BodyFit operates in compliance with applicable UK and international regulations governing data protection, AI, and digital health.
BodyFit complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We process personal data lawfully, minimise what we collect, and respect user rights including access, rectification, erasure, and portability. See our Privacy Policy and GDPR Rights pages.
Our AI coaching recommendations are designed to support, not replace, human judgement. We do not make solely automated decisions with legal or significant effects on users without safeguards. Our AI Governance and Responsible AI pages explain how we keep AI accountable.
BodyFit is a fitness and wellness platform, not a medical device or service. We do not diagnose, treat, or prescribe. Our Medical Disclaimer and AI Disclaimer define these boundaries clearly. Users with health conditions should consult qualified healthcare professionals.
We monitor regulatory developments and update our practices accordingly. Our policies are versioned, with effective dates and change histories. Significant compliance changes are communicated to users. See our Policies & Standards page for the full framework.
Governance Overview
BodyFit’s governance framework defines how we make decisions, manage risk, and maintain the trust our users place in us. It spans AI, data, privacy, security, and ethics.
Privacy Governance
Privacy is foundational at BodyFit. Our Privacy Governance framework ensures user data is protected, user rights are respected, and privacy is built into everything we do.
AI Governance
BodyFit’s AI Governance framework ensures our AI Coach is responsible, explainable, safe, and accountable — especially because it makes recommendations about users’ health and fitness.
Policies & Standards
BodyFit maintains a comprehensive library of policies and standards that govern our operations, all versioned, dated, and publicly available.