Legal
Privacy Policy
Last updated: June 2026
The Bridge ("we", "us") connects customers with independent personal trainers. This policy explains what personal data we collect, why, and how it's handled. We are committed to GDPR compliance and store data within the EU.
What we collect
- Customers booking a session: name, email address, and the date/time of your booking. Customers do not create accounts — we only hold the details needed to confirm and manage your booking.
- Personal Trainers: name, login username, email, contact number, bio, specialisms, service areas, hourly rate, and a profile photo, provided when applying to join or set up by an administrator.
- Contact form submissions: name, email, optional phone number, and your message.
Payments
All payments are processed by Stripe. We never see or store your card details — Stripe handles payment data directly under its own security and compliance standards.
How we use your data
- To create and manage bookings, including sending confirmation and cancellation emails.
- To notify the relevant Personal Trainer and our admin team when a booking is made.
- To respond to messages sent through our contact form or Personal Trainer applications.
Who we share data with
We use a small number of service providers (data processors) to run the platform:
- Supabase — our database and file storage provider, hosted in the EU.
- Stripe — payment processing.
- Resend — sending transactional emails (booking confirmations, notifications).
We do not sell personal data to third parties.
Your rights
Under GDPR, you have the right to request access to, correction of, or deletion of your personal data. To make a request, please get in touch via our contact page.
Cookies
See our Cookie Policy for details on the cookies we use.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date above.