Last updated: July 19, 2025
Real Fit Wellness (“we,” “us,” or “our“) complies with the EU General Data Protection Regulation (GDPR) and UK Data Protection Act 2018. This policy explains how we collect, use, and protect your personal data.
1. Lawful Basis for Processing
We process your data only when we have a valid legal basis, including:
-
Your consent (e.g., for cookies or marketing emails).
-
Contractual necessity (e.g., to deliver services you purchased).
-
Legitimate interests (e.g., fraud prevention) where balanced with your rights.
You may withdraw consent at any time by contacting hello@realFitWellness.com.
2. Data We Collect
a) Personal Data You Provide:
-
Name, email address, account credentials.
-
Payment details (processed securely via PCI-compliant providers).
b) Automatically Collected Data:
-
Cookies (essential, functional, and analytics).
-
IP address, device type, browsing behaviour.
We do not collect sensitive data (e.g., health information) without explicit consent.
3. How We Use Your Data
Purpose | Legal Basis |
---|---|
Deliver services | Contractual necessity |
Send marketing emails | Your consent (opt-in only) |
Prevent fraud | Legitimate interest |
Comply with laws | Legal obligation |
We will not use your data for automated decision-making or profiling.
4. Data Sharing & Transfers
We share data only with:
-
Service providers (e.g., hosting, analytics) under GDPR-compliant contracts.
-
Legal authorities if required by law.
International transfers outside the UK/EU use Safeguards (e.g., Standard Contractual Clauses).
5. Your Rights
Under GDPR, you have the right to:
- Access, correct, or delete your data.
- Object to processing (e.g., direct marketing).
- Data portability (request a copy in a machine-readable format).
- Lodge a complaint with the UK ICO (ico.org.uk).
Requests will be processed within 30 days.
6. Cookies & Tracking
We use:
-
Essential cookies (no consent required).
-
Analytics/marketing cookies (only with prior consent via our cookie banner).
Manage preferences at any time via our Cookie Settings link.
7. Data Security & Retention
-
Encryption (SSL/TLS) for all data transfers.
-
Regular security audits.
-
Data is retained only as long as necessary (e.g., 3 years for marketing data).
8. Children’s Privacy
We do not knowingly collect data from children under 16 without parental consent.
9. Changes to This Policy
Updates will be notified via email or website notice.
Contact Us:
For GDPR requests, email hello@realfitwellness.com with “GDPR Request” in the subject.