GymOS legal

Privacy Policy

This draft policy explains how GymOS collects, uses, and protects business and onboarding data across the GymOS platform.

Last updated: April 24, 2026

This is a practical startup draft for GymOS. It is intended to explain how GymOS handles customer-owner onboarding, account access, and gym operations data until a formal legal review is completed.

Information we collect

GymOS collects the information needed to run onboarding, account creation, and gym operations. This may include owner contact details, gym details, admin credentials, membership data, attendance data, and lead or sales records entered by the gym team.

How we use information

We use this information to approve onboarding requests, create and manage accounts, deliver transactional emails, support gym operations, secure access to the platform, and improve product reliability and reporting.

Email and communications

GymOS sends transactional emails for invite approval, onboarding, and account-access related workflows. These emails are used to deliver operational access, not general promotional marketing.

Data sharing

GymOS does not sell customer data. Data may be processed by infrastructure and delivery providers that support hosting, authentication, email delivery, and analytics needed to operate the platform.

Security and retention

We take reasonable steps to protect GymOS account and platform data. Access is role-scoped, owner/admin/member surfaces are separated, and operational secrets are managed through server-side configuration. Data may be retained as needed to operate the service, support troubleshooting, and meet legal or contractual requirements.

Your responsibilities

Customers are responsible for keeping admin and owner credentials secure, reviewing the accuracy of operational data, and using GymOS in a way that complies with local privacy and employment rules that apply to their gym business.

Contact

Questions about this policy can be sent to support@thegymos.app.