Last Updated: 28/02/2025
1. Who We Are
Our website address is: https://bestfitnessvibes.com.
We are committed to safeguarding your privacy and ensuring compliance with global data protection laws including the General Data Protection Regulation (GDPR) (EU/EEA), California Consumer Privacy Act (CCPA/CPRA) (USA), Lei Geral de Proteção de Dados (LGPD) (Brazil), Personal Information Protection and Electronic Documents Act (PIPEDA) (Canada), and other applicable regulations.
2. Information We Collect
- Personal Data: Name, email address, payment details (if purchasing), and demographic information voluntarily provided by you.
- Automated Data: Cookies, IP addresses, device type, browser information, and browsing behavior (e.g., pages visited, affiliate link clicks).
- Third-Party Data: Information received from affiliate partners (e.g., Amazon Associates), payment processors, and analytics tools.
3. Legal Basis for Processing
We process your data based on the following lawful bases as applicable:
- Consent: For marketing communications and non-essential cookies.
- Contractual Necessity: To fulfill transactions and provide services.
- Legal Obligation: To comply with applicable laws.
- Legitimate Interest: To improve our website’s content and user experience.
4. How We Use Your Information
We use your data to:
- Personalize your experience and improve our content and services.
- Process transactions, track affiliate commissions (e.g., Amazon Associates program), and fulfill orders.
- Send marketing communications only with your explicit opt-in consent.
- Comply with legal obligations, prevent fraud, and respond to law enforcement requests.
5. Affiliate Disclosure
We participate in the Amazon Associates Program and other affiliate networks. When you click on affiliate links and make a purchase, we earn a commission at no extra cost to you. In accordance with FTC guidelines, we clearly disclose this relationship on all pages containing affiliate links. Transactions on affiliate platforms are subject to their respective privacy policies.
6. Cookies and Tracking Technologies
- Essential Cookies: Required for site functionality (e.g., login, shopping cart).
- Analytics Cookies: Used to track user behavior via tools like Google Analytics.
- Marketing Cookies: Employed for targeted advertising (e.g., Facebook Pixel, Google Ads).
- Cookie Management: You can manage your cookie preferences using our GDPR-compliant cookie consent manager, available via our website settings. Non-essential cookies are blocked until you provide consent.
- Do Not Track (DNT): We do not respond to browser DNT signals, as there is no industry-standard framework for compliance.
7. Global Data Protection Rights
- GDPR (EU/EEA): You have the right to access, correct, delete, or restrict your data, and to withdraw consent or object to processing.
- CCPA/CPRA (California): In addition to disclosure and deletion rights, you are by default opt out of the “sale” of your personal information, until and unless we ask you.
- LGPD (Brazil): You can request anonymization, portability, or deletion of your data.
- Other Regions: Contact us to exercise rights under local laws (e.g., PIPEDA in Canada, Australia’s Privacy Act).
8. Data Sharing and Security
- Third Parties: We share your data only with trusted partners (e.g., payment gateways, email services) for operational purposes and ensure that GDPR-compliant Data Processing Agreements (DPAs) are in place where required.
- Payment Processors: All payment transactions are processed through PCI DSS-compliant gateways (e.g., PayPal, Stripe) to secure your financial information.
- Security Measures: We employ SSL encryption, firewalls, and regular security audits to protect your data. While we take reasonable measures, no online platform is 100% secure.
9. International Data Transfers
Your data may be transferred to servers outside your country (e.g., U.S.-based hosting). For GDPR compliance, we rely on Standard Contractual Clauses (SCCs) or other approved transfer mechanisms. These laws are dependent on our hosting service providers bestfitness.com is not liable and answerable for this information.
10. Data Retention
We retain personal data only as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law (e.g., for tax records).
11. Breach Notifications
In the event of a data breach compromising your rights, we will notify you and the relevant authorities within 72 hours (GDPR) or as required by local law.
12. Children’s Privacy
We do not knowingly collect data from children under 13 (or under 16 as per GDPR guidelines). Parents or guardians may contact us to request deletion of any such data inadvertently collected.
13. Third-Party Services
Our site contains links to external platforms (e.g., Amazon). We are not responsible for the privacy practices of these external sites. Please review their respective privacy policies before engaging.
14. Policy Updates
Any updates to this policy will be posted here with a revised “Last Updated” date. For material changes, we will notify you via email (if you have provided your contact information).
15. Contact Us
To exercise your rights, request data deletion, or ask questions, please contact us:
- Email: bestfitnessvibes09@gmail.com
- Data Protection Officer (DPO): bestfitnessvibes09@gmail.com
For unresolved complaints, you may contact your local data protection authority (e.g., your local GDPR supervisory authority or, for California residents, the California Attorney General).