Privacy Policy
Effective date: 1 August 2026 · Last updated: 30 September 2026
Intentra Pty Ltd ("Intentra", "we", "us", "our") operates the Intentra mobile application and related website (the "App"). This Privacy Policy explains how we collect, use, store, and protect your information when you use the App, wherever in the world you use it.
Intentra is a wellness and fitness application. It is not a medical device and does not provide diagnoses, treatment recommendations, or clinical advice.
We design our privacy practices to meet the requirements of major data protection laws, including Australia's Privacy Act 1988 (the law that binds us directly, as an Australian company), the EU and UK General Data Protection Regulation ("GDPR"), and the California Consumer Privacy Act ("CCPA"), to the extent each applies to you.
1. Information We Collect
Account information: When you create an account, we collect your email address and display name via your chosen sign-in provider (Google or Apple).
Health and wellness data you provide: This includes meals and nutrition entries, exercise and workout logs, body measurements (such as weight), any text, photo, or voice input you provide for meal analysis, and your messages if you use the in-app chat feature. This data is entered voluntarily by you.
Health data from Apple Health / Health Connect: With your permission, the App reads health and activity data from Apple HealthKit (iOS) or Health Connect (Android) to enhance your experience — including steps, active and total calories, distance, floors climbed, exercise minutes, weight, heart rate, resting heart rate, blood oxygen, respiratory rate, heart rate variability, blood pressure, body fat percentage, and sleep. This access is read-only: the App does not currently write workout or health data back to Apple Health or Health Connect. You control this permission at any time in your device's Health/Health Connect settings.
Device permissions: Depending on features you use, the App may also request access to your device camera (for food photo analysis and barcode scanning), microphone (for voice-based meal logging), and photo library (for selecting food images). These permissions are requested only when needed and can be revoked at any time in your device settings.
Payment information: If you purchase a subscription through our website, payment is processed by Stripe. We never receive or store your card number. If you purchase through the App Store or Google Play, your payment is handled entirely by Apple or Google — we only receive confirmation of your entitlement.
Technical data: We collect crash reports (via Sentry) and basic app usage metadata such as screen views and feature usage. These never contain your health data, biometric values, or personal text entries — Sentry is configured with default personal-data collection off, session screenshots off, and every breadcrumb category off, and automatically redacts anything that looks like an authentication token before it ever leaves your device.
2. How We Use Your Information
We use your information solely to provide and improve the App's functionality:
- To store and display your health and wellness entries
- To sync your data across your devices
- To power AI features — meal analysis, in-app chat, health insights, and generated training or nutrition plans (see Section 7)
- To look up food and nutrition information from third-party databases
- To process payments and manage your subscription
- To send you transactional communications (such as receipts, account, and security notices)
- To diagnose crashes and improve app reliability
Marketing communications: We will only send you marketing or promotional emails if you opt in to receive them, and every marketing email includes an unsubscribe link. Transactional communications (receipts, account notices, security alerts) are separate and are not affected by your marketing preferences.
3. What We Will Never Do
- Sell, license, or share your health data with third parties for marketing or advertising purposes
- Use your health data for marketing segmentation or behavioural profiling
- Train AI models on your personal health data without your explicit consent
- Log your biometric values, meal descriptions, or personal health entries to analytics or crash-reporting systems
- Show you a comparison against other users (for example, "better than 73% of users") — your targets and trends are always personal to you
4. Data Storage and Security
Your data is stored in two locations:
On your device: Health data is stored in an encrypted local database (SQLCipher). Encryption keys are protected by your device's hardware-backed keystore (iOS Keychain or Android Keystore).
On our servers: When you are online, data syncs to our backend hosted on Supabase (Sydney, Australia region). All data is encrypted in transit (TLS 1.3) and at rest. Row Level Security ensures your data is isolated to your account — no other user or administrator can access it through normal application pathways.
Regardless of where you are located in the world, the same encryption and security standards apply to your data.
Server logs: Operational logs (such as API request metadata, error codes, and sync activity) are retained for 90 days and never contain biometric values, AI prompt or response content, or personal health entries. Backups inherit the same encryption and follow the same deletion timelines as primary storage.
5. International Data Transfers
Your primary data is stored with Supabase in Sydney, Australia. If you are located outside Australia, using the App involves an international transfer of your data to Australia for storage and processing.
Some of our service providers also process data in other countries, generally the United States, as follows:
- Anthropic (United States) — AI features: meal analysis, in-app chat, health insights, and generated training and nutrition plans
- FatSecret (United States) — food and nutrition database lookups
- Stripe (United States) — website payment processing
- Sentry (United States and other regions) — crash reporting
- Resend (United States) — transactional email delivery
We take reasonable steps to ensure all overseas recipients, wherever located, protect your information to a standard consistent with this Policy, including only sending the minimum data necessary for each service to perform its function.
6. Third-Party Services
The App uses the following third-party services to provide its functionality:
- Supabase (database and authentication hosting, Sydney region)
- Anthropic (AI features — meal descriptions/photos, chat messages, and relevant health data (recent food and workout entries, and summaries of other measurements) are sent to Anthropic's API to generate meal analysis, chat responses, insights, and plans; not stored by Anthropic beyond the request)
- FatSecret (food and nutrition database lookups)
- Open Food Facts (barcode and product lookups)
- Sentry (crash reporting — no health data included)
- Apple Health / Health Connect (with your permission — see Section 1)
- Google and Apple (sign-in authentication)
- Stripe (website payment processing — see Section 1)
- Resend (transactional email delivery — receipts, account, and security notices)
We do not share your raw health data with any of these services beyond what is necessary to perform the specific function (e.g., sending a meal description to generate a nutritional breakdown).
7. AI-Powered Features
Intentra uses AI in several places in the App:
- Meal analysis: when you submit a text description, photo, or voice input of a meal, that content is sent to our AI provider (Anthropic) to generate a nutritional breakdown.
- Chat: if you use the in-app chat feature, your messages, along with relevant information from your own recent activity (including the names of foods you have logged and your workouts and exercises from roughly the last 14 days, and summaries of your body measurements), are sent to Anthropic to generate a response. Chat is scoped to health and fitness topics and does not provide medical diagnosis or treatment advice.
- Insights: we periodically generate summaries and observations about your activity, nutrition, and body metrics (for example, a weekly summary or a note about a pattern in your data). These are built from a structured summary of your data, sent to Anthropic to generate the written insight.
- Generated plans: when you request an AI-generated training program or nutrition plan, your relevant profile and history information is sent to Anthropic to generate the plan. You choose what to keep — generated plans are proposals, not automatic changes to your data.
In each case, only the information needed for that specific feature is sent, the response is returned to you within the App, and we do not log the contents of AI prompts or responses on our servers — only metadata such as request timing and success/failure status.
Not everything labelled "intelligent" in the App uses a third-party AI provider. Some features — such as estimating your energy expenditure or suggesting a training progression — run on statistical models we operate entirely on our own servers. No data is sent to Anthropic or any other third party for these features.
All AI-generated and algorithm-generated output is advisory and informational. It is not medical advice, and you decide what to accept.
Chat history: your chat conversations are stored so the feature can maintain context within a session, and are permanently deleted along with the rest of your data if you delete your account (see Section 8).
8. Data Retention and Deletion
Your health and wellness data is retained for as long as you maintain an active account. You may delete individual entries at any time within the App.
You can delete your account and all associated data at any time from within the App (Settings > Account > Delete Account). Alternatively, you may email us at support@intentra.com. Account deletion removes all your data from our servers, subject to any billing records we are required to retain by law (see Section 9). Local data on your device can be removed by uninstalling the App.
9. Billing Records
Where you have made a purchase, we retain billing and transaction records (such as receipts and payment confirmations) for as long as required by applicable tax and financial record-keeping law, generally up to seven years, even after account deletion. These records do not include your health or wellness data.
10. Your Rights
You have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and data
- Withdraw consent for optional features (e.g., camera, microphone, Health/Health Connect access) at any time via device settings
- Opt out of marketing communications at any time
Depending on where you live, you may have additional rights under local law. For example, if you are in the European Economic Area or the United Kingdom, you have rights under the GDPR/UK GDPR, including data portability and the right to lodge a complaint with your local supervisory authority. If you are a California resident, you have rights under the CCPA, including the right to know what personal information we collect and the right to opt out of the sale of personal information — we do not sell personal information, so this right is inherently satisfied.
To exercise any of these rights, contact us at support@intentra.com. Australian users may also contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au, and New Zealand users may contact the Office of the Privacy Commissioner (OPC) at privacy.org.nz. Users in other countries may contact their local data protection authority.
11. Data Breach Notification
If a data breach occurs that is likely to result in serious harm to you, we will notify you and, where required by applicable law, the relevant regulator — for example, the OAIC under Australia's Notifiable Data Breaches scheme, or your local data protection authority under an equivalent law.
12. Children's Privacy
Intentra is not directed at children and is not intended for use by anyone under the age of 16. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "last updated" date. For material changes, we will provide notice in the App or by email at least 14 days before the change takes effect. We encourage you to review this page periodically.
14. Contact Us
If you have questions about this Privacy Policy or your data, contact us at:
Intentra Pty Ltd
Email: support@intentra.com