Privacy Policy

WHOOP Personal Data Export · Last updated 6 August 2026

This is a private, personal-use application. It exists so a single individual — its owner — can download a copy of their own WHOOP data to their own computer. It is not a commercial product, it has no other users, and it does not operate a backend service that receives your data.

What the app accesses

With your explicit consent through WHOOP's OAuth screen, the app requests read-only access to:

The app requests read-only scopes. It never writes to, modifies, or deletes anything in your WHOOP account.

Where the data goes

Retention and deletion

Exported files and stored tokens live only on the owner's local machine and are deleted by deleting those files. There is nothing else to delete, because no other copy exists.

Revoking access

You can revoke this app's access at any time from your WHOOP account settings (or at developer.whoop.com). Revoking immediately invalidates the tokens and stops all further data access.

Security

All communication with WHOOP uses HTTPS. Credentials and tokens are kept in local files readable only by the owner's user account and are excluded from version control.

Children

The app is not directed at anyone under 16 and is used solely by its adult owner.

Changes

If this policy changes, the revised version will be published at this same address with an updated date.

Contact

Questions about this policy: aalfirm@gmail.com