Privacy Policy
Last updated August 15, 2026
Who this applies to
The Sculpt Network is a scheduling and class-planning tool for Pilates instructors. Signup is open — this policy covers any instructor who creates an account, not just our own team.
What we collect
- Account info:name, email address, and password (your password is never stored by us directly — it's handled by our authentication provider, Supabase, using standard salted hashing).
- Content you create: exercises, class plans, studios, and scheduled classes you add while using the app.
- Usage analytics:we use PostHog (EU-hosted) to understand how the product is used — e.g. when a plan is created or a class is scheduled — tied to your account while you're an active user.
- Signup bot-check: when you create an account, Google reCAPTCHA runs a background check (no visible challenge) to screen out automated signups, sharing standard signal data with Google under its own privacy policy.
How we use it
Solely to run the app: authenticating you, storing and displaying your own scheduling data back to you, and understanding product usage so we can improve it. We don't sell your data, and we don't share it with third parties beyond the infrastructure providers that run the app (Supabase for the database and authentication, Vercel for hosting, PostHog for analytics, Google reCAPTCHA for signup bot-protection).
Who can see your data
Your exercises, studios, class plans, and scheduled classes are private to your account — other instructors on the platform can't see them. An account flagged as an administrator can manage the shared equipment and focus-area catalogs (used across all accounts) but cannot see your scheduling data.
Deleting your data
You can permanently delete your account at any time from your profile page. This immediately and permanently removes your account and every piece of content tied to it — exercises, studios, class plans, and scheduled classes. It cannot be undone. Aggregated, de-identified product-analytics events tied to your prior usage may be retained in a form that no longer identifies you personally.
Data location & security
Data is stored with Supabase (Postgres) and access-controlled at the database level so an account can only ever read or write its own data. All traffic is served over HTTPS.
Changes to this policy
If this policy changes materially, we'll update the date above.
Contact
Questions about your data, or a deletion request you'd rather we handle directly instead of the self-serve option above? Reach out to the account owner.