Privacy Policy

Last updated: July 19, 2025

Real Fit Wellness (“we,” “us,” or “our“) complies with the EU General Data Protection Regulation (GDPR) and UK Data Protection Act 2018. This policy explains how we collect, use, and protect your personal data.


1. Lawful Basis for Processing

We process your data only when we have a valid legal basis, including:

  • Your consent (e.g., for cookies or marketing emails).

  • Contractual necessity (e.g., to deliver services you purchased).

  • Legitimate interests (e.g., fraud prevention) where balanced with your rights.

You may withdraw consent at any time by contacting hello@realFitWellness.com.


2. Data We Collect

a) Personal Data You Provide:

  • Name, email address, account credentials.

  • Payment details (processed securely via PCI-compliant providers).

b) Automatically Collected Data:

  • Cookies (essential, functional, and analytics).

  • IP address, device type, browsing behaviour.

We do not collect sensitive data (e.g., health information) without explicit consent.


3. How We Use Your Data

Purpose Legal Basis
Deliver services Contractual necessity
Send marketing emails Your consent (opt-in only)
Prevent fraud Legitimate interest
Comply with laws Legal obligation


We will not use your data for automated decision-making or profiling.


4. Data Sharing & Transfers

We share data only with:

  • Service providers (e.g., hosting, analytics) under GDPR-compliant contracts.

  • Legal authorities if required by law.

International transfers outside the UK/EU use Safeguards (e.g., Standard Contractual Clauses).


5. Your Rights

Under GDPR, you have the right to:

  • Access, correct, or delete your data.
  • Object to processing (e.g., direct marketing).
  • Data portability (request a copy in a machine-readable format).
  • Lodge a complaint with the UK ICO (ico.org.uk).

Requests will be processed within 30 days.


6. Cookies & Tracking

We use:

  • Essential cookies (no consent required).

  • Analytics/marketing cookies (only with prior consent via our cookie banner).

Manage preferences at any time via our Cookie Settings link.


7. Data Security & Retention

  • Encryption (SSL/TLS) for all data transfers.

  • Regular security audits.

  • Data is retained only as long as necessary (e.g., 3 years for marketing data).


8. Children’s Privacy

We do not knowingly collect data from children under 16 without parental consent.


9. Changes to This Policy

Updates will be notified via email or website notice.

Contact Us:
For GDPR requests, email hello@realfitwellness.com with “GDPR Request” in the subject.