 30 days after account deletion to allow for account recovery
- Fitness and Health Data: Retained for the duration of your active subscription plus 90 days after subscription ends
- Workout History and Progress: Retained for 2 years from last activity to enable long-term progress tracking
- Payment and Billing Information: Retained for 7 years to comply with financial regulations and tax requirements
- Gym Check-in Records: Retained for 1 year for security and access control purposes
- Usage Analytics and App Statistics: Anonymized and retained for 3 years for service improvement
- Support Communications: Retained for 3 years to maintain support history and improve service quality
After these retention periods, we will securely delete or anonymize your data. You can request earlier deletion of your data by contacting us at privacy@dowell.tn, subject to legal retention requirements.
8. Your Rights
You have the right to:
- Access and receive a copy of your personal data
- Correct inaccurate or incomplete information
- Request deletion of your personal data
- Object to or restrict certain processing activities
- Withdraw consent at any time
9. Children's Privacy
Our services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
11. Contact Us
If you have questions about this Privacy Policy, please contact us at:
Email: privacy@dowell.tn
Address: Tunis, Tunisia
