Privacy Policy

Last Updated: January 2, 2025

Introduction

Welcome to Bendhero ("we," "our," "us," or the "App"). This Privacy Policy is designed to comply with GDPR, CCPA, and other applicable privacy laws. It explains how we collect, use, disclose, and safeguard your information when you use our mobile application and related services.

Legal Basis for Processing (GDPR)

We process your personal data based on:

  • Contract fulfillment (providing our services)
  • Legal obligations
  • Legitimate business interests
  • Your explicit consent

Information We Collect

Personal Information

  • Account information (email address, name, password)
  • User profile data (age, fitness goals, physical conditions)
  • Payment information (processed through secure third-party payment processors)
  • Exercise preferences and history
  • Device information and usage statistics

Special Categories of Data

We do not collect or process sensitive data about:

  • Health conditions (unless voluntarily provided)
  • Biometric data
  • Genetic information

Data Minimization

We collect only information that is necessary for the functioning of the App.

Data Processing and Storage

Location of Processing

  • Data is processed and stored in the European Union
  • Any international transfers comply with GDPR requirements
  • We utilize Standard Contractual Clauses for international transfers

Retention Periods

  • Account data: Retained while account is active
  • Usage data: 24 months
  • Payment data: As required by tax laws
  • Deleted data: Purged within 30 days

Security Measures

  • End-to-end encryption for data transmission
  • Regular security audits
  • Access controls and authentication
  • Incident response procedures
  • Automated backup systems

Your Rights Under GDPR and CCPA

You have the right to:

  • Access your personal data
  • Rectify inaccurate data
  • Erase your data ("right to be forgotten")
  • Restrict processing
  • Data portability
  • Object to processing
  • Withdraw consent
  • Lodge a complaint with supervisory authorities

We will respond to all requests within 30 days.

Children's Privacy

  • The App is not intended for users under 18
  • We do not knowingly collect data from users under 18
  • Parents/guardians should contact us if they believe we have collected data from a minor