How we protect and handle your personal information
Last updated: October 2025
At Strava MCP Server, we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you use our Model Context Protocol (MCP) server service.
Contact Information:
Email: help@stravamcp.com
Website: https://stravamcp.com
When you connect your Strava account, we receive:
Note: We only access data that you have made available through your Strava privacy settings and the permissions you grant during OAuth authentication.
We only share your data with services you explicitly authorize:
We never share your data with advertisers, marketers, data brokers, or any unauthorized third parties. Your fitness data belongs to you and stays private.
Request a copy of all personal data we have about you
Update any incorrect information in our systems
Request immediate deletion of all your personal data
Export your data in a machine-readable format
Disconnect your account and stop data processing
Get help with any privacy-related concerns
To exercise your rights: Email us at help@stravamcp.com with your request. We'll respond within 30 days.
Authentication Sessions: 30 days (automatically renewed when active)
OAuth Tokens: Until you disconnect your account
Activity Data: Not stored - fetched in real-time only
Technical Logs: 90 days for security and troubleshooting
When you disconnect your Strava account or request deletion, we immediately remove all stored authentication data and personal information. This action is irreversible.
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal reasons. When we make changes:
We recommend reviewing this policy periodically to stay informed about how we protect your information.
If you have questions about this Privacy Policy or how we handle your data, please contact us:
To exercise your privacy rights or request data deletion: