Λ
SOC
Spartan Operations Center
privacy policy
Last updated September 7, 2026

Enterprise Business Systems LLC (“EBS”, “we”) operates Spartan Operations Center (the “app”), a tool for managing tasks, workouts, goals, meals, calendar items, and health logs. This policy explains what we collect, how we use it, who we share it with, and how you can export or delete it. The same policy covers the website at spartanops.ebsapps.tech and the iOS app, which is a native shell around that same service.

Data we collect

  • Account. Email address and a password hash. Optional nickname and avatar choice.
  • Profile. Date of birth, height, sex, activity level, unit preferences, and color theme — used to calculate optional BMR/TDEE figures you ask for.
  • Health logs you enter. Blood pressure, weight, water intake, and sleep. These are your records, typed in by you, not device sensor readings.
  • Fitness and nutrition. Workout templates and sessions, meal logs, food library items, and macro targets.
  • Organizer content. Tasks, notes, calendar items, goals, learning links, and work-hour entries.
  • Integrations. If you connect Microsoft Outlook, we store a refresh token and the Microsoft account name/email so we can sync tasks you request.
  • Diagnostic logs. Application error and warning events, plus service health information. See “Diagnostics and logging” below.
  • On-device (iOS app only). Face ID / Touch ID is evaluated on the device to unlock a signed-in session. We do not receive biometric templates. A local preference records that you have enrolled for unlock.

How we use it

We use this data to provide the app: sign you in, show your dashboards, save what you log, and (if you opt in) propose assistant actions. We do not sell personal data. We do not use health, fitness, or organizer data for advertising, and we do not track you across other companies’ apps or websites.

Health and medical disclaimer

Spartan Operations Center is a personal log, not a medical device and not medical care. Nothing in the app diagnoses, treats, or prevents disease. Blood pressure and other values are whatever you type in; the app does not measure them with iPhone sensors. Calorie, macro, BMR, and TDEE figures are estimates from standard formulas and public food data, not dietary advice. Do not rely on the app instead of a clinician.

Where the service runs

The service runs on infrastructure operated by EBS in a private datacenter in the United States — a Service Fabric cluster with a Microsoft SQL Server database on the same private network. Your account data, health logs, and organizer content are stored there. We do not use a third-party public-cloud hosting provider for this data, so there is no hosting processor to name. Physical and network access to that environment is controlled by EBS.

Diagnostics and logging

The app records diagnostic events — warnings and errors — to EBS AppLog, an internal monitoring service that EBS operates on the same private cluster. These events can include a user identifier, the page or action being performed, and technical error detail; they are not intended to contain your health, meal, or task content. Each server process also sends a periodic heartbeat with version, uptime, and resource usage so we can tell it is still running. AppLog is not a third party: it is our own system, on our own infrastructure, and the data is not sent outside EBS.

Third-party AI

The app includes an optional AI assistant and an optional AI workout generator. These features are only active when EBS has configured an AI provider for the deployment you are using, and they never send anything until you explicitly allow AI sharing in the assistant panel or in Settings.

When enabled and consented to, the feature sends your prompt plus relevant task, calendar, learning, or workout-profile context to a language model provider — currently Microsoft Azure OpenAI. Health metrics are not included in that context. You can revoke the permission at any time; new requests will not be sent until you opt in again. The provider processes the content under its own terms and privacy policy. AI output can be inaccurate and is not medical, dietary, legal, or financial advice.

Other sharing

  • Outlook. Only if you connect it. Tokens are used to read and write the Microsoft To Do / Outlook tasks you choose to sync, through Microsoft Graph.
  • USDA FoodData Central. Food-library search queries you type may be sent to USDA’s public API to look up nutrition facts. That is not tied to your Spartan Operations Center account on USDA’s side beyond the search text.
  • Third-party sign-in. The service can optionally offer “Continue with Google” or “Continue with Apple”. These are not enabled on the current production deployment — the sign-in page shows password sign-in only. If we enable them, the buttons will appear on the sign-in page, and using one means that company authenticates you and sends us an identity token plus the email you authorized. We would then store the email and a provider user id so we can sign you back in. We never receive your Google or Apple password.
  • We share data if required by law or to protect the service against abuse.

The website serves all of its own scripts and styles from spartanops.ebsapps.tech. We do not load code from third-party content delivery networks, so browsing the app does not expose your IP address to an advertising or CDN provider.

Retention and deletion

We keep your data while your account exists. In Settings → System you can:

  • Download a JSON export of your account data.
  • Clear health and goal history without deleting the account.
  • Delete the account. That removes your login and the data stored for this profile (tasks, workouts, health, meals, goals, and related records). It cannot be undone.

Face ID enrollment on the device is cleared when you remove the app. Encrypted database backups may retain deleted data for a limited period until those backups rotate, typically within 30 days. Diagnostic log entries are retained separately in AppLog and age out on that system’s own schedule.

Children

Spartan Operations Center is not directed at children under 13, and we do not knowingly collect their data.

Security

Access is protected by your password. The iOS app can additionally require Face ID or Touch ID before showing a saved session. Traffic between your device and the service uses HTTPS. No method of transmission or storage is completely secure.

Your rights and choices

  • Use the app without the AI assistant by leaving AI sharing off.
  • Disconnect Outlook in Settings.
  • Export or delete your account as described above.

Depending on where you live — including the EEA and UK under GDPR, and California under the CCPA/CPRA — you may have the right to access, correct, delete, or receive a portable copy of your personal data, and to object to or restrict certain processing. The export and delete tools in Settings cover most of these directly. For anything else, or to raise a complaint, contact us using the details below and we will respond within the time the applicable law allows. We do not sell or share personal information for cross-context behavioral advertising, and we do not discriminate against you for exercising these rights. If you are in the EEA or UK, EBS is the data controller for this service.

Changes to this policy

If we change this policy we will update the date at the top of this page, and for material changes we will show a notice in the app.

Contact

Enterprise Business Systems LLC
Email: support@EBS.Design

You can also visit the support page or read the terms of service. The public copy of this policy is always at /Home/Privacy.

scanning...