SPL:TS

Privacy

How Splits handles plans, email, and watch data. Updated September 25, 2026.

Who Operator

Chris Schmitz, sole proprietor, doing business as Splits, is the data controller for this service. Contact: chris@splits.coach.

Pin No account

You can generate a plan without signing in. The draft and calendar live in your browser (localStorage) and, if you copy a share link, in the URL hash. We do not receive that data unless you send us the link or later save the plan to an account.

Mail Accounts

If you sign in, we store the email address you type and a session so the magic link can open your weeks. We send that link through Resend. We do not use the address for ads or a newsletter unless you asked for the weekly plan mail.

Talk Coach conversation

If you sign in and open Coach, we store one thread for your current plan: your messages, the coach replies, and short observations the coach writes down (injury notes, travel, preferences). Those stay with the account until you ask us to delete them.

To answer, the coach reads your saved plan, matched activities, and day notes. We send that structured context plus the thread to a language model through Vercel AI Gateway. We do not send raw COROS tokens. The model cannot change the plan from this conversation. A later proposal still does not rewrite the plan until you accept.

Plan Saved plans

A signed-in save stores the full training plan (race, weeks, workouts, checkoffs) in Neon Postgres, keyed to your account. Older revisions may be kept when the plan itself changes. The website and API run on Vercel. Neon, Vercel, and Resend may process that data; it is not sold as a product dataset.

Watch COROS and other providers

Connecting COROS is optional and user-initiated. After you sign in, Splits sends you to COROS OAuth. We receive an access token, refresh token, and openId so we can call the COROS Open API on your behalf.

Splits is a user-authorized destination for your own activity data. We pull your sports-list row from COROS and store that JSON as returned: provider activity id, name, sport type, date, start/end time, timezone, distance, duration, calories, average pace, cadence, steps, heart rate and elevation when the list row includes them, device name, planned-workout id when present, and a FIT file download URL. Matching onto planned days still uses id, date, sport, distance, and duration. We also store athlete-authored RPE, soreness, and notes for a day.

We do not currently download GPS traces, FIT files, lap streams, or heart-rate samples. The FIT URL is stored so later coaching analysis can fetch the file; this policy will name that download before we request the bytes.

We do not resell COROS data, put it in an ads graph, or share it with other athletes. Disconnecting COROS in the app deletes the tokens and the synced activity rows for that connection. RPE, soreness, and notes you typed stay with your account until you clear them or ask us to delete the account. Email us if you want the account and saved plan deleted too.

Why Purpose

We use this data to write and save your plan, match completed runs to planned days, compare planned vs actual, email you a magic link or the week you asked for, and answer coach questions about your own cycle.

We do not use COROS data, or any other personal data, to train machine-learning models. We do not sell a coaching marketplace.

Lock Security

The site is served over HTTPS. Connecting a watch uses COROS OAuth; we never ask for your COROS password. Access and refresh tokens live in Neon Postgres. They are not stored in your browser and are not sent to the client. Disconnecting deletes those tokens. We will honor COROS rate limits.

Keep Retention

Account, plan, connected-watch data, day notes, coach messages, and coach observations stay until you disconnect, delete, or ask us to erase them. Magic-link mail is handled by Resend under their retention. Browser storage stays on your device until you clear it.

Rights Your rights

You can ask for a copy of what we hold, a correction, or deletion. Email chris@splits.coach. If you are in the EEA, UK, or a similar regime, that includes access, rectification, erasure, restriction, and objection. We do not sell personal information as that term is used in the CCPA.

Kids Children

Splits is not directed at children under 16. Do not create an account or connect a watch for someone under 16.

Move Transfers

Website and API: Vercel. Database: Neon. Mail: Resend. Coach replies: Vercel AI Gateway. Watch authorization: COROS, under their own privacy policy once you authorize the connection. Account, plan, tokens, synced activity rows, coach messages, and observations live in Neon.

Neon, Resend, and Vercel may process data in the United States. We do not send your COROS tokens to other third parties. Coach turns send structured plan/activity context and the thread through Vercel AI Gateway.

Route maps: when you open an activity with GPS, your browser loads map tiles from OpenFreeMap (OpenStreetMap data, which may be served through Cloudflare). OpenFreeMap receives your IP address and which map tiles cover the route's area. Your GPS trace itself is drawn in your browser and is not sent to them.

Edit Changes

If the data we collect or the purpose changes in a material way, we will update this page and the date above.

Privacy Terms