Privacy Policy
Last updated: 2026-02-01
1. Who we are
FitLink Ireland is the data controller for personal data collected via this platform. We take your privacy seriously and comply with the EU General Data Protection Regulation (GDPR) and the Irish Data Protection Act 2018.
2. Data we collect
Account data (name, email, hashed password), profile data you enter, booking history, review content, and technical data (IP, browser, device) needed to operate the service. Payment card data is handled entirely by Stripe — we never see or store your full card number.
3. Why we use it
To provide the marketplace (matching customers with trainers), process bookings, prevent fraud, respond to support enquiries, and comply with legal obligations. We do not sell your data.
4. Data sharing
We share the minimum necessary data with our processors: Stripe (payments), Resend/SendGrid (transactional emails), and our hosting provider. Trainers you book see your name and any notes you attach to a booking.
5. Your rights
You may request access, correction, deletion or portability of your data at any time by emailing privacy@fitlink.ie. You may also complain to the Irish Data Protection Commission (dataprotection.ie).
6. Retention
Account data is kept while your account is active plus 6 months. Financial records are retained for 7 years to satisfy Irish accounting obligations.
7. Security
Passwords are hashed with bcrypt. All traffic is served over HTTPS. Access to production data is restricted.