Motimove
Banner

Privacy regulations

Privacy Statement MotiMove

Last updated: August 28, 2026

MotiMove respects the privacy of all users of its application, website, and services. We ensure that the personal information you provide us is always treated confidentially, securely, and in accordance with applicable privacy legislation, including the European General Data Protection Regulation (GDPR).

In this privacy statement, we explain what data we collect, why we collect it, how long we retain it, and what your rights are.

Not a medical device: MotiMove is a supportive application for tracking daily movement and lifestyle. The app can be used as a tool to encourage physical activity. The app is explicitly not a medical device, does not provide medical diagnoses, does not offer automated medical advice, and is not a substitute for professional medical advice or treatment. The app provides general tips based on user input; these tips are the same for every user.

1. Who is the Data Controller?

The controller responsible for processing your personal data via the MotiMove app and website is:

  • Organization: KVSV B.V.
  • Address: Hoogveldseweg 7, 5451 AA Mill, The Netherlands
  • Chamber of Commerce (KvK) Number: 80584357
  • Email address: info@motimove.com
  • Data Protection Officer / Privacy Contact: dpo@motimove.com

2. What data do we collect and for what purposes?

To ensure the MotiMove app functions properly, we collect personal data. In our systems and database (Firebase), your data is linked to a unique identification code (Firebase UID).

We process the following categories of data:

A. Account and Profile Data

  • Data: Email address, name, login method (email, Google, Apple, or anonymous), and subscription status (free/premium).
  • Purpose: Creating your account, authentication, granting access to features, and managing subscriptions.
  • Legal Basis: Performance of a contract.
  • Guest accounts: If you use MotiMove with a guest account, you can use the app without providing your name, email address, Apple account, Google account, or other directly identifying login details. In that case, your app data is linked only to an anonymous technical identifier and MotiMove cannot directly identify you as an individual from your account details.

B. Self-Entered Usage and Journal Data

  • Data: Focus points, selected activities, journal notes, perceived load capacity/pain scores, and feedback.
  • Purpose: Exclusively to provide a personal insight/logbook for the user into their own movement patterns and perceived physical load.
  • Important note: The entered pain scores and journal data are not used by algorithms or the app to generate medical advice, treatment plans, or diagnostic recommendations. Only general tips are provided.
  • Legal Basis: Performance of a contract and explicit consent.

C. Activity and Fitness Data (Optional)

  • Data: Completed workouts or active minutes imported from external apps (such as Apple Health or Google Fit).
  • Purpose: Automatically importing your general physical effort to track your personal fitness goals within the app.
  • Important note: You can disable this integration and withdraw consent at any time via your phone’s settings.
  • Legal Basis: Explicit consent (opt-in).

D. Technical and Device Data

  • Data: Device type, operating system, language settings, time zone, and IP address.
  • Purpose: Ensuring correct display, technical optimization, and secure operation of the app.
  • Legal Basis: Legitimate interest (security and functionality).

E. Push Notifications

  • Data: Preferred times, settings, and a unique device token.
  • Purpose: Sending reminders for your exercises, movement, or journal entries.
  • Important note: The user can turn off notifications at any time in their device settings.
  • Legal Basis: Explicit consent.

F. Analytics and Crash Reports

  • Data: Fully anonymized usage statistics (not linked to a UID or individual) and technical error logs (crash logs) linked to your unique Firebase UID.
  • Purpose: Detecting technical errors, optimizing network and app stability, and analyzing app performance.
  • Legal Basis: Explicit consent.

3. How do we secure your data?

Security is our top priority. We take appropriate technical and organizational measures to protect your data against loss, unauthorized access, or misuse:

  • Encryption: All data transfer between your device and our servers is encrypted (TLS/SSL). Stored data is also encrypted at rest.
  • Pseudonymization: Data within the application is linked to a unique identifier (UID) rather than your direct identity.
  • Secure Servers: Our databases (including Google Firebase) use secure, ISO/IEC 27001-certified servers located within the European Economic Area (EEA), specifically the Benelux region.

4. Retention Periods (How long do we keep your data?)

We do not store your personal data longer than is necessary for the purposes for which it was collected:

  • No account: If you use MotiMove without creating an account, your data will be retained for 90 days after your last login.
  • Active accounts: Your data is retained unless you request its deletion.
  • Account deletion: If you request the deletion of your account, all directly identifiable personal data and user input will be permanently removed from our active systems and backups within 30 days. To request data deletion, send an email to info@motimove.com specifying the email address associated with your account.
  • Aggregated / Anonymous data: We may retain anonymized statistics (from which no individual can be identified) for research and improvement purposes.
  • Guest accounts: If you use MotiMove with a guest account, your use of the app is fully anonymous from an account-identification perspective. Because the guest account is not linked to an email address, Apple account, Google account, or other recoverable login method, MotiMove cannot restore access to that guest account if you delete the app, reset your device, or otherwise lose access to the guest account. In that situation, the data linked to the guest account will no longer be available to you and may be permanently lost.

5. Sharing data with third parties

MotiMove never sells your personal data to third parties.

We only share data with external service providers (processors) necessary for the operation of our app and services, such as:

  • App Developer: Incentro (https://www.incentro.com)
  • Cloud and Hosting Providers: Google Cloud / Firebase (for database management and authentication).
  • Payment and Subscription Services: Apple App Store, Google Play Store, or RevenueCat (for processing in-app subscriptions).
  • Analytics and Crash Reporting Services: Firebase Analytics and Crashlytics.

We have entered into Data Processing Agreements (DPAs) with all of our processors to guarantee that your data complies with the same strict European security and privacy standards.

6. Your Rights under the GDPR

Under privacy laws, you have comprehensive rights regarding your personal data:

  • Right of Access: You have the right to request information on what personal data we process about you.
  • Right to Rectification: You can request the correction or completion of inaccurate or incomplete data.
  • Right to Erasure ("Right to be Forgotten"): You can submit a request to permanently delete your account and all associated data.
  • Right to Restriction of Processing: You can ask us to temporarily suspend the processing of your data.
  • Right to Data Portability: You have the right to receive your data in a structured, commonly used, and machine-readable digital format.
  • Right to Object: You can object to the processing of your data.
  • Right to Withdraw Consent: You can withdraw consent (e.g., for push notifications, cookies, or Apple Health/Google Fit integrations) at any time via the app, website, or your device settings.

How to exercise your rights: You can submit a request directly by emailing info@motimove.com. To verify your identity, we may ask for additional information. We will respond to your request within 30 days.

7. International Data Transfers

Because we use cloud service providers (such as Google), data may occasionally be processed outside the European Economic Area (EEA). When this occurs, we ensure it only takes place in countries offering an adequate level of protection (such as under the EU-U.S. Data Privacy Framework) or based on Standard Contractual Clauses (SCCs) issued by the European Commission.

8. Cookies and Similar Technologies (Website)

When you visit our website, we use cookies and similar tracking technologies to ensure the website functions properly, to analyze site traffic, and to optimize your user experience.

We use the following types of cookies:

  • Essential / Functional Cookies: Necessary for the technical operation and basic functionality of the website (e.g., keeping you logged in).
  • Analytical Cookies: Used to gather anonymized statistics about how visitors interact with our website, helping us improve our services.
  • Marketing / Tracking Cookies (Optional): Used to track visitors across websites to build a profile of your interests and display relevant advertisements (only enabled with your explicit consent).

Managing Cookies: When you first visit our website, you will be presented with a cookie banner where you can manage your preferences or withdraw your consent at any time through the cookie settings on our website or via your browser settings.

9. Complaints with Supervisory Authorities

If you have a complaint about how we handle your privacy, please let us know so we can resolve it together. You also have the right to file a complaint with a national privacy supervisory authority (such as the Dutch Data Protection Authority / Autoriteit Persoonsgegevens or the UK Information Commissioner's Office / ICO).

10. Changes to this Privacy Statement

We may update this privacy statement from time to time to remain compliant with new legislation, app updates, or website changes. In the event of material changes, we will notify you through the app, website, or via email.