Privacy Policy

Effective: August 10, 2026 — ShoeSense Inc. (doing business as Prowess), Boulder, Colorado. Privacy contact: connor@wearprowess.com

This policy covers the Prowess mobile app, Prowess sensor pods, clinician features, and the prowess.run website and store. The short version: we collect your movement data to show it back to you, we don't run ads, we don't sell your data, and you can export or delete everything yourself from inside the app.

What we collect

Account information. Email address, name, and sign-in provider (Google, Apple, or email/password). At signup we ask your date of birth to verify age — we keep only an age band, not the date itself. Signups under 13 are blocked and their date of birth is not retained.

Movement and health information. This is the product: gait and running metrics measured by the sensor pods (stride timing, impact, cadence, and similar), gait analysis videos you or your clinician record, pain and confidence logs you enter, and exercise completion. The pods themselves store no names or identifiers of any kind — sensor data becomes personal information only when the app associates it with your account.

Clinician-entered records. If a physical therapist or coach uses Prowess with you, they may enter your name, notes, findings, and exercise prescriptions.

Purchases. Orders on prowess.run are processed by Shopify; clinician subscriptions are billed by Stripe. Card numbers never touch our systems.

Technical data. De-identified crash reports (no user identifier, no names, IP storage disabled) so we can fix bugs.

Apple HealthKit. With your permission the app writes workouts to HealthKit. We do not read from HealthKit, and HealthKit data is never used for advertising or shared with third parties.

How we use it

To provide the service: computing your metrics, showing your progress, powering clinician features you've authorized, processing purchases, and providing support. We do not sell personal information, we do not run third-party advertising or ad tracking, and we do not use your health information for marketing.

Where it lives

On Google Cloud / Firebase servers in the United States, encrypted in transit (TLS) and at rest (AES-256), behind server-enforced access rules. Google Cloud operates under a Business Associate Agreement with us.

Who can see it

  • You. Your data is visible to your account.
  • A coach or clinician — only if you accept their invitation. Sharing is invitation-based and can be ended by unlinking.
  • Service providers: Google Cloud/Firebase (data storage and processing, under BAA), Stripe (subscription billing only), Shopify (store orders only), Sentry (de-identified crash reports only), Apple/Expo (app distribution — no user data), and, when enabled, a transactional email provider (account emails only). Providers that would handle protected health information must sign a BAA with us first — no BAA, no PHI.
  • Nobody else, except if required by law.

If your clinic uses Prowess with you

When a physical therapy clinic uses Prowess in treating you, the clinic is the HIPAA covered entity and ShoeSense acts as its business associate under a signed Business Associate Agreement. Your clinical records are handled per that agreement and your clinic's own privacy practices; requests about clinical records can go to your clinic or to us.

Retention and deletion

Delete your account any time in the app (Profile → Delete account) — this permanently removes your account and data, keeping only a minimal record that the deletion happened. You can export your data in-app first. If a clinic treated you through Prowess, the clinic may be legally required to retain its clinical records; those obligations are handled with your clinic under the BAA.

Minors

Prowess accounts require age 13+. Ages 13–17 require a recorded parent/guardian permission attestation. Under-13 signups are blocked.

Your rights

Access, export, correct, and delete your data (the first three are self-service in-app). Colorado residents have rights under the Colorado Privacy Act, including access, correction, deletion, and portability — write to connor@wearprowess.com and we'll act on verified requests within the statutory window. We verify identity before acting on any data request and never act on requests we can't verify.

Security

Server-enforced record-level authorization, encryption in transit and at rest, PHI-free push notifications, de-identified telemetry, short-lived signed video URLs, and audit logging of sensitive access. If a breach affects your data, we will notify you consistent with applicable law (including the FTC Health Breach Notification Rule) and, for clinic patients, the clinic per our Business Associate Agreement.

Changes

We'll post changes here with a new effective date. Material changes get an in-app or email notice.

Contact

ShoeSense Inc. · Boulder, Colorado · connor@wearprowess.com