This policy describes how Pulso collects, uses and protects personal data, whether you own a gym that uses the platform or are a member of a gym that lives on Pulso.
What data we collect
From gym owners: name, email, password (encrypted), phone number, gym name and details, and the bank transfer proofs you uploaded to activate your licence.
From gym members: name, email, phone, the date you joined the gym, attendance history, subscribed plan, and the payment proofs you gave your gym. This data belongs to the gym you chose, not to Pulso.
From all visitors: minimal technical server data (IP, user agent, response times) for security and debugging. We don't use tracking cookies, Google Analytics, Facebook Pixel or similar tools.
How we use the data
The data is used only to make the product work: to authenticate you, show you what's yours, process recorded payments, and send operational emails (password recovery, licence confirmation). We don't sell, rent or share data with third parties for marketing.
Isolation between gyms
Each gym lives in a separate logical space, with isolation enforced at the database level (Postgres Row Level Security). A gym owner cannot see another gym's data, even if they try. Members of one gym cannot see members of another. This is the first line of defence, not a promise.
Retention and cancellation
When you cancel your licence, your data is kept for 30 days in case you change your mind. After that, it's permanently removed from the system. Before or during that period, you can export everything in CSV format from the dashboard.
Your rights
You can request access to, correction of or deletion of your personal data at any time by emailing support@pulso.fitness. We reply within 30 days.
Contact
Questions about this policy? Write to support@pulso.fitness.