Privacy Policy

Updated 18 September 2026

Forge is a personal record-keeping app for people who use peptides. Most of what you log stays on your phone. What leaves your phone is your account, the community content you choose to publish, and meal photos you choose to scan. Forge shows no ads, runs no tracking or analytics SDKs, and never sells your data.

Who we are

Forge is operated by A&A Digital LLC, a company based in the United States (“we” and “us”). This policy explains what the Forge iOS app collects, where that data lives, how it is used and how you can delete it. Questions go to support@forgepeptide.app.

Forge is not a healthcare provider, health plan or insurer, so HIPAA does not apply to the data you enter in Forge. Forge does not claim HIPAA compliance.

What we collect, feature by feature

Forge keeps two kinds of data: data that stays on your phone, and data on our servers. Here is every category and where it lives.

How we use it

We use your data to run the features you use: signing you in, unlocking your subscription, publishing and showing community stacks, running the Locked In boards, analysing meal photos, and enforcing the daily scan limit.

We use reports, blocks and account data to keep the community safe, and the details you send us to answer support requests.

Onboarding answers help us understand who uses Forge and what to build next.

We do not use your data for advertising, do not sell it, do not share it with data brokers, do not run analytics or tracking SDKs, and do not train AI models on it.

Apple Health

Connecting Apple Health is optional. If you connect it, Forge reads weight, steps, active energy, sleep and workouts and imports them into the database on your phone. Forge is read-only: it never writes anything to Apple Health.

Data imported from Apple Health is never uploaded to our servers, never included in anything you publish (weigh-ins that came from Apple Health are excluded from published stacks), never shared with anyone and never used for advertising.

You can stop sharing at any time in the Health app or in iOS Settings under Privacy & Security › Health. Forge does not use iCloud or CloudKit.

Camera and meal photos

Forge uses the camera for three things: taking your progress and check-in photos, which stay on your phone; reading vial labels, which also happens entirely on your phone; and scanning meals.

A meal photo is sent as soon as you take or choose it inside the meal scanner, so open the scanner only for photos you want analysed. It goes through our Supabase server function to OpenAI, which returns a calorie and macro estimate. OpenAI processes it under its API terms: the photo is not used to train OpenAI’s models, and OpenAI may keep it for up to 30 days to monitor for abuse before deleting it. Our server does not keep a copy. The estimate is stored on your phone.

Each scan counts toward a limit of 25 scans per day, tracked against your account. Please do not include other people, or anything you would not want analysed, in a meal photo. Progress photos and check-in photos are never sent to OpenAI.

Community and photos

Publishing to the community is optional. Published stacks are visible to other signed-in Forge users, who can upvote, comment on, clone, report or block them. Every photo you publish is screened automatically by OpenAI's moderation model before it is stored: photos that fail are refused, and anything borderline — or anything the screening could not decide — is held out of the feed until a person has reviewed it.

Before/after photos you publish are stored in a private storage bucket. There is no address a stranger can open: the app requests each photo through a short-lived link that our storage service issues only to a signed-in Forge account, and that link stops working within the hour. Any signed-in Forge user can see the photos on a stack you publish, and anyone who can see a photo can screenshot or save a copy, so only publish photos you are comfortable other members seeing.

If you keep “Blur my face” on, Forge pixellates every face its on-device detector finds before the photo is uploaded, and warns you before publishing if it found no face. Face detection can miss a face, so only publish photos you are comfortable other members seeing.

If you post anonymously, your handle and initials are not shown with the post. We can still see which account posted it, which we need for moderation.

Forge has no field for vendor or sourcing details; a server rule rejects comments containing vendor or sourcing links, and any other sourcing content is removed when reported.

You can delete a stack or comment you published from within the app. Deleting your account removes all of them, including photos.

Subscriptions

Forge Pro is sold through Apple’s App Store as an auto-renewing subscription, offered monthly or yearly. The exact price, the billing period and any free trial are shown on the subscription screen in the app and confirmed by the App Store before you are charged, in your own currency. Apple bills you, and we never see your payment details.

RevenueCat processes App Store purchases for us. Its SDK sends RevenueCat your app user id (the same id as your Forge account), the App Store receipt, your device’s identifier for vendor, your IP address and your device and app version, and RevenueCat keeps your purchase history — products, dates and status — so that your subscription unlocks whenever you sign in. RevenueCat does not receive your name or email.

Subscriptions are managed in your Apple Account settings under Subscriptions.

Who we share with

We share data only with the five services that make Forge work, each for a single purpose. None of them may use your data for their own advertising.

We may also disclose data if the law requires it or to protect the safety of Forge users. If Forge is ever transferred to a new operator, your data would move with it under this policy.

If you use Forge from outside the United States, your data is transferred to and stored in the United States.

Retention and deletion

Server data is kept for as long as your account exists.

You can delete your account in Settings, or from the Manage account sheet on the subscription screen. Deletion runs immediately on our server and removes your sign-in, profile, onboarding answers, stacks, comments, upvotes, follows, blocks, reports, Locked In pledge, meal-scan counter and every photo you uploaded.

What remains after deletion: Apple’s records of your App Store purchases, which Apple manages; RevenueCat’s purchase records keyed to your account id, which contain no name or email and are needed for refunds and restores; any meal photo already sent to OpenAI within its 30-day abuse-monitoring window; and emails you sent to support, which stay in our support mailbox unless you ask us to delete them.

Deleting your account does not touch the data on your phone. Delete the app to remove doses, vials, protocols, weights and photos stored there.

Your rights

Requests go to support@forgepeptide.app. To protect your account we will ask that requests come from the email address on the account. We do not treat you differently for exercising these rights.

Consumer health data

This section is for residents of Washington, Nevada, Connecticut and other states with consumer health data laws. It describes the consumer health data Forge handles, which is the data you enter about the compounds you use and your body.

California residents

We do not sell your personal information and do not share it for cross-context behavioural advertising, and we have not done so in the past 12 months. You have the right to know what we collect, to delete it, to correct it and not to be discriminated against for exercising these rights. Use account deletion in the app or email support@forgepeptide.app. Because Forge runs no tracking, there is nothing to opt out of.

Children

Forge is for adults aged 18 and over. Onboarding asks your age and we do not knowingly collect data from anyone under 18. If we learn that an account belongs to someone under 18 we delete it. If you believe that has happened, email support@forgepeptide.app.

Security

Data travels between the app and our servers over HTTPS, and our hosting provider encrypts stored data at rest. No system is perfectly secure, so only publish what you are comfortable sharing.

Changes

When this policy changes we update the date at the top. If the change is material we will say so in the app’s release notes or by email to your account address.

Contact

A&A Digital LLC, operator of Forge, United States.

Email: support@forgepeptide.app