PRIVACY POLICY

1. Introduction

This Privacy Policy explains how AM Athletics ("TUBA PILATES", "we", "us", "our") collects, uses, shares and protects your personal data. This policy applies to our website (www.tubapilates.com), our mobile application, and our studio services.

2. Personal Data We Collect

We collect the following categories of personal data:

- Identity and contact information: name, address, email, phone number
- Account information: login credentials, membership details
- Payment information: payment card details, billing address
- Booking information: class bookings, attendance history
- Health information: relevant health conditions, injuries
- Technical data: IP address, browser type, device information
- Communication data: your preferences for receiving communications
- Video surveillance: CCTV footage from our premises for security purposes

3. How We Use Your Data

We process your personal data for the following purposes:

- Managing your membership and bookings
- Processing payments
- Providing our services
- Communicating about classes and studio updates
- Ensuring studio security
- Meeting legal obligations
- Improving our services
- Marketing (with your consent)

4. Legal Basis for Processing

We process your data based on:

- Contract performance (membership agreement)
- Legal obligations
- Legitimate interests
- Your consent (for marketing)

5. Data Sharing

We share your data with:

- Payment processors
- Booking system providers
- IT service providers
- Professional advisors
- Public authorities when required by law

All service providers are bound by data processing agreements ensuring data protection.

6. International Transfers

When we transfer data outside the EU/EEA, we ensure appropriate safeguards through:

- EU Standard Contractual Clauses
- Adequacy decisions by the European Commission
- Other legally approved transfer mechanisms

7. Data Retention

We retain your personal data for:

- Active members: Duration of membership plus 3 years
- Former members: 3 years after last interaction
- Financial records: 10 years (legal requirement)
- CCTV footage: 30 days unless needed for investigation

8. Your Rights

You have the right to:

- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Object to processing
- Data portability
- Withdraw consent
- Lodge a complaint with a supervisory authority

To exercise these rights, contact privacy@tubapilates.com.

9. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including:

- Encryption
- Access controls
- Regular security assessments
- Staff training
- Incident response procedures

10. Cookies

Our website uses cookies for:

- Essential functionality
- Analytics
- Marketing (with consent)

You can manage cookie preferences through your browser settings.

11. Children's Privacy

Our services are not intended for children under 16. We do not knowingly collect data from children without parental consent.

12. Changes to This Policy

We may update this policy periodically. Significant changes will be notified via email or website notice.

13. Contact Us

For privacy-related queries:
Email: privacy@tubapilates.com
Address: 240 Route d'Esch, 1471 Luxembourg