Account & Security
Manage your credentials, protect your content, and control your data.
Changing Your Password
You can change your password at any time from Settings → Account → Security.
- Enter your current password to confirm your identity.
- Enter a new password. Use at least 12 characters with a mix of letters, numbers, and symbols.
- Confirm the new password and click Update Password.
If you have forgotten your current password, log out and use the Forgot password link on the sign-in page. A reset link will be sent to your account email address.
Two-factor authentication (2FA) is available in Settings → Account → Security → Enable 2FA. Once enabled, you will be asked for a time-based code from your authenticator app each time you sign in from a new device. This is strongly recommended to protect your coaching account and client data.
Exporting Your Data
You can request a full export of all data associated with your account at any time. This is useful for record-keeping, migrating to another service, or complying with a client's data access request.
Go to Settings → Privacy → Request Data Export. The export includes:
- Your coach profile and settings
- All client profiles and associated data (workouts, nutrition logs, check-ins, messages)
- Your workout programs and exercise library entries
- Payment history
The export is compiled in the background and delivered to your account email as a downloadable archive. Depending on account size, this may take up to an hour. For client-specific exports, see Analytics — Exporting Data.
Deleting Your Account
Account deletion is permanent and cannot be undone. Before deleting, we recommend exporting your data.
To delete your account:
- Go to Settings → Account → Danger Zone.
- Click Delete Account.
- Read the confirmation prompt — it lists what will be permanently removed.
- Type your email address to confirm and click Permanently Delete.
Active client subscriptions are cancelled immediately upon account deletion. Clients receive an email notifying them that the coaching connection has ended. Your Stripe Connect account is not deleted — you retain access to your Stripe dashboard independently.
If you are on a paid plan, no partial refund is issued for the unused portion of your billing period. If you would prefer to pause instead, consider downgrading to the free plan — your account and all data are preserved.
Protecting Your Content
Your programmes, templates, and vault files are protected by access controls: only clients you have shared content with can view it, enforced at the database level. Content in your vault stays private unless you explicitly make an item public.
Screen-capture prevention (blocking screenshots and screen recordings in the mobile app) is on our roadmap for Pro and Studio plans and will appear in Settings when it ships.
Privacy and Data Handling
All data stored on Kounisou is encrypted in transit using TLS 1.3 and encrypted at rest. We enforce database-level row security so that coaches can only access their own clients' data — no coach can query another coach's information.
We do not sell your data or your clients' data to any third parties. Health data synced from Apple Health or Google Health is stored only for display in your coaching dashboards and is not used for advertising or shared with external services.
Coaches are responsible for handling client data in compliance with applicable privacy regulations (such as GDPR in Europe or HIPAA guidelines if applicable in your jurisdiction). Our data processing agreements are available on request — contact us via Support.
Sessions are tracked per device. You can view and revoke active sessions from Settings → Account → Active Sessions. If you see a device you do not recognise, revoke its session immediately and change your password.