Privacy and account data

How information is used.

This operational privacy draft describes the data handled by the replacement website and portal. The club should obtain Australian privacy and legal review before launch.

Review required: complete the business identity, ABN, contact details, retention periods and any applicable Privacy Act obligations before publishing.

Information collected

The system can store contact details, emergency contacts, medical or training notes supplied by the member, membership status, signed acknowledgement snapshots, bookings, waitlists, check-ins, attendance, personal training requests, shop reservations, referrals and communication preferences.

Payments

Card and direct debit details are not stored by this website. When Stripe is enabled, payment entry occurs through Stripe Checkout. The website stores transaction references, status and amounts needed to administer the membership.

Why information is used

Information is used to provide membership access, manage class capacity, support member safety, process requests, communicate club updates, maintain records and operate the gym.

Access and security

Member and staff areas require authenticated access. Passwords are stored as secure hashes. Administrative actions are logged. Sensitive configuration is stored outside the public website directory.

Communication choices

Members can update email, SMS and optional marketing preferences in their profile. Service messages may still be required for account, safety or booking administration.

Access or correction requests

Use the contact page to request access to or correction of personal information held by the gym.