Privacy Policy

1. Introduction

This Privacy Policy explains how Gym Optional collects, uses, shares, and protects your personal information when you use our mobile application, website, and related services (collectively, the "Services"). By using the Services, you agree to the collection and use of information as described in this policy.

2. Information we collect

Account information. When you create an account, we collect your name, email address, password (stored in hashed form), and account role (client or trainer).

Trainer profile information. If you register as a trainer, we collect additional information including your biography, profile photo, specialties, equipment, experience level, session rate, and referral code. We also collect certification documents and government-issued identification that you upload for verification purposes.

Payment information. We use Stripe to process all payments. Your credit card numbers, bank account details, and other financial information are collected and stored directly by Stripe and are not stored on our servers. We receive limited transaction information from Stripe such as payment status, transaction IDs, and customer IDs to manage bookings and subscriptions.

Booking and session data. We collect information about sessions you book, including dates, times, trainer selection, booking status, and cancellation history.

Messages. We store messages exchanged between clients and trainers through our in-app messaging feature.

Video sessions. Video training sessions are facilitated through Daily.co. We do not record video sessions. Temporary video room URLs are created for each confirmed session and deleted when the session is completed or cancelled.

Device information. We collect push notification tokens to send you notifications about bookings, messages, and session reminders. We collect basic device information necessary to deliver the Services.

Usage information. We may collect information about how you interact with the Services, including app health and performance data, for monitoring and improvement purposes.

3. How we use your information

We use your information to:

4. How we share your information

Between users. Trainer profiles (name, photo, bio, specialties, equipment, experience, rate, ratings, and reviews) are visible to clients browsing the platform. Client names and messages are visible to trainers they interact with.

Stripe. We share necessary information with Stripe to process payments, manage trainer payouts via Stripe Connect, and manage trainer subscriptions. Stripe's use of your information is governed by Stripe's Privacy Policy.

Daily.co. Video session connections are facilitated through Daily.co. Daily.co's use of your information is governed by Daily.co's Privacy Policy.

Resend. We use Resend to send transactional emails (booking confirmations, session reminders, and other notifications) from no-reply@gymoptional.com.

Zoho Mail. Support emails to and from support@gymoptional.com are handled through Zoho Mail.

Legal requirements. We may disclose your information if required by law, subpoena, court order, or government request, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

Business transfers. If Gym Optional is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

We do not sell your personal information to third parties. We do not share your information with advertisers.

5. Data retention

We retain your account information and associated data for as long as your account is active or as needed to provide the Services. If you delete your account, we will delete or anonymize your personal information within a reasonable timeframe, except where we are required to retain it for legal, accounting, or security purposes.

Trainer verification documents (certifications and government-issued ID) are stored securely in Firebase Storage and are deleted when a trainer deletes their account.

Booking records and transaction history may be retained for accounting and legal purposes even after account deletion.

6. Data security

We use commercially reasonable measures to protect your personal information, including:

No method of electronic storage or transmission is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

7. Your rights and choices

Access and update. You can access and update your profile information through the app at any time.

Delete your account. Trainers can delete their account through the in-app account deletion flow, which cancels subscriptions, removes profile data, and cleans up associated records. Clients can request account deletion by contacting support@gymoptional.com.

Notifications. You can manage your push notification and email notification preferences in the app settings. You may also disable push notifications through your device settings.

Communications. You can contact us at support@gymoptional.com to request access to, correction of, or deletion of your personal information.

8. Children's privacy

The Services are not directed to children under the age of 13 (or the applicable age in your jurisdiction). We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal information, please contact us at support@gymoptional.com.

Users must be at least 18 years of age to register as a trainer. Users must be at least the age of majority in their jurisdiction (and at least 13 years old) to register as a client.

9. Third-party services

The Services contain links to or integrations with third-party services (Stripe, Daily.co, Resend, Zoho Mail). This Privacy Policy does not apply to those services. We encourage you to review the privacy policies of any third-party services you interact with through our platform.

10. International users

The Services are operated from the United States. If you are accessing the Services from outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States, where data protection laws may differ from those in your jurisdiction. By using the Services, you consent to such transfer, storage, and processing.

11. Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated policy and revise the effective date. Your continued use of the Services after any changes constitutes your acceptance of the updated policy.

12. Contact us

If you have questions or concerns about this Privacy Policy or our data practices, contact us at:

Email: support@gymoptional.com

Website: https://gymoptional.com

This document is provided for general information and does not constitute legal advice. Have qualified counsel review before publication.