Privacy Policy
Last Updated: 08/01/2026
1. Who We Are
Physical and Nutrition Ltd ("We", "Us", "P&N") is the data controller responsible for your personal data.
- Company Number: 14207771
- Registered Office: Falcon Business Centre, Victoria Street, Chadderton, Oldham, OL9 0HB.
- Contact Email: info@pandn.uk
2. The Data We Collect
We collect different types of data depending on how you interact with us:
- Identity Data: First name, last name, date of birth, and gender.
- Contact Data: Email address, telephone number, and home address (for Home Visits).
- Financial Data: Payment card details (processed securely via third-party encryption; we do not store full card numbers).
- Health & Medical Data (Special Category): Information regarding injuries, medical conditions, medication, and physical capabilities collected via our Physical Activity Readiness Questionnaire (ParQ). We collect this strictly for your safety and to design effective rehabilitation programs.
- Profile Data: Your username, password, booking history, and feedback.
3. How We Use Your Data
We will only use your personal data when the law allows us to. Most commonly, we use your data in the following circumstances:
- Service Delivery: To manage your gym access, book PT sessions, and deliver online coaching plans.
- Safety & Medical Necessity: To ensure you are physically capable of undertaking exercise and to prevent injury during Rehab or Training.
- Communication: To send booking confirmations, class updates (via WhatsApp), and essential service notifications.
- Legal Compliance: To comply with tax and accounting obligations.
4. Data Security
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way.
- Digital records are stored on secure, encrypted cloud servers (Google Workspace/Shopify).
- Physical ParQ forms are stored in locked, secure facilities at our office.
- Access is limited strictly to employees and contractors who have a business need to know (e.g., your Personal Trainer).
5. Sharing Your Data
We do not sell your data. We may share your data with trusted third parties to facilitate our services:
- Service Providers: Google (Booking System), Shopify (Website Hosting).
- Payment Processors: Stripe or PayPal (for processing transactions).
- Professional Advisers: Accountants or Insurers (for legal compliance).
6. Data Retention
We will only retain your personal data for as long as necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements.
- Inactive Accounts: We generally retain client health data for 7 years after your last session for insurance and liability purposes.
7. Children and Minors
We offer services to minors (Teen Fitness, Ages 11-16).
- Parental Consent: We do not collect data from children under 16 without explicit consent from a parent or guardian.
- Supervision: A parent/guardian must sign all waivers and ParQ forms on behalf of the minor.
8. Your Legal Rights
Under the UK GDPR, you have rights including:
- Right to Access: Ask for a copy of the data we hold about you.
- Right to Correction: Ask us to fix wrong data.
- Right to Erasure: Ask us to delete your data (where we do not have a legal reason to keep it).
- Right to Withdraw Consent: You can withdraw consent for marketing messages at any time.
To exercise any of these rights, please contact us at info@pandn.uk.