Privacy Policy for TDEE-Calc.com

Last updated: 20 February 2026

1. Data Controller

The Website www.tdee-calc.com (the Website) is owned and operated by:

Yes Media AS Olav Helsetsvei 5 0693 Oslo Norway Email: info@tdee-calc.com

Yes Media AS (we, us, our) is the data controller for all personal data processed through the Website.


2. What Personal Data We Collect

2.1 Technical and Usage Data

When you access the Website, our servers (via Netlify) automatically process:

  • IP address
  • Date and time of request
  • Browser type and version
  • Device details (operating system, screen resolution)
  • Referrer URL
  • Pages visited

This is necessary to ensure security, stability, and performance of the Website.

2.2 Calculator Use Without an Account

If you use the calculator without creating an account, all data you enter — age, sex, height, weight, activity level, goals, macros, and any other inputs — is stored only in your browser's local storage. It never leaves your device and is never transmitted to or stored on our servers.

We do not profile, track, or identify users based on calculator inputs.

2.3 Account Data (Logged-In Users)

If you choose to create an account, you explicitly consent to us storing the personal data you provide, which may include:

  • Name and email address (required for authentication)
  • Body stats: age, sex, height, current weight
  • Goals: target weight, goal timeline, calorie deficit or surplus
  • Activity data: activity level, daily steps
  • Preferences: unit system, diet style, macro settings, body type
  • Health context: body fat percentage, metabolic flags you choose to enable
  • Check-in history: weight entries and dates you log over time

This data is stored on our servers solely to provide the logged-in service (syncing across devices, tracking progress over time, generating your report).

You are in control: You can delete your account and all associated data at any time. We do not use your account data for advertising, profiling, or any purpose other than providing the service to you.

2.4 Cookies and Ad Technologies

We use cookies and similar technologies placed by Google AdSense / Google Ads. Google uses these to display personalised or non-personalised ads depending on your consent. Google may process IP address, device identifiers, advertising identifiers, cookie IDs, approximate location, and browsing behaviour across sites using Google services. See Section 5 for full details.

2.5 Contact Data

If you contact us by email, we may process your name, email address, and message content. This data is processed solely for responding to your request.


3.1 Operation and Security of the Website

To display the Website, deliver content, and maintain security and performance.

Legal basis: Art. 6(1)(f) GDPR — legitimate interest in operating a secure and functional website.

3.2 Providing the Calculator (Without Account)

To process data you enter and return your result. Data remains in your browser's local storage only. Nothing is sent to or stored on our servers.

Legal basis: Art. 6(1)(b) GDPR — necessary to provide the service you request.

3.3 Providing the Logged-In Service (With Account)

To store your profile, goals, preferences, and check-in history so you can access and track your plan across sessions and devices.

Legal basis: Art. 6(1)(a) GDPR — your explicit consent given at account creation. You may withdraw consent at any time by deleting your account.

3.4 Advertising (Google AdSense)

To deliver personalised or non-personalised ads based on your consent.

Legal basis: Art. 6(1)(a) GDPR — your explicit consent via our cookie banner. You may withdraw consent at any time.

3.5 Communication

To respond to enquiries sent to info@tdee-calc.com.

Legal basis: Art. 6(1)(f) GDPR — legitimate interest in responding to user enquiries.


4. Cookies and Similar Technologies

4.1 Essential Cookies

Used for basic security, caching, and functionality. Legal basis: Art. 6(1)(f) GDPR — legitimate interest.

4.2 Session and Authentication (Logged-In Users)

If you are logged in, a session token is stored in your browser to keep you authenticated. This token contains no personal data and is invalidated when you log out or delete your account.

4.3 Google AdSense / Ads Cookies

Google may place cookies such as IDE, _gads, ANID, and others related to ad delivery. These are used to serve ads, limit ad frequency, measure ad performance, and show personalised ads (if consented). These cookies are not set unless you give consent through the cookie banner.

You can manage or withdraw consent at any time via:


5. Use of Google AdSense / Google Ads

We use Google AdSense to display advertisements. Under the GDPR, Google acts as an independent controller for certain processing related to ad personalisation. Your IP address, device identifiers, and activity across sites using Google services may be processed.

For full details, see Google's Privacy & Terms: https://policies.google.com/privacy. Google may process your data outside the EEA under the safeguards described in Section 8.


6. Hosting and Service Providers

6.1 Netlify (Hosting)

The Website is hosted by Netlify, Inc. Netlify processes technical logs and operational data on our behalf.

6.2 DigitalOcean (DNS)

Domain name services are provided by DigitalOcean, LLC, which processes DNS queries and related metadata.

Both providers act as data processors under Art. 28 GDPR and are contractually bound to confidentiality and security obligations.


7. Retention of Data

Data typeRetention
Technical logs (Netlify)Short term, necessary for security; then deleted or anonymised
Calculator input (no account)Never stored on our servers; exists only in your browser's local storage
Account profile and check-in dataRetained for as long as your account is active; deleted promptly on account deletion request
Contact enquiriesRetained only as long as necessary to respond and comply with legal obligations
Advertising dataControlled by Google according to Google's own retention policies

8. International Transfers

Your data may be transferred outside the European Economic Area (EEA), particularly to the United States, when processed by Google, Netlify, or DigitalOcean. These transfers rely on adequacy decisions (where applicable) and on Standard Contractual Clauses (SCCs) approved by the European Commission, together with additional safeguards applied by the respective providers.


9. Your Rights Under the GDPR

You have the following rights, subject to legal conditions:

  • Right of access (Art. 15) — request a copy of the data we hold about you
  • Right to rectification (Art. 16) — correct inaccurate data
  • Right to erasure (Art. 17) — delete your account and all associated data
  • Right to restrict processing (Art. 18)
  • Right to data portability (Art. 20)
  • Right to object (Art. 21)
  • Right to withdraw consent (Art. 7(3)) — without affecting prior processing
  • Right to lodge a complaint with Datatilsynet (Norway) or your national data protection authority

To exercise any right, contact us at: info@tdee-calc.com.


10. No Automated Decision-Making

We do not use automated decision-making or profiling that produces legal or similarly significant effects within the meaning of Art. 22 GDPR.


11. Changes to This Policy

We may update this Privacy Policy when necessary to reflect technical, legal, or operational changes. The current version is always available at: https://tdee-calc.com/privacy.