Privacy Policy

Version 2.6 — last updated September 14, 2026

Ultimate Team Posters, LLC ("Built Different", "we", "us") runs a parent-managed youth fitness membership — workouts, live classes and progress tracking for children and teenagers aged 5 to 17 — and the builtdifferentapp.com website. Adults create and control every account; nobody under 18 signs in on their own. This policy explains what we collect, why, who we share it with, and what you can ask us to do about it.

It covers parents and account holders, other adults added to a family, people who contact support or join the waitlist, and visitors to our website. It describes the Service as it is today. Features we have built but not switched on — coach accounts, teams, the avatar and family-versus-family standings — are left out of it deliberately: if we switch any of them on we will update this policy, tell you, and ask for whatever fresh consent the change requires first. For anyone under 13, our Children's Privacy Notice is the document that applies — it has more detail and, where the two differ, it controls. For teenagers aged 13 to 17, this policy is the one that applies, and the section below explains what is different about their profiles.

What we collect

Your account. Your name, email address, an optional phone number, and a password, which is never stored in readable form — we keep only a salted one-way hash, used to check future sign-ins. Sign in with Apple is not available yet; if we add it, we will update this policy before we collect the identifier Apple would give us. We also record the family team name you choose, whether your email or phone has been verified, your email, SMS, and push preferences, and the date, time, and version of the legal documents you accepted.

Your device, if push notifications are ever switched on. We do not currently send push notifications, and the app does not ask for the permission or collect a device token. If we introduce them, allowing notifications would have Apple issue a token that identifies your copy of the app on that phone, and we would store it against your account so a reminder could reach you, along with the app version and when we last saw the device. It would not be an advertising identifier and could not be used to track you across other apps. Turning notifications off, or signing out, would delete it.

Your family. The profiles you create for children and teenagers. Also any other adults you add — a display name and how they relate to your family, such as "Dad" or "Grandma" — which you supply, not them.

An email address from a participant who has turned 18, if they give us one. We do not hold an email address for anyone under 18. When a participant turns 18 their profile is frozen and they have 60 days to claim it, and at that point they may give us an address of their own so we can write to them about their own record instead of only writing to you. We confirm it with a code, use it for nothing else, and they can remove it at any time. See "Turning 18" below.

An adult you add signs for themselves. You can add them, but you cannot accept the waiver on their behalf: one adult cannot give away another adult's right to bring a claim, however closely related. So before any workout is counted for them, they type their own name and accept the waiver and this policy on the device. We record that name, the date, and the version and exact wording of the waiver they accepted. Until they do, they are listed on your account but their activity is not recorded.

Activity. Workouts completed, classes attended, active minutes, and workouts you log by hand, for you and for the adults on your account as well as for your children.

Membership. Apple processes the purchase and tells us the product, status, renewal dates, and a transaction identifier. We never receive or store your card number, bank details, or billing address.

Getting in touch. If you contact support, the name, email, and message you send. If you join the waitlist, your email, optional name, your child's age range, and which page you signed up from.

Technical. Ordinary server and error logs needed to run and secure the Service, such as the time of a request and diagnostic details when something fails. Also the device time zone, so streaks and deadlines land on the right local day.

What we do not do

How we use it

Teen profiles, ages 13 to 17

A teenager's profile works the same way a younger child's does, and we collect the same things about them: a display name, date of birth, fitness level and goal, and the activity they complete. What changes at 13 is which law applies. The Children's Privacy Notice and the verifiable parental consent it describes exist because of a law that covers children under 13; from 13 this policy governs instead.

What does not change is who is in control. The profile belongs to your account. You create it, you consent to it when you add them, you can review, correct, export or delete it, and you can withdraw that consent by deleting the profile. A teenager does not get their own login and cannot change these settings, so nothing about their profile is theirs to give away.

We think a teenager old enough to use the app is old enough to be told what it records about them, and we would encourage you to show them this policy. Some states give teenagers rights of their own over their information; where they do, we will honour a request from the teenager as well as from you.

Turning 18

When a participant turns 18 they stop being a minor in our care, and their record should stop being held under a consent their parent gave for a child. We email the account holder 30 days beforehand.

On their birthday the profile is frozen, not converted. It stops recording new activity and leaves the leaderboard, and an unclaimed adult place is created beside it. Nothing is carried across and nothing is deleted at that point: we will not manufacture an adult member who has accepted no terms, signed no waiver, and never agreed that the account holder may keep managing their fitness record.

The frozen profile waits 60 days to be claimed. The person claims it by accepting our Terms, this policy and the waiver in their own name, in the app. That is the moment their total active minutes carry across to their adult place and the minor profile is retired. Everything can be read and exported throughout.

While it waits, the account holder can still see the profile and export it, because it sits on their account and they are the only person who can open the app. They can also delete it before the 60 days are up. We will not stop that — it is their account, and they can close the whole thing at any time — but we will not let it happen quietly either: we record it, and if the person whose record it is has given us an address of their own, we tell them it happened and how long they had left. Nothing new can be added to the profile by anyone.

We have never held that person's own address — the account is the account holder's, and we do not collect an email address for a child. So the app shows a standing notice on the frozen profile, and at that point it offers them the chance to give us an address of their own. If they do, we send a code to it to confirm it is theirs, and we then write to them directly about their own record. We use it for nothing else, they can remove it at any time without a code, and giving one is optional — refusing changes nothing about their right to claim, export or delete.

If nobody claims it within 60 days, the frozen profile and the activity behind it are deleted. A record no adult has agreed to hold is not one we should keep. We send a warning 30 days, 7 days and 1 day before that deadline — to the account holder, and to the person themselves where they have given us an address — because a single notice two months earlier is not a warning anyone is still holding when it matters. Export it first if you want to keep it.

We will not delete a record we are legally required to preserve. If a profile is subject to a legal hold or an unresolved request from you or an authority, the 60-day deletion does not run against it until that is over.

We treat 18 as the age at which this happens in our product. That is not a statement about when any particular state treats a person as having full legal capacity.

Cookies and similar technologies

We use one strictly necessary cookie, to keep an administrator signed in. The mobile app uses a sign-in token stored on your device for the same purpose, and would use a push token if push notifications were ever switched on, as described above. That is all — no analytics, advertising, or tracking cookies, on the website or in the app, which is why you are not asked to accept a cookie banner.

Who we share it with

We do not give your personal information to anyone to use for their own purposes. We use a small number of service providers to run the Service. A provider is allowed to handle your information only where it acts on our instructions alone, is not permitted to use the information for its own purposes, and has given us written assurances that it will keep the information confidential and secure:

Confirming your email, and each participant's waiver

Before you can create a profile for anyone, we confirm your email address by sending a code to it. Only then does the app ask about the participant. You also accept the waiver for each participant by name as you add them, rather than once at signup, and we record the version and exact wording you were shown alongside it.

The leaderboard carries no names

Where a participant appears on the cross-household leaderboard, other families see a nickname we assign — not the display name on the profile, and not a last initial — together with an age group, active minutes and a rank. The nickname comes from a fixed list of words we control; nobody types it. The participant sees their own name on their own row. Their name and the reference we hold for them do not reach another household, which is why a child under 13 can take part on the same terms as anyone else. It is not a disguise: somebody who already knows a participant, and roughly how much they exercise, may still recognise their row from the age group, the minutes and the rank.

Teenagers are asked for their own assent where it matters

A participant aged 13 to 17 does not hold their own login, and their parent manages the account. That does not make optional processing their parent's to decide alone. Before a 13-to-17-year-old appears on the leaderboard, we ask them to affirm for themselves that they want to, in addition to the account holder turning it on: both are needed, and either of them can withdraw it at any time, immediately. That record shows the assent screen was completed on the device; it is not identity verification, and it is not the teenager giving up any legal right. Before their first workout they also see a short safety notice written for them, and we record that they saw it — that is evidence they were told, not the participant giving up any right.

Health data

Some states — Washington and Nevada among them — treat fitness and activity information as "consumer health data" and require a separate policy for it. Ours is the Consumer Health Data Privacy Policy, and it explains exactly which categories we collect, where they come from, who they are shared with, and how to get a copy, withdraw consent, delete it, or appeal a decision. We do not collect medical or clinical records, diagnoses, prescriptions, treatment information or medical history.

Turning the leaderboard on and off

The leaderboard ranks participants by active minutes, either against everyone or against participants in the same age group. A participant is on it only if it has been turned on for them. New profiles are off, and turning it on needs a code emailed to the account address. Children under 13 are also covered by our Children's Privacy Notice.

A participant who is not on the leaderboard is not shown other participants either. It can be turned off at any time, in the app, with no code and no waiting, and doing so costs nothing that has been earned.

A participant aged 13 to 17 does not hold their own login, but the leaderboard is about them, and it is the one feature that shows them to families outside their own. We will act on a request from the participant themselves to come off the leaderboard, whether or not the account holder made the request, and we will do it before we ask any questions about who is asking. Contact us at the address at the end of this policy.

Within the Service, information is shared as you direct: adults you add to your family can see your family's activity. Live classes run on a third-party platform with its own privacy practices — see our Terms of Service.

We may also disclose information where the law requires it, to protect someone's safety, or to establish or defend legal claims. If we are ever part of a merger or sale, we will tell account holders before their information moves, and it stays subject to this policy. A current list of our service providers is available on request.

How long we keep it

How we protect it

No system is perfectly secure. If a breach affects your information, we will notify you and the relevant authorities as the law requires.

Your choices and rights

Wherever you live, you can ask us to:

Most of this is available directly in the app — update your profile, change message preferences, export your data, or delete your account. For anything else, email hello@builtdifferent.com from the address on your account. We will respond within the time the law allows, and we may need to confirm who you are first. We will never treat you worse for exercising any of these rights.

Residents of California and other US states with privacy laws have these rights by statute, including the right to opt out of the sale or sharing of personal information and of targeted advertising. We do none of those things, so there is nothing to opt out of — but the rights above are yours regardless, and you may use an authorised agent to exercise them. If we ever decline a request, we will explain why and how to appeal.

Where your information is held

We are based in the United States and store information there. If you use Built Different from outside the US, you are sending your information to the US, where privacy law differs from your own.

Changes to this policy

We will post any update here with a new date at the top. If a change materially affects how we handle your information, we will tell account holders before it takes effect, and where the law requires consent, we will ask for it.

Contact us

hello@builtdifferent.com, or Ultimate Team Posters, LLC, 2170 Dalewood Ct, Plainfield, IL 60586.