Privacy policy
Ripped AI measures you from photographs. This page says exactly what happens to them.
Last updated: 3 September 2026 · Controller: Rashif Kabir, trading as Physique Analytics, 27 Old Gloucester Street, London WC1N 3AX, United Kingdom.
1. The short version
- Your photographs are analysed on your phone. The measurements never leave it.
- One part of the analysis cannot be measured and has to be judged. For that, a face-free crop of your torso is sent to our server and on to our model provider. It is used once and never written to disk.
- Our server stores four things, listed in full below. None of them is an image, a name, or a body measurement.
- We do not sell your data, share it with advertisers, or use it to train any model.
2. What stays on your device
All of it, unless it is named in section 3. Specifically: your photographs, every width and ratio taken from them, your height and weight, your food and training log, anything read from Apple Health, and your entire scan history. These are held on your phone and in your own iCloud backup if you have one enabled. We cannot read them.
Pose detection and body segmentation run on-device. There is no cloud call for any geometric measurement, which is a deliberate design constraint rather than a policy promise: a measurement has to give the same answer twice, and a model does not.
3. What leaves your device, and when
Two things, both only when you act.
3.1 Torso crops, when you take a scan
Part of the analysis asks how developed a region looks and how clearly it can be seen. That cannot be computed from geometry, so it is put to a vision model. The app crops your photographs to remove your face before upload. Our server passes the crop to the model provider, returns the reading, and holds the image only in memory for the length of the request. No image is ever written to disk on our side.
The app is responsible for removing the face before upload; our server cannot verify that a crop is face-free, and we state that rather than implying otherwise.
3.2 Your sign-in identifier
If you sign in with Apple, we receive an identifier for you and, if you permit it, an email address. If you sign in by email, we hold your address to send a one-time code.
4. Everything our server stores
This is the complete list. There are four tables.
| What | Contents | Why |
|---|---|---|
calls | Your account identifier, a time period, and a count | To cap usage so one account cannot run up unlimited cost |
scans | Your account identifier and the time of your last scan | To enforce one scan a week, which is what keeps the trend from being fed noise |
codes | Your email address, a hash of your one-time code, its expiry, and failed attempts | Email sign-in. Deleted once used or expired |
readings | A cryptographic hash of the photographs, and the assessment text returned for them | So reopening a past scan shows the same answer instead of a new one |
The readings cache is keyed on a SHA-256 hash computed from the
image bytes we received. A hash cannot be turned back into your photograph.
Our server stores no photographs, no names, no measurements, no body composition, no food or training log, and no health data.
5. Who else processes it
- OpenAI
- Receives the face-free torso crop to produce the assessed reading. Sent via API, which is not used to train their models.
- Fly.io
- Hosts the server and its database.
- Resend
- Delivers sign-in code emails, if email sign-in is enabled.
- Apple
- App distribution, and Sign in with Apple if you use it.
6. Legal basis and retention
We process the above to provide the app you asked for (performance of a contract), and to keep it working and affordable (legitimate interests). Sign-in codes are deleted on use or expiry. Cached assessments and usage counters are deleted when you delete your account.
7. Your rights
Under UK GDPR you may ask for a copy of what we hold, ask us to correct or delete it, object to processing, or withdraw consent. Because almost everything lives on your phone, deleting the app removes most of it directly. To delete what our server holds, email privacy@physiqueanalytics.com.
You may complain to the Information Commissioner's Office at ico.org.uk.
8. Health data
Where you allow it, the app reads from Apple Health. That data is used on your device to inform the analysis and is never transmitted to us or to any third party, and never used for advertising.
9. Children
Ripped AI is not intended for anyone under 16 and we do not knowingly collect their data.
10. Changes
If this policy changes materially we will say so in the app before the change takes effect.
11. Contact
Rashif Kabir, trading as Physique Analytics, 27 Old Gloucester Street, London WC1N 3AX · privacy@physiqueanalytics.com