Privacy Policy
Last updated on June 8, 2025
1. Introduction
Finegym LLC (“Finegym”, “we”, “our”, or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use our software-as-a-service (SaaS) gym management platform—including our web-based dashboard, mobile applications, and website located at https://finegym.io/
This policy applies to:
- Gym owners and staff who use our administrative interfaces;
- Gym members who interact with gyms via the Finegym mobile app;
- Website visitors and support requestors;
- Any third parties interacting with our systems directly or via integrations.
Please read this policy carefully to understand our practices. By using our Services, you consent to the practices described herein.
2. Who We Are
Finegym LLC is a limited liability company registered in the State of Wyoming, USA. We offer gym management software to fitness businesses globally, enabling operational workflows and member engagement.
- Legal Entity: Finegym LLC
- Registered Address: 5830 E 2nd St, Ste 7000 #15900, Casper, Wyoming 82609 Us
- Company Registration: Wyoming, USA
- Contact:contact@finegym.io
Finegym typically acts as:
- Data Controller when dealing with gym staff data, account registration, and platform usage analytics;
- Data Processor on behalf of gyms when processing member data (e.g., bookings, waivers, member profiles), where gyms determine the purpose and means of processing.
3. What This Policy Covers
This Privacy Policy applies to the data practices across all Finegym Services, including:
- The web-based administrative platform for gyms;
- Mobile apps provided to gym members (iOS and Android);
- Our marketing and support websites;
- Interactions with our customer support or sales teams.
This policy does not govern:
- Privacy practices of individual gyms (each of which may upload and manage their own legal documents for their members);
- Third-party websites or platforms that we link to or that integrate with Finegym (see Section 18).
We are committed to ensuring global compliance, particularly with theGeneral Data Protection Regulation (GDPR) for users in the EU/EEA, and theCalifornia Consumer Privacy Act (CCPA/CPRA) for residents of California.
4. Types of Data We Collect
We collect the following categories of personal data depending on your relationship with Finegym:
4.1. Gym Account and Staff Information
- Full name
- Email address
- Home address
- Phone number
- Personal photo
- Business name and contact details
- Role/permissions within the gym
4.2. Member Information (on behalf of gyms)
- Full name
- Email address
- Home address
- Phone number
- Personal photo
- Guardian full name
- Guardian email address and phone number
- Membership type and status
- Booking history (classes, sessions)
- Attendance logs
- Payment history (via gym’s Stripe account)
- Signed policy documents (waivers, consents, etc.)
4.3. Financial Information
- Subscription billing data (gym accounts only)
- Payment tokens and metadata (processed via Stripe; we do not store full card details)
4.4. Usage and Device Information
- IP address
- Device type and OS
- Login times and activity logs
- App crash reports and performance data (via Sentry)
4.5. Support and Interaction Data
- Support ticket content
- Email or chat correspondence
- Survey responses or feature feedback
4.6. Web Analytics
- Browsing behavior on our site
- Page views, session duration, referral sources (via Google Analytics)
5. How We Collect Data
We collect data in the following ways:
5.1. Directly from You
- When you sign up for an account
- When you configure your gym settings
- When you contact our support or submit forms
- When members sign or accept policy documents
5.2. Automatically via Platform Use
- When users log in, browse, book sessions, or perform actions within the app or dashboard
- Device and technical data via cookies and SDKs
5.3. From Third Parties
- Stripe (billing and payment metadata)
- Google Analytics (web traffic behavior)
- Freshdesk/Freshworks (support interactions)
- Sentry (app performance and errors)
- Cal.com (if a gym enables third-party scheduling)
We do not purchase user data from third-party vendors.
6. Lawful Bases for Processing
Finegym processes personal data under several lawful bases, as required by the GDPR:
- Contractual Necessity: To provide and operate our Services (e.g., managing gym subscriptions or processing bookings);
- Consent: Where users explicitly agree (e.g., signing waivers, accepting cookies);
- Legal Obligation: To comply with tax, financial, and regulatory requirements;
- Legitimate Interests: For platform security, service improvements, customer support, and usage analytics—balanced against user rights.
When acting as a processor for gyms, we process member data solely based on the gym’s instructions and applicable data processing agreements (DPAs).
7. How We Use Your Data
Finegym uses collected data for the following purposes:
- To provide the platform and its features (e.g., bookings, invoicing, check-ins)
- To manage subscriptions and billing (e.g., gym accounts via Stripe)
- To send administrative messages (e.g., confirmations, alerts, account notices)
- To respond to support requests and inquiries
- To improve service functionality and performance using aggregated usage data
- To comply with legal obligations, enforce Terms, or resolve disputes
- To protect against fraud, abuse, and platform misuse
We do not sell or share user data for advertising or marketing purposes without explicit consent.
8. How We Share Your Data
We share your data only when necessary to operate the Finegym platform or to fulfill legal obligations. We do not sell your personal data.
8.1. Third-Party Service Providers
We share data with trusted service providers for specific functions:
Provider | Purpose |
---|---|
Stripe | Payment and subscription processing |
Google Analytics | Website and usage analytics |
Freshdesk/Freshworks | Customer support ticketing |
Sentry | Application performance and error monitoring |
Google reCAPTCHA | Spam and bot prevention |
Cal.com | Optional class/session scheduling integration |
Each third-party provider is contractually obligated to safeguard data and only process it for the specific purpose provided.
8.2. Legal Requirements
We may disclose data if required to do so by law, court order, or regulatory obligation, or if reasonably necessary to:
- Comply with legal obligations;
- Respond to valid requests from public authorities;
- Enforce our agreements or protect our rights or users.
9. International Data Transfers
Finegym is based in the United States, and many of our services and systems are hosted or operated in the U.S.
If you are located outside the U.S., be aware that your data will be transferred to and stored in jurisdictions that may not have equivalent data protection laws (e.g., the U.S.).
For EU/EEA users, we ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission;
- Data Processing Agreements (DPAs) with third parties;
- Technical and organizational measures to protect transferred data.
You may request a copy of the relevant transfer safeguards by contacting us (see Section 20).
10. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
Data Type | Retention Period |
---|---|
Account and billing records | 7 years (for tax and legal compliance) |
Support and correspondence | 2 years from resolution |
Member records (on behalf of gyms) | As instructed by the gym or until gym account is closed |
Analytics and log data | 26 months (Google Analytics standard) |
After the retention period, data is securely deleted or anonymized unless required to be retained for legal or regulatory reasons.
You may request deletion of your Finegym account and associated business data at any time.
Deletion can be initiated via:
- The self-service option in the Business Settings → General screen of the Finegym admin dashboard; or
- By contacting Finegym Support atcontact@finegym.io.
Upon verified request, we will delete personal and business data associated with the gym account, including gym staff and gym member data (processed on behalf of the gym), in accordance with our data retention policy and applicable law. Certain data may be retained if required for legal compliance (e.g. tax or financial record retention obligations).
Once the account deletion is completed, the you will no longer be able to access the Finegym platform, and data recovery will not be possible.
11. User Rights (GDPR & Global)
If you are located in the European Union, EEA, UK, or similar jurisdictions, you have the following rights under data protection law:
- Right of access – Request a copy of the data we hold about you;
- Right to rectification – Request corrections to inaccurate or incomplete data;
- Right to erasure – Request deletion of your data under certain conditions;
- Right to restrict processing – Ask us to stop processing under limited conditions;
- Right to data portability – Receive a copy of your data in a machine-readable format;
- Right to object – Object to certain types of processing (e.g. profiling or marketing).
You may exercise these rights by contacting us (see Section 20). We will respond within the timeframes required by applicable law, usually within 30 days.
Where Finegym acts as a data processor (e.g., for gym member data), we will refer your request to the relevant gym as the data controller.
You may also exercise your right to erasure by deleting your entire gym account and associated data through the Finegym Business Settings → General screen or by contacting Finegym Support (see Section 10 for details).
12. California Privacy Rights (CCPA/CPRA
If you are a California resident, you are entitled to the following rights under the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA):
- The right to know what categories of personal information we collect and how we use it;
- The right to delete personal information (with some exceptions);
- The right to opt out of the sale or sharing of personal information;
- The right to correct inaccurate personal information;
- The right to non-discrimination for exercising privacy rights.
We do not “sell” or “share” your personal information as defined under CCPA/CPRA. To submit a California privacy request, email us atcontact@finegym.com or use our privacy request form (if available).
Verification may be required before fulfilling certain requests.
13. Your Privacy Choices and Controls
We offer multiple ways for users to manage their privacy:
- Email preferences: You can opt out of non-essential email communications via the unsubscribe link or account settings.
- Cookie settings: Manage your preferences through our cookie banner or browser settings.
- Dashboard controls: Gym owners and staff may update or correct their account information directly via the admin dashboard.
For access, deletion, or portability requests, please contact us as described in Section 20.
14. Security Measures
We implement technical and organizational safeguards to protect personal data against unauthorized access, disclosure, alteration, or destruction, including:
- Encryption of data in transit and at rest;
- Access controls limiting who can view or modify data;
- Two-factor authentication (2FA) for admin access;
- Ongoing monitoring and alerting using tools like Sentry;
- Regular data backups and incident response protocols.
While no system is completely secure, we follow best practices to minimize risk. In the event of a data breach, we will notify affected parties and regulators as required by law.
15. Children’s Privacy
Finegym’s Services are not directed to children under the age of 13, and we do not knowingly collect personal information from anyone under 13 years of age without verifiable parental consent.
If we become aware that we have collected personal data from a child under 13 (or a higher age threshold if applicable in your jurisdiction) without proper authorization, we will take steps to delete the information promptly.
If you are a parent or guardian and believe that your child has provided us with personal data without your consent, please contact us immediately atcontact@finegym.io.
16. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience, understand user behavior, and improve our Services.
16.1. Types of Cookies Used
- Essential Cookies: Required for platform functionality (e.g., authentication).
- Performance Cookies: Help us monitor usage and fix bugs (e.g., via Google Analytics).
- Security Cookies: Protect against fraud and unauthorized access (e.g., reCAPTCHA).
- Functional Cookies: Remember user settings and preferences.
16.2. Cookie Consent
Upon visiting our site, you will be presented with a cookie banner allowing you to accept or manage cookies. You may also adjust your cookie preferences through your browser settings at any time.
For more information, please refer to our standalone Cookie Policy.
17. Custom Policy Documents Uploaded by Gyms
Finegym enables gym owners to create and manage their own legal documents—such as liability waivers, privacy consents, and membership agreements—through our platform.
- Ownership: These documents are owned and authored by each respective gym.
- Responsibility: Gyms are solely responsible for ensuring that such documents are accurate, lawful, and compliant with applicable laws.
- Role of Finegym: We merely act as a technical facilitator, providing document management and digital signature capture tools. We do not review, endorse, or assume liability for any gym-created content.
If you have concerns regarding a policy document you’ve been asked to sign via Finegym, please contact the relevant gym directly.
18. Third-Party Links
Our Services may contain links to third-party websites or services, such as payment processors or content providers.
These external sites are not operated or controlled by Finegym. We are not responsible for the privacy practices or content of those third parties.
We encourage users to read the privacy policies of every website they visit when leaving the Finegym environment.
19. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in legal requirements, our data practices, or the features of our Services.
When we make material changes, we will:
- Notify you via email (if applicable) or in-app notices;
- Update the “Last Updated” date at the top of this policy.
Your continued use of the Services after an update constitutes your acceptance of the revised policy. If you do not agree with the changes, you should discontinue use and close your account.
20. Contact Us
If you have any questions, requests, or concerns regarding this Privacy Policy or your personal data, please contact us:
Finegym LLC
5830 E 2nd St, Ste 7000 #15900, Casper, Wyoming 82609 Us
contact@finegym.io