Privacy Policy

Privacy Policy

Last Updated: July, 20, 2025

EnVision Train Fitness (“we,” “our,” or “us”) is committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, share, and protect information when you use our fitness services, website, and facilities located in Lancaster, Pennsylvania.

Information We Collect

Personal Information

We collect information you provide directly to us, including:

  • Contact Information: Name, email address, phone number, and mailing address
  • Account Information: Username, password, and account preferences
  • Payment Information: Credit card numbers, billing address (processed securely through our payment processor)
  • Health and Fitness Information: Health questionnaires, fitness goals, medical conditions, medications, emergency contact information, and physical assessment results
  • Progress Information: Measurements, workout history, and progress photos (with your consent)
  • Communication Preferences: Email marketing opt-ins and communication preferences

Automatically Collected Information

When you visit our website or use our services, we may automatically collect:

  • Device information and IP addresses
  • Browser type and operating system
  • Pages visited and time spent on our site
  • Referring website addresses

How We Use Your Information

We use the information we collect to:

  • Provide Fitness Services: Create personalized training programs, track your progress, and deliver our fitness services
  • Process Payments: Handle membership fees and service payments
  • Communicate With You: Send class schedules, appointment reminders, and important service updates
  • Marketing: Send promotional emails about new services, special offers, and fitness tips (only with your consent)
  • Safety and Security: Ensure a safe training environment and respond to emergencies
  • Improve Our Services: Analyze usage patterns to enhance our programs and facilities
  • Legal Compliance: Meet our legal obligations and enforce our terms of service

How We Share Your Information

We share your information only in the following circumstances:

Service Providers

We work with trusted third parties who help us operate our business:

  • Virtual Assistant Services: Our insured virtual assistant helps manage some data for the purposes of email marketing, social media marketing, and other administrative tasks
  • Fitness Coaches and Trainers: Our trainers access relevant health and fitness information to provide personalized training
  • Payment Processors: Secure payment services that are PCI-compliant
  • Email Marketing Platforms: To send you updates and promotional content (with your consent)

Legal Requirements

We may disclose information when required by law, court order, or government request, or when necessary to protect our rights, property, or safety.

Business Transfers

If we sell or transfer our business, your information may be transferred to the new owner.

With Your Consent

We may share your information for any other purpose with your explicit consent.

Photos and Social Media

Progress Photos

  • Progress photos are stored securely and accessed only by your assigned trainer
  • Photos are used solely for tracking your fitness journey unless you provide separate consent
  • You may request deletion of your progress photos at any time

Marketing and Social Media Use

  • We will never use your photos for marketing or social media without your explicit consent
  • You may revoke consent for future use at any time, though we cannot remove previously published content
  • Members may not photograph or film other members without express written consent

Data Security

We implement appropriate technical and organizational measures to protect your personal information, including:

  • Secure storage of physical and electronic records
  • Access controls limiting data access to authorized personnel
  • Regular security training for staff and contractors
  • Encryption of sensitive data during transmission
  • PCI DSS compliance for payment processing

While we strive to protect your information, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

Data Retention

We retain your personal information for as long as necessary to provide our services and comply with legal obligations:

  • Active Member Data: Maintained during your membership and for 3 years after termination
  • Health Records: 7 years as recommended by fitness industry standards
  • Financial Records: 7 years for tax and accounting purposes
  • Marketing Lists: Until you unsubscribe or request removal
  • Progress Photos: Until you request deletion or 3 years after membership ends

Your Rights and Choices

Access and Updates

You have the right to:

  • Access your personal information we hold
  • Update or correct inaccurate information
  • Request a copy of your data in a portable format

Communication Preferences

  • Marketing Emails: You can unsubscribe at any time using the link in our emails or by contacting us
  • Transactional Messages: You cannot opt out of important service-related communications
  • We process all opt-out requests within 10 business days

Data Deletion

You may request deletion of your personal information, subject to our legal obligations to retain certain records.

Children’s Privacy

Our services are not intended for children under 18. We do not knowingly collect information from children under 18. If you believe we have collected information from a child, please contact us immediately.

Email Marketing Compliance

We comply with the CAN-SPAM Act for all marketing communications:

  • Clear identification of promotional messages
  • Accurate sender information
  • Valid physical mailing address in all emails
  • Prompt processing of unsubscribe requests
  • No deceptive subject lines or content

Third-Party Links

Our website may contain links to third-party sites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies.

Data Breach Notification

In the event of a data breach affecting your personal information, we will notify you without unreasonable delay as required by Pennsylvania law. If the breach involves sensitive identifiers and affects more than 500 Pennsylvania residents, we will also notify the Pennsylvania Attorney General and provide 12 months of free credit monitoring services when required.

Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of any material changes by:

  • Posting the new policy on our website
  • Updating the “Last Updated” date
  • Sending an email notification for significant changes

Contact Information

If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

EnVision Train Fitness
313 W. Liberty Street, Suite 18 Lower Level
Lancaster, PA 17603
Email: envisiontrainfitness@gmail.com
Phone: (717) 413-1134

Privacy Officer: Theresa Fackler, Owner of EnVision Train Fitness

Consent

By using our services, visiting our facilities, or providing us with your personal information, you consent to the collection, use, and sharing of your information as described in this Privacy Policy.


Pennsylvania Residents: You have specific rights under Pennsylvania law. For more information about your privacy rights, visit the Pennsylvania Attorney General’s website at http://www.attorneygeneral.gov.

Payment Card Users: We are PCI compliant and follow industry standards to protect your payment information. For questions about payment security, please contact us using the information above.