Purpose before collection
Each source must name its data categories, coaching purpose, legal basis, recipients and retention period before connection.
iForge / data use & decision controls
The public Performance Board uses illustrative data. Personal device, training and check-in data may only enter a member environment after identity, entitlement, purpose and consent checks have passed.
Each source must name its data categories, coaching purpose, legal basis, recipients and retention period before connection.
Device and health-related data require a distinct positive choice. Optional analytics cannot be bundled with programme access.
Collect only the observations needed for the agreed programme and do not reuse them for unrelated advertising.
AI produces suggestions and explanations. A participant can request review, challenge a suggestion and choose not to apply it.
Approve a wearable, training log or check-in separately and see the purpose before authorising it.
Stop future collection without being forced to accept unrelated optional processing.
View source, missingness, calculations and a portable copy of personal observations.
Request correction or deletion through an authenticated rights workflow.
03 / Health boundary
iForge is designed for lifestyle, training and human-performance support. It does not diagnose, treat or monitor disease and does not replace a doctor, physiotherapist or emergency service. Recommendations remain conservative, explainable and subject to human review.
The interface is prepared, but a live data connection remains blocked until every operational gate below is evidenced for the actual controller and providers.
A signed-in identity must be matched to an active membership on the server.
Controller details, processors, purposes, legal bases and rights channel must be confirmed.
Consent must be granular, recorded, versioned and as easy to withdraw as to give.
Regions, subprocessors, transfers, deletion jobs and per-source retention must be verified before ingestion.
05 / Control
The member environment must provide an authenticated route for requests and show their status. Applicable rights include: