BodyFit’s Disaster Recovery plan defines how we restore services and data after significant incidents.
We define Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO) for critical services. Our goal is to restore core functionality within hours, not days, and to minimise data loss. These objectives are reviewed as our infrastructure evolves.
User data is stored in managed databases with redundancy and backup capabilities provided by our infrastructure. We rely on our cloud provider’s resilient storage and backup features. Critical configuration and policy data can be restored from versioned records.
Our recovery procedures cover infrastructure restoration, data recovery, service restart, and validation. We follow a documented runbook for major incidents. Health-safety features and user data access are prioritised in recovery sequencing.
Recovery procedures are tested periodically and reviewed after any significant incident. We document what worked, what did not, and what we changed. Lessons learned feed into our Business Continuity and risk management practices.
Business Continuity
BodyFit’s Business Continuity plan ensures we can continue operating and serving users during disruptions.
Security Programme
BodyFit’s Security Programme protects user data and platform integrity through preventive, detective, and responsive security controls.
System Health
Technical health metrics for BodyFit services, including what we monitor and our targets for uptime and response times.
Transparency Reports
BodyFit publishes transparency information about our practices, requests, and assurance activities to build and maintain user trust.