← Back to Home
Privacy Policy
Effective Date: January 1, 2025
Last Updated: January 1, 2025
GDPR Compliance: This privacy policy complies with the General Data Protection Regulation (GDPR) and other applicable privacy laws. We respect your privacy rights and provide transparent information about our data practices.
1. Introduction
Total Fit Solution ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services, visit our website, or engage with our fitness programs.
2. Information We Collect
2.1 Personal Information
We collect the following types of personal information:
- Contact Information: Name, email address, phone number, mailing address
- Health Information: Medical history, fitness goals, dietary restrictions, injury history
- Payment Information: Credit card details, billing address (processed securely by third-party providers)
- Program Data: Workout progress, measurements, attendance records
- Communication Records: Emails, messages, consultation notes
2.2 Automatically Collected Information
- Website usage data and analytics
- IP addresses and device information
- Cookies and similar tracking technologies
- Browser type and operating system
3. Legal Basis for Processing (GDPR)
Under GDPR, we process your personal data based on the following legal bases:
- Consent: When you explicitly agree to data processing
- Contract: To provide fitness services you've purchased
- Legitimate Interest: For business operations and service improvement
- Legal Obligation: To comply with applicable laws and regulations
4. How We Use Your Information
We use your information to:
- Provide personalized fitness training and nutrition coaching
- Develop customized workout and meal plans
- Track your progress and adjust programs accordingly
- Communicate about appointments, classes, and services
- Process payments and manage your account
- Send promotional materials (with your consent)
- Improve our services and website functionality
- Comply with legal obligations and protect our rights
5. Information Sharing and Disclosure
We do not sell your personal information. We may share information in the following circumstances:
5.1 Service Providers
- Payment processors for transaction handling
- Email service providers for communications
- Website hosting and analytics services
- Appointment scheduling software
5.2 Legal Requirements
- When required by law or legal process
- To protect the rights, property, or safety of our business or others
- In connection with a business transfer or merger
5.3 With Your Consent
- Testimonials and success stories (with explicit permission)
- Referrals to other healthcare providers (when requested)
6. Data Retention
We retain your personal information for as long as necessary to:
- Provide ongoing services to you
- Comply with legal obligations (typically 7 years for financial records)
- Resolve disputes and enforce agreements
- Meet regulatory requirements for health information
After the retention period, we securely delete or anonymize your personal data.
7. Your Rights Under GDPR
If you are an EU resident, you have the following rights:
- Right of Access: Request copies of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a portable format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time
To exercise these rights, contact us at [email protected]
8. Data Security
We implement appropriate security measures to protect your information:
- Encryption of data in transit and at rest
- Secure payment processing through PCI-compliant providers
- Regular security audits and updates
- Limited access to personal data on a need-to-know basis
- Staff training on data protection and confidentiality
- Secure storage of physical records
9. International Data Transfers
If we transfer your data outside the EU, we ensure adequate protection through:
- Adequacy decisions by the European Commission
- Standard Contractual Clauses (SCCs)
- Binding Corporate Rules
- Certification schemes
10. Cookies and Tracking
We use cookies and similar technologies for:
- Essential website functionality
- Analytics and performance monitoring
- Personalized content and recommendations
- Marketing and advertising (with consent)
See our Cookie Policy for detailed information.
11. Third-Party Links
Our website may contain links to third-party sites. We are not responsible for the privacy practices of external websites. We encourage you to review the privacy policies of any third-party sites you visit.
12. Children's Privacy
Our services are not directed to children under 16. We do not knowingly collect personal information from children. If we become aware that we have collected information from a child under 16, we will take steps to delete it promptly.
13. Marketing Communications
We may send you marketing communications if:
- You have given explicit consent
- You are an existing client and we have legitimate interest
You can unsubscribe at any time using the link in our emails or by contacting us directly.
14. Data Breach Notification
In the event of a data breach that poses a risk to your rights and freedoms, we will:
- Notify the relevant supervisory authority within 72 hours
- Inform affected individuals without undue delay
- Take immediate steps to contain and remedy the breach
15. Privacy Policy Updates
We may update this Privacy Policy periodically. When we make significant changes, we will:
- Post the updated policy on our website
- Notify you via email if the changes are material
- Update the "Last Modified" date
Continued use of our services after changes constitute acceptance of the updated policy.
16. Contact Information
For questions about this Privacy Policy or to exercise your rights, contact us:
17. Supervisory Authority
If you are not satisfied with our response to your privacy concerns, you have the right to lodge a complaint with your local data protection supervisory authority.
Your Privacy Matters: We are committed to transparency and protecting your personal information. If you have any questions or concerns about how we handle your data, please don't hesitate to contact us.