The short version: Why Not runs on your phone — your plans, your workouts, and your route maps are calculated and stored there. Why Not does need an account, and your account holds your profile, your membership status, a backup copy of your training plan so you can get it back on a new phone, and (when it launches) the runs you choose to share. If you connect Strava, your runs go to Strava too. We don't sell your data, we don't show ads, and we don't track you across the internet. We're a small shop trying to ship a good app.
Why Not is a running coach app for iPhone and Apple Watch, operated by Why Not Run LLC, a Massachusetts, USA company. You can reach us at support@whynot.run.
The core of Why Not is local-first: your training is generated, stored, and read on your phone (and, where relevant, mirrored to your paired Apple Watch). No server does the thinking. Here is what the app handles:
Because Why Not needs an account, one part of that list also lives on our servers: a backup copy of your current training plan is saved to your account. That copy is what gets your plan back on a new phone, or after you delete and reinstall the app, instead of making you rebuild it from scratch — the same reason you'd want a backup of anything else you'd hate to lose.
What's in it: your plan and its workouts — including the ones you've finished, with their distances, paces, and effort ratings — the answers you gave the setup wizard (your goal, your race name, date, and location if you entered one, your goal times, and any recent race times), your coaching adjustments, and your unit preference. It's tied to your account, nobody else can read it, and it updates quietly in the background whenever your plan changes.
Some of those numbers can start life outside Why Not. When a run you imported — from Strava or from Apple Health — checks off a planned workout, the distance and pace recorded on that workout came from the imported run. So a pace that originated on your Garmin and arrived through Strava can end up in the plan backup, as part of your training history. It's still only those plan numbers — a distance and a pace on a finished workout — never the imported run itself, and never its route.
What's not in it: your routes. The backup carries no GPS data at all — your route maps stay on your device and in Apple Health, as described in the next section.
Honest limitation: this backup isn't a feature you switch on, and there's no off switch for it while you're signed in — it's part of how the account works. Deleting your account deletes it, and we spell out exactly what that removes below.
If you record a run with Why Not (on the phone or the watch), the app uses GPS to calculate live pace and distance and to draw your route map. Your route is stored on your device and in your Apple Health data. We never hold a full route on our servers.
There are exactly two ways a route can leave your device, and both are things you switch on yourself:
So the promise is specific rather than sweeping: your full route never reaches our servers — the most we would ever hold is the trimmed preview of a run you deliberately shared. If you connect Strava, your full route reaches Strava, because that is the entire point of connecting it.
There is one use of location that isn't a run at all: your home screen shows the current conditions where you are, which needs an approximate fix. That one is described under "Permissions the app requests" below.
If you connect Apple Health, Why Not both reads and writes workout data so your plan reflects everything you actually do:
Why Not requires an account. That's how your plan backup, your membership, and (when it launches) anything social stay attached to you rather than to one particular phone. Sign-in is through Sign in with Apple — in the app and on this website's account portal. When you sign in we store:
Account data is stored with our infrastructure provider, Supabase, on servers in the United States. You can delete your account at any time inside the app (or by emailing us) — deletion removes your profile, your plan backup, any shared runs, and your follow relationships.
Apple processes all payments through the App Store — we never see your card number or billing details. We use RevenueCat, a subscription-management service, to know your subscription status (trial, active, lapsed) so the app can unlock the right features; when you're signed in, that status is linked to your account so you can also see it on the web. Managing or canceling a subscription always happens through Apple — our membership pages show your status and link you to Apple's subscription settings.
When social features launch, sharing is opt-in and followers-only. If you choose to share a run, your followers see its stats (distance, pace, time, run type) and a route preview. Before a route ever leaves your device, the app trims and blurs its start and end points. Honest limitation: trimming hides where a run started and ended, but a route can still pass near places you frequent — share with people you trust, and use the per-run toggle when in doubt. You can remove a shared run at any time (deleting a run retracts it for everyone), block or report other users, and deleting your account removes everything you shared.
Strava. Connecting your Strava account is opt-in and off until you turn it on. You authorize it on Strava's own screen — we never see your Strava password. Once connected, data moves in both directions, each with its own switch in the app's settings:
We store the access tokens Strava issues so the connection keeps working; they're used only to talk to Strava on your behalf, and Strava expires them every few hours. One thing that comes with the territory: Strava may monitor and collect usage data about how this integration is used, and may use that data for its own business purposes. That's true of every app on the Strava platform, and it happens on Strava's side of the connection.
Deleting works at three levels, and it's worth being precise about them:
What you've already sent to Strava lives in your own Strava account — delete it there if you want it gone. Your use of Strava is governed by Strava's own privacy policy.
We may later add connections to recovery-data services such as WHOOP, Garmin, or Oura — those would be opt-in in exactly the same way, and we'll update this policy before any of them ships.
If you send a bug report from inside the app, we receive what you wrote plus basic technical context (app version, device model, iOS version) so we can fix the problem. Bug reports go to our own backend, and may be surfaced in the internal support tooling we use to triage them, so a human actually sees the report and acts on it. They're kept only as long as needed to resolve the issue.
In the app: crash reporting uses Apple's built-in system if you have it enabled in iOS Settings; those reports are anonymized by Apple. The app itself contains no third-party analytics SDK — no Google Analytics, no Mixpanel, no Meta SDK, no AppsFlyer, none of it. Nothing you do inside Why Not is reported to an analytics company.
This website: whynot.run is a different thing from the app, and it's fair to be plain about it. These pages — including this one — load Google Analytics 4 so we can count aggregate traffic: how many people visit, which pages they read, roughly which country they're in. We use it to know whether anyone is reading, not to build a profile of you, and it is never joined to your app data, your account, or your training. Any tracker blocker stops it.
Why Not is not directed to children under 13, and we do not knowingly collect data from anyone under 13. If you believe a child has created an account, contact support@whynot.run and we will delete it.
Depending on where you live, you may have rights to access, correct, delete, and export your data. Here's how that works with our split of local and server data:
On-device data lives as long as the app is installed. Account data is kept until you delete your account. Bug reports are kept only as long as needed to fix the issue. We don't keep marketing lists, so there's nothing to unsubscribe from.
On your device, data is protected by iOS app sandboxing and your lock screen — keep a passcode or Face ID on your phone. On our side, account and shared data is encrypted in transit (TLS) and protected by per-user access rules on the database, hosted with Supabase in the United States. No system is perfect; if we ever learn of a breach affecting your data, we'll tell you.
If we change anything material — a new connected service, a new data flow — we'll update this page and note it in the app before the change takes effect. The "last updated" date at the top reflects the most recent revision.
Questions, concerns, or requests:
Why Not Run LLC
Massachusetts, USA
Email: support@whynot.run
This policy is written in plain English on purpose. If something is unclear, that's a bug — email us and we'll fix it.