Privacy Policy

Last updated: April 4, 2026

1. Who we are

IronPlan is operated by One Dream Sport B.V., a Dutch private limited liability company (Besloten Vennootschap) registered with the Chamber of Commerce (KVK) under number 96035609.

  • Corporate seat: Amsterdam, Netherlands
  • Visiting address: Posthoornstraat 11, 3011WD Rotterdam, Netherlands
  • Email: support@ironplan.ai

2. What data we collect

When you use IronPlan, we may collect and process the following personal data:

  • Account data: name, email address, and hashed password.
  • Client profiles: information you enter about your coaching clients (name, age, goals, dietary needs, injuries, preferences).
  • Generated plans: workout and nutrition plans created through the service.
  • Billing data: subscription status and payment metadata (full payment details are handled by Stripe and never stored on our servers).
  • Usage data: timestamps of account activity, pages visited, and features used.

3. How we use your data

We use your personal data to:

  • Provide and operate the IronPlan service, including generating AI-powered workout and nutrition plans.
  • Process payments and manage your subscription.
  • Send transactional emails (e.g., account verification, password resets).
  • Improve and maintain the service.
  • Comply with legal obligations.

4. Third-party processors

We share data with the following third-party processors, all of which are bound by data processing agreements:

  • Stripe (USA) — payment processing. Stripe handles all payment card data under their own PCI-DSS compliant infrastructure.
  • Supabase (USA/EU) — database hosting and storage.
  • Vercel (USA) — application hosting and deployment.
  • DeepSeek AI — AI model provider used to generate workout and nutrition plans. Client profile data is sent to generate plans but is not retained by DeepSeek beyond the request.

5. Legal basis for processing (GDPR)

We process your personal data on the following legal bases under the General Data Protection Regulation (GDPR):

  • Contract performance (Art. 6(1)(b) GDPR) — to provide the service you signed up for.
  • Legitimate interest (Art. 6(1)(f) GDPR) — to improve our service and prevent fraud.
  • Legal obligation (Art. 6(1)(c) GDPR) — to comply with tax, accounting, and other legal requirements.

6. Data retention

We retain your personal data for as long as your account is active or as needed to provide services. When you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required to retain data for legal or regulatory purposes (e.g., billing records may be retained for up to 7 years for tax compliance).

7. Your rights

Under the GDPR, you have the following rights regarding your personal data:

  • Access: request a copy of the personal data we hold about you.
  • Rectification: request correction of inaccurate data.
  • Erasure: request deletion of your personal data (“right to be forgotten”).
  • Data portability: request an export of your data in a machine-readable format.
  • Restriction: request that we limit the processing of your data.
  • Objection: object to processing based on legitimate interest.
  • Complaint: lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) at autoriteitpersoonsgegevens.nl.

To exercise any of these rights, contact us at support@ironplan.ai. We will respond within 30 days.

8. Cookies

We use essential session cookies to keep you logged in. We do not use tracking cookies or third-party analytics. For more information, see our Cookie Policy.

9. Data security

We implement appropriate technical and organizational measures to protect your personal data, including encryption in transit (TLS), hashed passwords (bcrypt), and access controls. However, no method of electronic transmission or storage is 100% secure.

10. Changes to this policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the “Last updated” date above.

11. Contact

For any questions about this Privacy Policy or your personal data, contact us at: support@ironplan.ai