Fuel Guard Private beta notice Back to app

Privacy Policy

Fuel Guard Privacy Policy

Fuel Guard helps you notice fuelling and hydration rhythm. This notice explains what the private beta web app and Garmin apps process, how that information is used, and how to ask for access, correction or deletion.

Effective date: 6 August 2026 Last updated: 6 August 2026

Private beta status

Fuel Guard is currently a private beta. This policy will be updated if the app's data practices materially change.

Who operates Fuel Guard

Fuel Guard is operated by the Fuel Guard developer for the private beta. It is not a medical service and it is not designed to diagnose, treat or monitor a health condition.

How to contact Fuel Guard

For privacy or deletion requests, use the developer contact email displayed on the Fuel Guard Connect IQ Store listing. Do not include passwords, access tokens or health information in your initial message.

Scope of this notice

This notice covers the Fuel Guard web app, the Supabase-backed account and sync features, the private beta Garmin Activity Logger and Quick Log apps, and the server endpoint used by those Garmin apps.

Information collected by the web app

The web app can process the information you enter or generate while using Fuel Guard, including:

  • Account email address and sign-in session information handled through Supabase Auth.
  • Fuel, hydration and fuel-plus-hydration log events, including timestamp, type, source, day type, training session and notes or check-in markers used by the app.
  • Preferences such as fuelling and hydration thresholds, daily targets and fuelling-window settings.
  • Planning data you choose to enter, such as demand blocks, work breaks, training sessions and related notes.
  • Local cache data stored in the browser so the app can keep working while signed out, offline or waiting to sync.

Fuel Guard does not add calories, food weights, macros, body weight or food-quality judgements to the log model unless you type that information into an optional note yourself.

Information collected through the Garmin apps

The private beta Garmin apps may transmit these fuel-log fields to the Fuel Guard endpoint:

  • Fuel, hydration or fuel-plus-hydration event type.
  • Timestamp for the event.
  • Garmin source value.
  • Device identifier.
  • Stable external event ID used for retries and duplicate prevention.
  • The Fuel Guard account identifier assigned server-side for the private beta account.

If you explicitly enable Garmin health-pattern sharing in Quick Log settings, Fuel Guard may also receive bounded recent Connect IQ-local watch samples, where the device supports them: heart-rate history, stress history, Body Battery history, Garmin resting-heart-rate values, average resting-heart-rate values and high-level recent activity summaries such as activity type, start time, duration and distance. Availability varies by Garmin device.

Pairing/device-token credentials authenticate the request. They are not stored as fuel-log database fields.

Information not collected by the Garmin apps

Based on the private beta source code, the Garmin apps do not intentionally transmit GPS routes, precise location, raw beat-to-beat intervals, sleep stages, sleep score, HRV Status, Training Readiness, Recovery Time, gender, birth year, height, body weight, passwords, email addresses from the watch, calorie totals, macros, food weights or detailed descriptions of food.

How the information is used

Fuel Guard uses the information to:

  • Create and secure your account.
  • Save and sync your logs across devices.
  • Show history, trends, planning prompts and timing insights based on your own records.
  • Show optional Garmin pattern insights when you have enabled health-pattern sharing on the watch.
  • Keep the app usable when network access is unavailable.
  • Prevent duplicate Garmin beta events when retries happen.
  • Respond to privacy, deletion or support requests.

Authentication and security credentials

Web account sign-up, login, password reset and session handling are managed through Supabase Auth. Fuel Guard's browser code uses the public Supabase anon or publishable key, not a Supabase service-role key.

The Garmin beta uses short-lived pairing plus revocable device tokens. Server-side credentials such as the Supabase secret key are used only by the backend endpoint and must not be placed in browser code, Garmin code or public files.

Lawful purposes for processing

Fuel Guard processes information so it can provide the beta service you use, keep records synced, maintain account and endpoint security, prevent duplicate submissions, handle requests, and understand whether the private beta is working as intended.

Service providers and recipients

Supabase

Supabase provides authentication and database storage for account-backed Fuel Guard data. Row Level Security policies are used so authenticated users can access only their own app tables.

Vercel

Vercel hosts the web app and serverless endpoint used by the Garmin private beta. The endpoint stores Garmin events in Supabase after validating the request.

Garmin / Connect IQ

Garmin and Connect IQ provide the watch platform and app distribution path for the private beta Garmin apps. Garmin Connect or Connect IQ settings may be used to configure the endpoint and beta token on the watch.

Your browser or device

The web app can keep local cache data in your browser to support offline use, refresh recovery and syncing when you sign back in.

International data transfers

Fuel Guard relies on cloud providers that may process information in countries where they operate infrastructure or support services. Data transfer details can vary by provider account configuration and service region.

Data retention

Fuel Guard keeps account-backed logs, targets, planning data and optional Garmin health-pattern samples while your account is active or until you delete entries, clear supported local data, disable/clear supported watch sharing, or ask for account and associated-data deletion. Local browser cache may remain on a device until you clear app data, browser storage or the app's local data controls.

Security

Fuel Guard uses practical security controls for the private beta, including Supabase Auth, Row Level Security on user-owned tables, server-side handling of elevated Supabase credentials, and Garmin event idempotency checks. No internet-connected service can guarantee absolute security.

User privacy rights

Depending on where you live, you may have rights to ask for access to your information, correction of inaccurate information, deletion of information, or objection to certain processing. Fuel Guard will review privacy requests in light of applicable law and the private beta's technical capabilities.

Access, correction, deletion and objection requests

Use the contact method above for account-level privacy requests. To help verify the account, contact Fuel Guard from the email address used for your Fuel Guard account where possible. Do not send passwords, access tokens or detailed health information in your request.

How to delete individual fuel logs

Where the app shows delete or undo controls for a log, you can remove individual entries from the app. If you are signed in and online, cloud deletion is sent to Supabase. If you are offline, deletion can be queued locally and synced later.

How to request account and associated-data deletion

Use the contact method above to request deletion of your Fuel Guard account and associated cloud data. The request may require account verification before account-backed data is removed.

Children's privacy

Fuel Guard is not intended for children. The private beta should be used only by people who are old enough to manage their own app account and understand this notice.

Changes to this policy

Fuel Guard may update this policy as the beta changes. The effective date and last updated date at the top of this page show when this version applies.