Draft — pending professional review
This document describes what the Pure•Bred platform actually does and the policies its founders have approved. It has not been reviewed by a lawyer. It is published in this state because an accurate description of how your data and your money are handled is more useful to you than a blank page — but it is not final, and it will be replaced by a reviewed version before Pure•Bred takes a live payment.
Version 1.0-draft · Last updated 5 September 2026
What this covers
This describes what the Pure•Bred platform actually does with your information. It is written from the system itself rather than from a template, so where it says something is not collected or not shared, that is a statement about how the software is built.
What we hold
Your account: an email address, a display name, and whether you have confirmed your address. You choose the display name and it can be anything.
What you have bought: orders, payments, refunds, and any dispute. This includes the amount and the date, and it is held by our payment provider as well.
What you have done on the platform: which lessons you have opened or completed, which workouts you have started and finished, and what you logged in a session.
Your preferences: whether you want marketing email, and when you chose that.
Delivery records: when a purchased file was handed to you. This is how a refund window is decided and how a chargeback is answered.
Health and body information
Training and nutrition information you record — what you lifted, what you are aiming for, and anything similar we may add later — is treated as sensitive regardless of whether a particular law happens to classify it that way. The reason not to leak it is not that a statute says so.
It is never sent to an advertising or marketing analytics platform. That is enforced in the software in three places, including a database constraint that rejects such data outright, and not merely as a policy somebody could forget.
It is visible to you. It is visible to Pure•Bred staff only where they need it to do something you have asked for.
What we do not do
We do not sell your information. We do not share it with advertisers or data brokers. We do not build a profile of you across other websites.
We do not use your health or training information for marketing, segmentation or targeting.
Who else sees it
Stripe processes payments. Card details go to Stripe directly and never reach Pure•Bred. Stripe receives your email address and what you bought, because it has to.
Supabase hosts the database and handles sign-in. It holds what is described above on our behalf.
If you join the Society community, the community platform we use is told enough to let you in.
That is the complete list of third parties that receive anything about you today. There is no analytics or advertising vendor connected.
We send email you need — confirming your address, resetting a password, receipts. Marketing email is separate, is off unless you turn it on, and can be turned off at any time from your account without affecting anything else.
Deleting your account
You can ask us to delete your account from your account page. There is a 14-day period during which you can change your mind and nothing is removed. After that it is executed.
Deleting removes your name and email address, your training history, your lesson progress, your preferences, your community identifiers, and anything you wrote in a coaching application.
It does not remove records we are required to keep: what you bought and what you were charged, refunds, and any dispute, along with what we must retain for tax, accounting, fraud prevention, security and audit. Those records stay, detached from you — your name and address are removed from the account they hang off, so what remains is a transaction with no person attached.
This is stated plainly on the deletion page itself, before you confirm, so you are not finding it out afterwards.
Your control
You can see and change your display name and preferences at any time, see your own purchases and download history, cancel a membership without contacting anybody, and request deletion.
If you want a copy of what we hold about you, or want something corrected, ask and you will get a straight answer from a person.
Security
Access is enforced by the database itself as well as by the application, so a fault in one layer does not open your data to somebody else. Credentials that could read across accounts never leave the server and are never included in anything sent to a browser.