top of page

THE MARKETING HITMAN

Privacy Policy

A Legal Disclaimer

Privacy Policy

Last updated: August 11, 2026

This Privacy Policy explains how the application WHOOP | Health & Performance Intelligence handles information received through the WHOOP API.

1. Purpose

This application is used to retrieve and analyze authorized WHOOP health and performance data for personal health, recovery, sleep, strain, and workout insights.

The application only accesses WHOOP data after the user explicitly authorizes access through WHOOP's OAuth authentication process.

2. Information We Access

Depending on the permissions granted by the user, the application may access:

  • Recovery scores

  • Heart rate variability (HRV)

  • Resting heart rate

  • Sleep information

  • Sleep duration and performance metrics

  • Daily strain and cycle data

  • Workout and activity information

  • Heart-rate-related workout metrics

The application does not request access to WHOOP information that is not needed for its intended functionality.

3. How Information Is Used

Authorized WHOOP data may be used to:

  • Maintain historical health and performance records

  • Display dashboards and trends

  • Compare current performance with recent baselines

  • Analyze sleep, recovery, strain, and workout relationships

  • Generate personalized performance observations and recommendations

The data is not used for advertising.

4. Data Storage

Authorized WHOOP data may be processed through automation infrastructure and stored in a private Airtable database for historical analysis.

Access tokens, refresh tokens, client secrets, webhook secrets, passwords, and other authentication credentials are not intentionally stored in public-facing databases.

Authentication credentials are handled through secure credential-management systems where available.

5. Data Sharing

Personal WHOOP data is not sold to advertisers or data brokers.

Data is only processed by services required to operate the application, such as automation, database, and analysis systems used by the application owner.

6. Data Security

Reasonable technical and organizational measures are used to protect stored information, including:

  • OAuth-based authorization

  • Secure credential storage

  • Restricted database access

  • Encrypted HTTPS connections

  • Webhook signature validation where applicable

No internet-based system can guarantee absolute security.

7. Data Retention

WHOOP data may be retained for historical trend analysis for as long as the application is being used.

A user may request deletion of their stored application data at any time.

8. Revoking Access

Users can revoke the application's access to their WHOOP account through WHOOP's account or connected-app settings where available.

After access is revoked, the application will no longer be able to retrieve new WHOOP data.

Previously stored data may remain until it is deleted in accordance with this policy or upon request.

9. Health Information Disclaimer

Information generated by this application is intended for general health, fitness, and performance analysis.

It is not medical advice, diagnosis, or treatment and should not replace advice from a qualified healthcare professional.

10. Changes to This Policy

This Privacy Policy may be updated when the application's functionality, integrations, or data-handling practices change.

The current version will be published on this page.

11. Contact

For questions, privacy requests, or data-deletion requests, contact:

Email: joeltl25@gmail.com

Privacy Policy

At Blue Aces, we are committed to protecting your personal data and handling it with transparency and care.

When you visit our website or interact with our services, we may collect certain information to provide, improve, and communicate our data engineering and marketing solutions. This may include information you submit directly, as well as limited technical data required to operate and optimize our website.

We only use your data where there is a clear and legitimate purpose, and we do not sell personal information. Where third-party tools are used to support our operations, they are selected with data protection in mind.

We take appropriate measures to safeguard your information and aim to operate in accordance with applicable data protection laws, including the GDPR.

Personal Data | Cookies

This Privacy Policy outlines how Blue Aces handles personal data, including what information may be collected, how it is used, and under what circumstances it may be shared.

We do not use cookies or similar tracking technologies on this website, and we do not track user behavior across sessions or third-party platforms.

This policy also explains the measures in place to protect your data, your rights regarding your personal information, and how you can exercise those rights. Where relevant, it addresses the use of third-party services and any applicable limitations regarding data collection.

We aim to provide clear and transparent information so you understand how your data is managed when interacting with Blue Aces.

bottom of page