Glyde ("the app", "we") is a personal running and diabetes-management assistant for Type 1 diabetic runners. This policy explains what data the app collects, why, where it is stored, and the third parties that process it. The app is early-stage software provided to a limited set of testers.
| Data | Source | Why |
|---|---|---|
| Glucose readings (CGM) | Apple HealthKit, Dexcom Share | Correlate blood sugar with runs |
| Manual blood-glucose entries | You (written to HealthKit) | Fill gaps when CGM data is stale |
| Insulin & pump events | You / Tandem CSV import | Correlate insulin with glucose and runs |
| Heart rate & VO2max | Apple HealthKit | Estimate fitness (VDOT), HR zones, and effort |
| Food & fluid logs (carbs, sodium) | You | Model fueling and its effect on glucose |
| Precise location & GPS routes | Device (while in use), Strava polylines | Live-run tracking, run maps, and weather lookup |
| Account identity (email, name, user id) | Google or Apple Sign-In | Authenticate you and link your data |
| Activity / run data (distance, pace, splits, RPE, notes) | Strava, manual entry | Build and analyze your training |
| Calendar events | Google Calendar | Sync planned workouts |
| Weather | Open-Meteo (by location) | Enrich run records |
| Subscription status | Apple App Store | Manage Glyde Pro access |
| Waitlist signup (email, optional name and details you share) | You (waitlist form on this site) | Contact you about early access |
We do not use advertising identifiers (IDFA), ad-tracking SDKs, or third-party analytics.
The app reads CGM/glucose data from HealthKit and writes manual blood-glucose entries to HealthKit, only with your permission. In accordance with Apple's requirements:
You can revoke HealthKit access at any time in iOS Settings → Privacy & Security → Health.
We share the minimum data necessary with these services:
| Processor | Data | Purpose |
|---|---|---|
| Supabase | All app data | Backend database and serverless functions (system of record) |
| Google Firebase (Google Cloud) | Waitlist and support submissions | Hosts this site and stores waitlist/support form submissions |
| Google (Gmail) | Waitlist email address and name | Waitlist and access emails are sent from our Gmail account |
| Anthropic (Claude) | Run and glucose-derived data | Generates run analysis and coaching text |
| OpenAI | Text embeddings of your content | Semantic search over your history (embeddings only) |
| Identity, calendar | Sign-in and calendar sync | |
| Apple | HealthKit data, sign-in, purchases | HealthKit read/write, Sign in with Apple, subscription |
| Strava | Activity data | Import your runs (with your authorization) |
| Dexcom | Glucose data | Import CGM readings (with your authorization) |
| Open-Meteo | Coarse location | Weather lookup (no account/identity sent) |
These providers process data under their own privacy and security terms. We do not sell your data and do not use it for advertising or profiling beyond app functionality.
Data is stored in our Supabase project (hosted Postgres) and protected by row-level security so you can only access your own records. Connections use TLS. Third-party access tokens (Strava, Dexcom, Google) are stored server-side.
We retain your data while your account is active. When you delete your account, your data is queued for deletion and purged from our backend. Backups, if any, are cycled out on a rolling basis.
Waitlist submissions (email and any optional details you share) are kept until you receive access or ask us to remove you. To have your waitlist entry deleted, contact us via the support form.
The app is not directed to children under 13 and we do not knowingly collect data from them.
We may update this policy as the app evolves. Material changes will be reflected by an updated effective date.
Questions or requests: glyderunning@gmail.com