Privacy is foundational at BodyFit. Our Privacy Governance framework ensures user data is protected, user rights are respected, and privacy is built into everything we do.
We build privacy into our products from the start, not as an afterthought. We minimise data collection, default to the most privacy-protective settings, and give users control over their data. Our architecture separates sensitive health data from general usage data.
Users have rights under UK GDPR: access their data, correct inaccuracies, delete their account, restrict processing, object to processing, and export their data. We provide self-service tools for most of these and respond to requests within statutory timeframes. See our GDPR Rights page.
BodyFit never sells user data. We do not share personal data with third parties for advertising or data brokerage. We share data only with service providers who process it on our behalf under contract, or where required by law. Our Privacy Policy is explicit about this.
New features undergo privacy review before launch. We assess what data they use, whether collection is justified, and what controls users have. Significant changes are reflected in our Privacy Policy with version tracking.
Data Governance
BodyFit’s Data Governance framework defines how we collect, store, use, and protect user data — ensuring accuracy, privacy, and lawful processing.
Governance Overview
BodyFit’s governance framework defines how we make decisions, manage risk, and maintain the trust our users place in us. It spans AI, data, privacy, security, and ethics.
Privacy Policy
Gdpr Rights