PROFESSORION GROUP
Services Products About Gymorion
Gymorion

Privacy Policy

Last updated: August 5, 2026

This policy explains how Professorion Group ("we," "us") handles information across this website and our product, Gymorion — a gym management platform used by fitness centers ("gyms") and their staff and members.

Who this applies to

Gymorion is sold to gyms as a business tool. Each gym is the operator of its own member data — it decides who its members are and manages their day-to-day relationship with them. We act as the technology provider and process that data on the gym's behalf to run the platform.

Information we collect

From a gym signing up: gym name, contact email, contact phone, country, and an admin username/password.

From gym staff: username, email (staff created before this was collected are not required to add one), full name, and a hashed password.

From gym members (entered by gym staff or by members themselves):

  • Full name, phone number, gender, and a profile photo
  • A face-recognition enrollment, used only for check-in at the door — optional, and only collected if the gym enables it and the member enrolls
  • Subscription, payment amount, and attendance records
  • Workout, nutrition, and progress-tracking data the gym or member enters
  • A device token, if the member enables push notifications

This website does not currently use cookies or third-party analytics. If that changes, this policy will be updated first.

How we use it

To operate Gymorion: authenticate logins, run check-in and attendance, track subscriptions and store orders, send the notifications a gym configures (renewal reminders, announcements), and provide support when a gym or member contacts us about an issue.

Face-recognition data specifically

A member's face-recognition enrollment is used only to identify them at their own gym's check-in point. It is never used for any other purpose, never shared with another gym, and never sold. A member or gym can ask for it to be deleted at any time — this does not remove the member's other account data or check-in history.

How data is stored and secured

Data is stored on Supabase (a hosted PostgreSQL provider) over encrypted connections. Passwords are hashed (bcrypt) — we cannot see or recover a plain-text password, including our own staff's. Each gym's data is scoped to that gym; gyms cannot see another gym's members, staff, or records.

Sharing

We do not sell personal data. We share it only with the infrastructure providers needed to run the service (hosting, storage, and — when a gym enables it — push-notification delivery), and only to the extent needed to provide Gymorion.

Data retention

Data is kept for as long as the gym's account is active. A gym can request deletion of a member's data, or of its own account and all associated data, by contacting us — see below.

Your rights

Depending on where you're located, you may have rights to access, correct, or request deletion of your personal data. A gym's members should generally start with their own gym, since the gym manages that relationship day to day; we're also reachable directly using the contact information on this website.

Children

Gymorion is a business tool used by gym staff and by gym members that a gym has enrolled. We do not knowingly collect data directly from children outside of that gym relationship.

Changes to this policy

We may update this policy as the product changes. The "last updated" date above reflects the most recent revision.

Contact

Questions about this policy or a data request can be sent using the contact information on this website.

PROFESSORION GROUP
Home Gymorion Privacy Terms Contact
© 2026 Professorion Group. All rights reserved.