Peloton keeps your personal data for as long as it needs to run its services and meet legal requirements, and then deletes or anonymizes it — but the policy does not specify exact retention periods.
Peloton does not commit to specific timeframes for deleting your data, meaning heart rate and fitness records could be retained for years even after you stop using the service unless you actively request deletion.
Cross-platform context
See how other platforms handle Data Retention and Deletion Policy and similar clauses.
Compare across platforms →Without specific retention period limits, Peloton may hold your fitness and personal data indefinitely, making it difficult to assess when your data will be removed even after you close your account.
REGULATORY FRAMEWORK: This provision implicates GDPR Art. 5(1)(e) (storage limitation principle — data kept no longer than necessary) enforced by EU DPAs; CCPA/CPRA §1798.100(e) (right to deletion) enforced by the CPPA; and FTC guidelines on reasonable data retention practices under FTC Act Section 5.
Compliance intelligence locked
Regulatory citations, enforcement risk, and due diligence action items.
Watcher: regulatory citations. Professional: full compliance memo.