data report card

Data Report Card · WHOOP

WHOOP Data Report Card

WHOOP band · fitness wearable
Data
Practices
2Access1Portability1Friction1Deletion2Sells2Trains AI
=
B
9/12
Agent
Readiness
2Access 1Portability 2API access
=
B
5/6

Agent Readiness is a derived signal — a synthesis of two existing cells (Access, Portability) plus one sourced factor (API access), not an independently measured grade. API access scale: Best (2) consumer-grantable API · Moderate (1) partial / encumbered · Restrictive (0) manual export only. What is Agent Readiness?

Help me make a request →
Reviewed Jun 2026 · policies are checked weekly for changes  ·  stated — every cell is read from WHOOP's published policy; none has been tested (run by us) yet.
2Accessstated
Self-serve in-app export under More → Settings → Privacy & Data Management; members can download their granular raw data at no fee, and EU residents get full GDPR access rights.
WHOOP Support — How to Export Your Data · accessed Jun 2026 ↗
1Portabilitystated
Export is delivered as .csv files openable in any spreadsheet tool — machine-readable, but a single flat format rather than multiple structured formats.
WHOOP Support — How to Export Your Data · accessed Jun 2026 ↗
1Frictionstated
Self-serve but asynchronous: "you will receive an email with a link to download your data within 24 hours," and the export link expires after 7 days.
WHOOP Support — How to Export Your Data · accessed Jun 2026 ↗
1Deletionstated
Self-serve deletion request under Settings → Privacy & Data Management, but regulated health data (ECG, IHRN and Blood Pressure Insights) may be retained to meet compliance rules.
WHOOP — Full Privacy Policy · accessed Jun 2026 ↗
2Sells / sharesstated
States it "never sells" members' personal data and shares it only as aggregated or de-identified data for research — a no-sale posture; like every company, its policy permits a standard data transfer in a merger or acquisition.
WHOOP — Full Privacy Policy · accessed Jun 2026 ↗
2Trains AIstated
WHOOP shares only de-identified metrics with its LLM partner under a stated "Zero-Retention / Zero-Training" policy, so member data is not used to train AI models.
WHOOP — Full Privacy Policy · accessed Jun 2026 ↗
2API access — feeds Agent Readiness, not the /12stated
WHOOP's developer platform lets a member authorize an app via OAuth 2.0 to read their own data (sleep, recovery, workouts, cycles); the offline scope returns a refresh token for repeatable, scheduled access, subject to app registration and rate limits.
WHOOP for Developers — OAuth 2.0 · accessed Jun 2026 ↗
Source-verified Jun 2026 from WHOOP's own support and policy pages. All cells are "stated" (read from published docs); we have not yet run a live export or deletion to mark any cell "tested."

How to request your data from WHOOP

  1. Go to https://support.whoop.com/s/article/How-to-Export-Your-Data — WHOOP's data-request entry point.
  2. App → My Account → Profile Information → Create Export.
  3. Expected wait: emailed within 24 hours (download link expires after 7 days) — WHOOP's stated turnaround (we haven't independently timed a request yet).
  4. No self-serve option, or want a formal request? Contact WHOOP — Privacy Team: mailto:privacy@whoop.com.

These steps reflect WHOOP's documented process as of Jun 2026. The wait time is the company's stated figure, not yet independently measured by us.