Your data, plainly.
No dashboards full of jargon. Here's exactly what we hold, and why.
Last updated 8 August 2026.
Who we are
Good Either Way is run by Skiwo AS (org 916636660), a company registered in Norway, operating goodeitherway.com. This page covers what we collect about you and what we do with it.
What we collect
Your email address, your timezone, the sessions and checklist you set up, and any proof photos you snap. Payments run through Stripe directly — we never see or store your card number.
Your photos are private by default
Every proof photo lives in our S3 storage, and the only person who sees it is you — unless you flip "Show this photo to buddies" on that photo, which shows that one photo to your accepted exercise buddies until you flip it back. Not us, not other members, and not your charity. The optional profile photo you can add in Settings shows only on your own profile and account menu. Proof photos and profile photos never mix. Note that for server maintenance, backups, data migrations and the like, our systems may handle your photo files — but we will not look at them unless required by law.
Passwordless sign-in
There's no password to leak. We send you a magic link by email every time you sign in — click it, you're in.
What your email is for
Two things: sending you that magic link, and the occasional nudge about a stake or a streak. We don't sell your email, we don't spam it, and we don't hand it to advertisers.
Who else sees anything
Stripe handles your payment details under its own terms. Charities and your donor see statistics, never individual results. Your donor only sees team data at all once 5 or more people are associated with them — though be aware that on a small team, someone may be able to work out by process of elimination whether it was you who did or didn't exercise. Nobody else gets anything.
Deleting your account
You can delete your account any time, yourself, from Settings — no emailing support, no waiting on us. When it's gone, your photos, checklist, and history are gone with it, for real, not just hidden from view.
Cookies — the whole list
Start with the signed-in app, because that list is the short one: a session cookie that signs you in and protects forms, and a timezone cookie so your week ends when your Sunday does. No analytics, no advertising, no third-party tag of any kind — that is the promise we keep where you actually live. Everywhere else you only pick up what you asked for: a country and a language cookie, set ONLY when you use the country picker or the language toggle; a two-week "don't ask me again" if you wave away the notifications nudge; and, if you arrived on a friend's or a partner's invite link, a 30-day note of who to credit. Our network shield (Cloudflare) may add a short-lived security cookie to keep bots out. The public pages also carry Google's advertising tag, so we can tell whether an ad we paid for was worth it. It arrives switched off: advertising and analytics storage are both set to denied before it loads, and it stores nothing and sets no advertising cookie unless you say it may. Our own consent tool (ConsentKit — built by us, not a data broker we sold you to) is what records that answer and what unlocks the tag if you give it. If an ad did bring you, we also keep that click's id on your account so we can count the signup once — never to build a picture of you. Say no, or say nothing at all, and the tag simply never stores anything.
Questions?
Email hello@goodeitherway.com. A human reads every one.