PRIVACY POLICY
Last Updated: [11.16.2025]
1. Business Information
-
Business Name: FitNest
-
Business Website: www.fitnestzone.com
2. Scope and Applicability
This Privacy Policy is intended to comply with:
-
The General Data Protection Regulation (GDPR) (EU) 2016/679
-
Applicable United States privacy and consumer protection laws
This policy applies to all visitors, customers, and users of our Site worldwide.
3. Personal Data We Collect
We may collect the following categories of personal data:
3.1 Information You Provide Directly
-
Full name
-
Billing and shipping address
-
Email address
-
Phone number
-
Payment-related details (processed securely by third-party providers)
-
Order history and customer support communications
3.2 Information Collected Automatically
When you visit our Site, we may automatically collect:
-
IP address
-
Browser type and version
-
Device information
-
Pages visited and time spent on the Site
-
Referring URLs
This data is collected using cookies, log files, and similar technologies.
4. Purpose and Legal Basis for Processing (GDPR)
We process your personal data based on the following legal grounds:
-
Contractual necessity: To process and fulfill your orders
-
Consent: For marketing communications and non-essential cookies
-
Legitimate interests: To improve our Site, prevent fraud, and ensure security
-
Legal obligations: To comply with applicable laws and regulations
5. Cookies and Tracking Technologies
Our Site uses cookies and similar technologies provided by Wix and third-party services.
Types of Cookies Used:
-
Essential Cookies: Required for website functionality
-
Analytics Cookies: Help us understand user behavior and improve performance
-
Marketing Cookies: Used to deliver relevant advertisements (where applicable)
You may control or disable cookies through your browser settings. Please note that disabling cookies may affect website functionality.
6. Third-Party Service Providers
We share your personal data only with trusted third-party service providers necessary to operate our business, including:
6.1 Website Platform
-
Wix.com Ltd. – Website hosting, security, and analytics
6.2 Payment Processing
-
PayPal
-
Credit/Debit Card Payment Processors
We do not store or process full payment card details on our servers. All payments are handled securely by our payment providers in compliance with PCI-DSS standards.
6.3 Dropshipping and Fulfillment Partners
-
Product suppliers and logistics partners receive only the information necessary to fulfill and ship your orders.
Each third-party provider processes personal data in accordance with their own privacy policies and applicable data protection laws.
7. International Data Transfers
As we operate globally, your personal data may be transferred to and processed in countries outside your country of residence, including the United States and other jurisdictions where our service providers operate.
When transferring data internationally, we ensure appropriate safeguards are in place, such as:
-
Adequacy decisions by the European Commission
-
Standard Contractual Clauses (SCCs)
-
Other lawful transfer mechanisms under GDPR
8. Data Retention
We retain your personal data only for as long as necessary to:
-
Fulfill the purposes outlined in this Privacy Policy
-
Comply with legal, accounting, or regulatory requirements
-
Resolve disputes and enforce agreements
When personal data is no longer required, it is securely deleted or anonymized.
9. Your Rights Under GDPR
If you are located in the European Economic Area (EEA), you have the following rights:
-
Right of access – Request a copy of your personal data
-
Right to rectification – Request correction of inaccurate data
-
Right to erasure – Request deletion of your personal data
-
Right to restrict processing – Request limited use of your data
-
Right to data portability – Receive your data in a structured format
-
Right to object – Object to processing based on legitimate interests or marketing
-
Right to withdraw consent – At any time, where consent was given
To exercise these rights, please contact us using the details provided above.
10. Right to Lodge a Complaint
If you believe that we have not complied with applicable data protection laws, you have the right to lodge a complaint with a supervisory authority.
In the European Union, this may be the data protection authority in your country of residence, place of work, or where the alleged infringement occurred.
11. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including encryption, secure servers, and access controls. However, no method of transmission over the Internet is completely secure, and we cannot guarantee absolute security.
12. Children’s Privacy
Our Site is not intended for individuals under the age of 16. We do not knowingly collect personal data from children.
13. Changes to This Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time. Any changes will be posted on this page with an updated "Last Updated" date.
We encourage you to review this Privacy Policy periodically.
14. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us on our contact page.
This Privacy Policy is provided for general informational purposes and is designed to align with GDPR principles. For full legal compliance, consultation with a qualified legal professional is recommended.
