Last updated: August 21, 2026
Upscore ("we", "our", "the app") is a score tracking, fitness, and AI coaching tool for Dance Dance Revolution (DDR) players. This policy describes what data we collect, how we use it, who we share it with, and your rights. It applies to the Upscore iOS and Android apps, the Upscore Apple Watch app, and the Upscore website at edi.dance.
Your email address and authentication credentials, provided via Google OAuth or email/password sign-in. We use Supabase Auth to manage accounts. We never see or store your Google password.
By default your avatar is a cartoon face generated from your account, and no image is collected. If you choose to set a profile photo, the photo you select is cropped and resized on your device to a small square image, then uploaded to our storage and linked to your account.
Two things happen before it leaves your device. The image is re-encoded, which removes embedded metadata such as GPS location, camera model, and capture time from the original photo. Only the cropped square is uploaded; the rest of the original image is not.
Your profile photo is stored in a private bucket and served to you over an expiring link. It is visible only to you — Upscore does not currently show your avatar to other players. You can remove it at any time in the app under Profile, by tapping your avatar and choosing "Remove photo", which deletes the stored image and restores your generated face. It is also deleted when you delete your account.
Upscore does not perform face recognition or any other biometric analysis on your photo. It is stored and displayed, nothing more.
If you grant permission, Upscore reads heart rate and active energy from Apple Health during your dance sessions, and reads step count for session summaries. Upscore also writes each session back to Apple Health as a HIIT workout (with steps and energy) so it counts toward your Activity rings. Heart-rate and session summaries are stored in our database so we can show you live BPM, training zones, and post-session analytics.
We use your health and fitness data only to provide these in-app features. In line with Apple's requirements, we do not use health or fitness data for advertising or marketing, we do not sell it, and we do not share it with any third party (including our analytics, crash-reporting, or AI providers) for data mining or any purpose other than delivering Upscore's features to you. You can revoke Upscore's access to Apple Health at any time in the iOS Settings > Privacy & Security > Health, or in the Apple Health app.
Scores, grades, clear lamps, flare levels, and related play data that you import via Sanbai sync, PhaseII, CSV upload, or e-amusement sync. This is stored in our database and used to power the app's features.
Goals you create and app settings you configure.
Messages you send to Edi (the AI coach) are processed in real time to generate responses (see "AI Chat" below). We log usage metadata such as token counts, the model used, and response time. Your conversation history is stored locally on your device; we do not store full conversation transcripts on our servers.
If you subscribe to a paid tier (Pro or League), purchases are processed by the app store you buy through — Apple (App Store) on iOS or Google (Google Play) on Android. We use RevenueCat to manage subscription status. We receive your subscription state and a RevenueCat user identifier; we do not receive or store your full payment card details — the app store handles payment.
We use PostHog to understand how the app is used (pages visited, features used, and similar product events) so we can improve it. When you are signed in, these analytics are associated with your account identifier and email. Analytics events do not include your health or fitness data.
We use Sentry to capture crashes and errors so we can fix bugs. Crash reports may include device type, operating system version, and technical context about the error.
Edi is powered by Anthropic's Claude AI, with Google's Gemini used as a fallback when needed. When you send a message, your question and relevant score context are sent to the AI provider's API to generate a response. We do not send your health data to the AI providers. We do not use your conversations to train AI models. The applicable provider's data-usage policy also applies to this processing — see Anthropic's Privacy Policy and Google's Privacy Policy.
We do not sell or rent your personal data. We share data only with the service providers that operate Upscore, and only as needed to run the app:
Each provider is permitted to use your data only to provide its service to us, and is required to protect it consistent with this policy.
Your data is stored in Supabase, hosted on AWS in the United States. All data is transmitted over HTTPS. Database access is protected by Row Level Security, so users can only access their own data. If you access Upscore from outside the United States, your data will be transferred to and processed in the United States.
We retain your data for as long as your account is active. If you request deletion, we remove your account and associated data within 30 days, except where we are required to retain limited records (for example, transaction records) to comply with law.
A profile photo is kept until you remove it or delete your account. Removing it deletes the stored image. Because images are cached by your device and by content delivery networks for performance, a copy already downloaded to a device may persist in that device's cache for a period after removal.
Depending on where you live (for example, under the EU/UK GDPR or the California Consumer Privacy Act), you may have additional rights, such as the right to correct, restrict, or port your data. Contact us to exercise any of these rights.
Upscore is not directed at children under 13. We do not knowingly collect personal information from children under 13. If we learn that we have collected data from a child under 13, we will delete it promptly, including any profile photo.
We may update this policy from time to time. Material changes will be communicated through the app or via email. The "Last updated" date at the top reflects the most recent revision.
For privacy questions, data deletion requests, or concerns:
rinon@edi.dance