Privacy Policy – IQNITER
Introduction
This document describes how IQNITER ApS collects and processes your personal data.
We respect your privacy and are committed to protecting your personal data. This Privacy Policy will inform you on how we handle and protect your personal data when you:
- visit our websites http://www.iqniter.com and my.iqniter.com
- use our ‘Services’, which cover IQNITER’s training solutions and IQNITER heart rate monitors related hereto, third-party apps e.g. Google Fit or Apple Health, your dedicated page on my.iqniter.com, IQNITER’s dedicated fan page on Meta and Twitter.
- otherwise interact with us (for example, attending IQNITER classes), unless a different privacy policy is displayed.
- Our Privacy Policy explains:
- Who are we
- The information we collect about you
- How we use your personal data
- Disclosures of your personal data
- Data security
- Retention period
- Your rights
IQNITER may update this Privacy Policy from time to time. Please refer to our website for the most current version. If you do not agree to the content of our Privacy Policy and our Terms and Conditions, you are obliged to stop using our Services.
Who are we
IQNITER ApS is the data controller and responsible for your personal data (referred to as ”IQNITER”, “we”, “us” or “our” in this Privacy Policy).
We will only process your personal data in accordance with this Privacy Policy and applicable law to which we are subject, in particular the “Databeskyttelsesforordningen/Persondataforordningen” that implements the principles of GDPR and “Databeskyttelsesloven”, which implements Danish supplements to the GDPR principles General Data Protection Regulation (EU 2016/679) (hereinafter the “GDPR”) and the Danish Data Protection Act no. 502 of 23 May 2018 supplementing the GDPR and any amendments thereto.
If you have any questions or concerns about how your personal data is handled, including any requests to exercise your legal rights, please contact us via our Contact Form or via email at info@iqniter.com.
The information we collect about you
Personal data, or personal information, means any information about an individual from which that person can be identified. It does not include anonymous data.
Connected Devices and Apps: IQNITER collects information from devices and apps you connect to IQNITER. For example, you may connect google Fit or Apple Health to IQNITER ang give consent that information from these apps will be transferred to IQNITER. You can withdraw such consent at any time; however, this will not affect any processing that has already taken place. IQNITER Apps use and transfer information received from Google APIs to any other app will adhere Google API Services User Data Policy, including the Limited Use requirements.
We may collect, use, store and disclose different kinds of personal data about you which we have grouped together as follows. Some of the data you have provided to us directly whereas other personal data about you is collected by our Services, automatically:
- Identity Data includes first name, last name, username or similar identifier, title, date of birth, country of residence and gender.
- Contact Data includes billing address, delivery address, email address and telephone numbers.
- Body metrics includes Height, Weight, Max heart rate, Functional Threshold Power and Activity Level
- Workout Data includes workout information our Services collect automatically when you use them, that is heart rate, power, cadence, burned calories, fitness tests results and challenges results. Our Services also include tailored features that personalize your experience and enhance the value that our platform provides to you. For example, we may use your gender, birth date and weight to estimate your personal calorie burn during a workout or compute your initial Max HR value based on your gender and birthdate.
- Financial Data includes bank account and credit card information, which is stored safely at third-parties.
- Transaction Data includes details about payments to and from you and other details of Services you have purchased from us.
- Technical Data includes internet protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform and other technology on the devices you use to access the Website and our Services.
- Profile Data includes your username and password (encrypted), purchases or orders made by you, your interests, preferences, feedback, information provided to our customer survey and survey responses. You also have the option to add your heart rate belt and related profile information such as Max HR, FTP, gender, weight, etc.
- Usage Data includes information about how you use our Services.
- Marketing and Communications Data includes your preferences in receiving marketing from us and third-parties and your communication preferences.
Cookies and other tracking technologies: IQNITER and our third-party partners, such as our advertising and analytics partners, use cookies and other tracking technologies (e.g., web beacons and device identifiers) to provide functionality and to recognize you across different Services. For more information, please see our Cookies and Tracking Notice.
How we use your personal data
We have set out below, in table format, a description of all the ways we use your personal data, and which of the legal bases we rely on to do so. We have also identified what our legitimate interests are where appropriate.
Note that we may process your personal data for more than one lawful ground depending on the specific purpose for which we are using your data. Please contact us if you need details about the specific legal ground, we are relying on to process your personal data where more than one ground has been set out in the table below.
In some cases, we may ask you to consent specifically to a processing activity. We will not process your personal data if you do not consent specifically to such processing, e.g. disclosure of your personal data to third-party partners. If you have provided your consent to a processing activity you may withdraw such consent at any time, however, this will not affect any processing that has already taken place.
Purpose/activity | Type of personal data (as categorized above) | Legal basis for processing, incl. description of our legitimate interest where relevant |
To register you as a user of a Service and in our system | (a) Identity Data (b) (Contact Data (c) (Body Metrics (d) Profile Data | Necessary to perform a contract with you, c.f. GDPR art. 6 (1)(b) |
To provide our Services to you including provide real-time feedback during your workout, identify you on the leaderboard using your name etc.
| (a) Identity Data (b) Contact Data (c) Body Metrics (d) Profile Data (e) Workout Data | Necessary to perform a contract with you, c.f. GDPR art. 6 (1)(b) |
To perform customer service | (a) Identity Data (b) Contact Data (c) Profile Data (d) Body Metrics (e) Workout Data (f) Financial Data (g) Transaction Data | Performance of a contract with you, c.f. GDPR art. 6 (1)(b a) (b) Necessary for our legitimate interests (to perform customer service), c.f. GDPR art. 6 (1)(f)
|
Share your User name and Sensor ID with your fitness club operator(s) of the fitness clubs you exercise in for the purpose of enabling you to use our Services in the fitness club. For the same purpose your User Name, Sensor ID and Workout Data will be shown on the leaderboard in the studio where you perform your workout during your workout.
| (a) User name (b) Sensor ID (c) Workout Data (d) | Performance of a contract with you, c.f. GDPR art. 6 (1)(b a)
|
To share your data registered by our Services with the fitness club operator(s) of the fitness clubs you exercise in. The Purpose is set out below under disclosures and will depend on which disclosures you consent to.
| (a) Identity Data (b) Contact Data (c) Profile Data (d) Body Metrics (e) Workout Data | This will be based on your consent, c.f. GDPR art. 6 (1)(a). |
To send you newsletters and other marketing material, including displaying ads on other companies’ websites and applications, as well as on platforms like Meta and Twitter.
| (a) Identity Data (b) Contact Data (c) Profile Data (d) Transaction Data (e) Technical Data | (a) Necessary for our legitimate interests (to market our Services), c.f. GDPR art. 6 (1)(f).
|
To administrate our relation to you, including asking you to participate in user surveys
| (a) Identity Data (b) Contact Data (c) Profile Data (d) Body Metrics (e) Usage Data (f) Marketing and Communications Data
| Necessary for our legitimate interests (to study how customers use our Services, to develop them and to grow our business), c.f. GDPR art. 6 (1)(f). |
To administer and protect our business and the Website (including troubleshooting, data analysis, testing, system maintenance, support, reporting and hosting of data)
| (a) Identity Data (b) Contact Data (c) Technical Data | (a) Necessary for our legitimate interests (for running our business, provision of administration and IT services, network security and to prevent fraud), c.f. GDPR art. 6 (1)(f). |
To use data analytics to improve the Website and Services, marketing, customer relationships and experiences
| (a) Technical Data (b) Usage Data | Necessary for our legitimate interests (to define types of customers for our Services, to keep our website updated and relevant, to develop our business and to inform our marketing strategy), c.f. GDPR art. 6 (1)(f).
|
Disclosures of your personal data
We disclose information we collect about you in the ways described below, including in connection with possible business transfers, but we will never sell or in other way dispose your personal information to third-parties, without your prior consent.
Disclosure of personal data to fitness club operators
When you use our Services, you may in the Privacy setting – via an opt-in function – choose to share your personal data as described above. Below is explained in further detail what personal information you can choose to share with your fitness club operators. We will only share your personal data with the fitness club operator based on your explicit consent, except for the following personal data which are basics for using the IQNITER services in the fitness clubs and will always be displayed on the fitness clubs group screen: Your display name and your actual values for the current selection of exercise metrics during an IQNITER session (Heart Rate, Power, Peak Training Effect, Recovery Time, Score, etc.).
For improved personal training services: If you agree, we share your Workout Data history with your fitness club operators and trainers in order to allow them to track your fitness level over time and optionally provide you enhanced and personalized training program. We share your personal fitness level attributes (e.g., Qpoints, ‘Hearts’, FTP, LTHR, Max HR, Activity level, VO2Max, gender, height, weight, birthdate) with your fitness club operators. This information is basic for proper operation of the IQNITER Services in the fitness club. They can edit these values for you and make them more accurate for you, based on their professional experience and their acquaintance with you. For example, they can edit your FTP for you and then your %FTP and power zones displayed on our training systems will be more accurate. You can change permissions in your Privacy settings at my.iqniter.com or the IQNITER APP.
For public leaderboards: You accept and agree that IQNITER and IQNITER partners want to service you by promoting your workout performance on our websites, other public leaderboards, or general email services. For example, being visible on public leaderboards showing top-10 having most burned calories or top-10 achieved highest score. You can change permissions on your Privacy settings at my.iqniter.com or the IQNITER APP.
Customer Data shared with third-party applications
When you choose to allow other (third-party) apps to import/export your data, we disclose personal information that is generated through IQNITER’s platform and shared with external applications. By using our app and allowing access to external applications, you are consenting to the collection, use, and disclosure of your personal information as described in this Privacy Policy.
Information We Collect: We collect information as listed in above sections, that you provide to us through our app. We also collect information about how you use our app, such as your device information, IP address, and location data. In addition, we may collect information from external applications that you authorize to access your data through our app.
Disclosure of Information: We may share your personal information with external applications that you authorize to access your data through our app.
Security of Information: We take reasonable measures to protect your personal information from unauthorized access, use, and disclosure. However, we cannot guarantee the security of your information, and you should take steps to protect your own information, such as using strong passwords and not sharing your login credentials. Be aware that by authorizing third-party apps to share your information, IQNITER has no influence or responsibility/liability on the processing or security of the data you have chosen to share. Please beware that personal information may be legally and rightfully disclosed when it is required by law or when we are protecting IQNITER’s rights or property or the rights or property of other IQNITER users, if we have reason to believe that other parties may be interfering with your or our rights and property.
From time to time, we may also need to disclose personal information to other parties, such as any person (natural or legal) or organization to whom we may be required by applicable laws to disclose personal information, including, but not limited to, law enforcement authorities, financial institutions, and central and local government.
Personal information may also be disclosed in connection with a corporate restructuring, sale, or assignment of assets, merger, divestiture, or other changes of the financial status of us.
Finally, personal information may also be disclosed if necessary, to protect the vital interests of us (unless this would prejudice the rights and freedoms or interests of you), or in our judgment to comply with applicable law, legal or regulatory obligations or regulatory inquiries or requests.
Data Security
We use data hosting service providers within EU, who adhere to the GDPR principles, to host the information we collect, and we use technical measures to secure your data. While we implement safeguards designed to protect your information, no security system is impenetrable and due to the inherent nature of the Internet, we cannot guarantee that data, during transmission through the Internet or while stored on our systems or otherwise in our care, is absolutely safe from intrusion by others.
Retention period
How long we keep the data we collect about you depends on the type of data processed, as described in further detail below. When we no longer have a legitimate purpose for processing your data, we will either delete or anonymize your information.
User account information: As a ground rule, we retain your account information until you delete your user account. If you have not been active for 24 months, we will automatically delete your account.
Information relating to your purchase of the Services will as a ground rule be deleted after three years after the end of the calendar year that you made your purchase. However, we may retain your data for a longer period of time in case we a legitimate purpose for this, e.g. if it is necessary for the establishment, exercise or defense of legal claims or in case it is necessary to comply with a legal obligation,
Accounting information will be stored for 5 years till the end of the accounting year pursuant to the Book Keeping Act.
We also retain some of your data as necessary to support business operations and to continue to develop and improve our Services. Where we retain information for Service improvement and development, we take steps to eliminate information that directly identifies you, and we only use the information to uncover collective insights about the use of our Services, not to specifically analyze personal characteristics about you.
Marketing information: If you have elected to receive marketing emails from us, we retain information about your marketing preferences unless you specifically ask us to delete such information. Please note that we keep documentation for your consent for two years after you withdraw your consent due to the statute of limitation. We retain information derived from cookies and other tracking technologies for a reasonable period of time from the date such information was created.
Your rights
To create transparency about our processing of your Personal Data, please find below information of your rights as registered. You have the right to:
Request access to your personal information (commonly known as a “data subject access request”). This enables you to receive a copy of the personal information we hold about you and to check that we are lawfully processing it. Our Services give you the ability to access and update certain information about you from within the Service. For example, you can access and update your personal information from your account settings and update your name, gender and birthdate. You can also update your profile picture, primary email address, weight, height and additional fitness related attributes.
Correction of the personal information that we hold about you. You can correct this information at my.iqniter.com. This enables you to have any incomplete or inaccurate information we hold about you corrected.
Request erasure of your personal information. This enables you to ask us to delete or remove personal information where there is no good reason for us to continue to process it. You also have the right to ask us to delete or remove your personal information where you have exercised your right to object to processing (see below), where we may have processed your information unlawfully or where we are required to erase your personal data to comply with local law. Note, however, that we may not always be able to comply with your request of erasure for specific legal reasons which will be notified to you, if applicable, at the time of your request. You can ask us to delete all personal data collected and processed by IQNITER. Data and profiles that identify you will be deleted 30 days after you have informed us to do so. As a consequence, related data, e.g. training records, will be anonymized.
Object to processing of your personal information where we are relying on a legitimate interest (or those of a third-party) and there is something about your particular situation which makes you want to object to processing on this ground as you feel it impacts on your fundamental rights and freedoms. You also have the right to object where we are processing your personal information for direct marketing purposes. In some cases, we may demonstrate that we have compelling legitimate grounds to process your information which overrides your rights and freedoms.
Request the restriction of processing of your personal information. This enables you to ask us to suspend the processing of your personal data in the following scenarios: (a) if you want us to establish the data’s accuracy; (b) where our use of the data is unlawful but you do not want us to erase it; (c) where you need us to hold the data even if we no longer require it as you need it to establish, exercise or defend legal claims; or (d) you have objected to our use of your data but we need to verify whether we have overriding legitimate grounds to use it.
Request the transfer of your personal information to another party (also known as data portability). Data portability is the ability to obtain some of your information in a format you can move from one service provider to another (for instance, when you transfer your mobile phone number to another carrier). Depending on the context, this applies to some of your information, but not to all of your information.
You may opt out of receiving general service communication or promotional communications from us by using the unsubscribe link within each email, updating your email preferences within your Privacy Settings page at http://my.iqniter.com, or by contacting us as provided below to have your contact information removed from our service email list, promotional email list or registration database. Even after you opt out from receiving promotional messages from us, you will continue to receive transactional messages from us regarding our Services or other important communication such as password reset notifications.
The right to lodge a complaint: You also have the right to lodge a complaint with the local data protection authority, if you believe or suspect that we process your Personal Data in an unlawful manner. In Denmark it is Datatilsynet. You can find Datatilsynets contact information here.
Where your data was transferred to other applications and maintained by third-parties, you will need to contact those third-party service providers directly to have your information deleted or otherwise restricted.
Version 2.5 – 26 July 2023