Privacy Policy
Last updated: 16.01.2026
1. Data Controller
LOFT GYM
Address: Karakaari 3, 02610 Espoo, Finland
Business ID: 1234567-8
Email: [email protected]
2. Data We Collect
We collect the following personal data from our members:
• Name and contact information (address, phone, email)
• Date of birth
• Payment and billing information
• Access control data (check-ins)
• Health information (only with member consent)
• Photos (for membership card)
3. Purpose of Data Processing
Personal data is used for:
• Managing memberships and providing services
• Billing and payment processing
• Access control and security
• Communication with members (news, offers)
• Improving our services
• Fulfilling legal obligations
4. Legal Basis for Processing
Processing of personal data is based on:
• Contractual relationship (membership agreement)
• Legal obligation (accounting)
• Legitimate interest (marketing)
• Consent (health data)
5. Data Retention Period
We retain personal data for the duration of membership and afterwards according to the Accounting Act (6 years). Access control data is retained for 12 months.
6. Your Rights
You have the right to:
• Access your personal data
• Request correction or deletion of data
• Object to data processing
• Transfer data to another provider
• Lodge a complaint with the Data Protection Ombudsman
Requests can be sent to: [email protected]
7. Data Security
We protect personal data with appropriate technical and organizational measures. Access to data is restricted to authorized personnel only.
8. Cookies
Our website uses cookies to improve user experience and analyze site traffic. You can manage cookie settings through your browser.
GDPR / EU General Data Protection Regulation compliant.