Privacy Policy

Last updated: October 27, 2025

We're straight up with you - your privacy isn't just some legal checkbox for us. Here's the real deal on how we handle your info at Mithral Forge Crest.

Look, we get it - nobody actually reads these things. But we've tried to keep this real and straightforward. Bottom line: we're not here to sell your data or spam you with nonsense. We collect what we need to run a solid gym and keep you safe, and that's about it.

When you sign up with us, we're gonna need some basics - your name, email, phone number, and address. Pretty standard stuff, really.

For training purposes, we might collect fitness-related info like your current strength levels, injury history, goals, and progress measurements. This helps us write better programs for you and keep you from getting hurt.

Payment details go through our secure processor - we don't actually store your full credit card info on our systems. That's not our job, and honestly, we don't want that responsibility.

If you're filling out our athletic performance assessment or working with our coaches one-on-one, we'll record that data to track your progress over time. Think PRs, body comp changes, that sort of thing.

We also grab some basic website usage info through cookies - what pages you visit, how long you hang around, where you clicked. Nothing creepy, just helps us make the site better.

Your info gets used for running the gym and making your experience better. Here's the breakdown:

Training & Coaching: We use your fitness data to design programs, track progress, and make adjustments. If you're working with one of our coaches, they'll reference your history to keep sessions productive and safe.

Communication: We'll hit you up about class schedules, membership renewals, gym closures, or new programs we think you'd dig. If you've opted in, you might get our newsletter with training tips and community updates.

Payment Processing: Obviously we need to charge your membership fees and any additional services you sign up for. All transactions are logged for accounting purposes.

Safety & Liability: Your emergency contact info and medical history (if you've shared it) are kept on file in case something goes sideways during training. We've never had to use it, but it's there.

Improving Our Services: We look at trends in the data - like which programs are most popular or what times the gym's packed - to make better decisions about equipment, scheduling, and offerings.

We're NOT selling your data to third parties, and we're NOT using it for anything outside of gym operations. That's a promise.

We keep your info pretty locked down, but there are a few situations where others might see it:

Our Coaching Team: Your assigned coaches and trainers can access your training history, goals, and progress data. They need this to do their jobs properly.

Service Providers: We work with a few external companies - payment processors, email service providers, and our website host. They only get what they need to provide their specific service, and they're contractually bound to keep it confidential.

Legal Requirements: If we're legally required to hand over info (like a court order or regulatory request), we'll comply. Hopefully that never happens, but we're mentioning it just in case.

Business Transfers: If Mithral Forge Crest ever got sold or merged with another gym, your data would transfer to the new owners. We'd let you know if this happened.

That's it. We're not sharing your email with marketing companies, we're not selling member lists, and we're definitely not posting your lifting numbers publicly without permission.

We take security seriously - probably more seriously than we take our rest days (and we actually take those pretty seriously).

All data transmission to and from our website is encrypted using SSL technology. Your passwords are hashed, not stored in plain text. Our databases are protected with firewalls and access controls.

Physical paperwork (like your membership agreement) is kept in locked cabinets at the gym. Only authorized staff have access, and we shred documents when they're no longer needed.

Our staff is trained on privacy practices. They know not to leave your file sitting on the front desk or discuss your training details where others can overhear.

That said, no system is 100% bulletproof. We do everything reasonably possible to protect your data, but we can't guarantee absolute security. If we ever experience a data breach, we'll notify affected members promptly and work to fix the issue.

Under Canadian privacy law (PIPEDA), you've got some solid rights when it comes to your personal info:

Access: You can ask to see what data we have on you. Just shoot us an email and we'll get you a copy within a reasonable timeframe.

Correction: If something's wrong or outdated, let us know and we'll fix it. We want accurate records anyway.

Deletion: You can request that we delete your data. We'll comply unless we have a legitimate reason to keep it (like if you still owe membership fees or there's an ongoing legal matter).

Opt-Out: Don't want our newsletter? No problem - there's an unsubscribe link in every email. You can also opt out of non-essential communications by contacting us directly.

Portability: Want to take your training data to another gym? We can provide it in a usable format.

To exercise any of these rights, email us at forge@mythralforgecrest.info or call (604) 789-4523. We'll verify your identity (can't just hand out member data to anyone who asks) and then process your request.

Yeah, we use cookies. Not the protein-packed kind you eat post-workout, but the digital tracking kind.

Essential Cookies: These keep the website functioning - remembering your login, keeping items in your cart, that sort of thing. You can't really turn these off without breaking the site.

Analytics Cookies: We use these to see how people use our site. Which pages are popular? Where do people bounce? This helps us make improvements. We're not tracking you across the internet - just on our site.

Marketing Cookies: If you've given consent, these help us show you relevant ads or remember your preferences. You can disable these in your browser settings if you want.

Most browsers let you control cookies through their settings. You can block them entirely, get notified when sites try to set them, or delete them after browsing. Just know that blocking all cookies might make parts of our site wonky.

We're not using any super invasive tracking tech. No fingerprinting, no sneaky stuff. Just standard website analytics to run a better gym.

Our programs are designed for adults 16 and up. If you're under 18, we'll need a parent or guardian to sign off on your membership and provide consent for data collection.

We don't knowingly collect information from kids under 16 without parental consent. If we find out we've accidentally collected data from someone under 16 without proper authorization, we'll delete it.

Parents or guardians have the right to review, request deletion of, or refuse further collection of their child's information. Just contact us and we'll handle it.

For youth members, we follow the same privacy practices as we do for adults - we just need that extra layer of parental involvement.

We're not data hoarders, but we do need to keep some stuff for practical and legal reasons.

Active Members: While you're training with us, we keep all your data current and accessible. Makes sense, right?

After Cancellation: When you leave, we'll keep your basic info and training history for about 2 years. Why? In case you come back (people often do), and for liability purposes if any issues come up.

Financial Records: Tax law requires us to keep payment and billing records for 7 years. Can't get around that one.

Marketing Lists: If you've unsubscribed, we'll keep your email on a "do not contact" list indefinitely so we don't accidentally add you back.

After the retention periods are up, we securely delete or anonymize the data. Shredding paper files, wiping digital records - the whole deal.

Privacy laws change, our business evolves, and sometimes we just realize we could explain things better. Point is, this policy might get updated from time to time.

When we make changes, we'll update the "Last updated" date at the top of this page. For significant changes (like if we start collecting totally new types of data), we'll send out an email notification to all active members.

We'd recommend checking back here occasionally, especially if it's been a while. Though honestly, if we're making major privacy changes, you'll hear from us directly.

Continuing to use our services after changes go into effect means you're cool with the updated policy. If you're not cool with it, you can cancel your membership - we'd hate to see you go, but we get it.

If something in this policy doesn't make sense, or if you've got privacy concerns, just reach out. Seriously - we'd rather you ask than sit there wondering.

Email: forge@mythralforgecrest.info

Phone: (604) 789-4523

In Person: Stop by the gym at 1847 Steel Mountain Way, Vancouver, BC V6B 2K9

We'll get back to you within a few business days. If you're not satisfied with our response, you've got the right to file a complaint with the Office of the Privacy Commissioner of Canada. But let's try to work it out first.

At the end of the day, we're a gym that cares about our members. Your trust matters to us, and we're committed to handling your information responsibly. Now let's get back to the important stuff - like hitting new PRs and building that legendary strength.

The Bottom Line

We collect what we need to run a great gym, we protect it like it's our own, and we don't do anything shady with it. If you've got questions or want to exercise your privacy rights, we're here to help. Thanks for trusting us with your fitness journey - and your personal info.