Legal
Privacy Policy
Effective Date: April 2026 · Version 1.0
Supermind AI (“we,” “our,” or “us”) operates SuperStudio, a studio management platform for fitness and wellness businesses in the Philippines. This Privacy Policy explains how we collect, use, store, share, and protect personal information when you use our platform at super-studio.tech and all associated services.
This policy is compliant with the Data Privacy Act of 2012 (Republic Act No. 10173) of the Philippines and its Implementing Rules and Regulations. By using SuperStudio, you acknowledge that you have read and understood this Privacy Policy.
1. Who This Policy Applies To
This Privacy Policy applies to:
- Subscribers — business owners and operators who sign up for a SuperStudio account.
- Authorized Users — staff members, coaches, and administrators added to a Subscriber's account.
- Studio Members — clients and members of fitness studios whose information is managed through the Platform.
- Visitors — individuals who browse super-studio.tech without creating an account.
2. Information We Collect
2.1 Information You Provide Directly
When you sign up or use SuperStudio, we collect:
- Account information: business name, owner name, email address, phone number, and business address.
- Billing information: payment method details processed and stored securely through PayPal. We do not store full card or bank account numbers on our servers.
- Business content: class schedules, coach profiles, membership plans, pricing, inventory data, and other operational information you input into the Platform.
- Member data: names, contact information, membership status, attendance records, and payment history of your studio's clients, which you upload or generate through the Platform.
- Communications: messages, support tickets, and feedback you send to us.
2.2 Information Collected Automatically
When you access the Platform, we automatically collect:
- Usage data: pages visited, features used, actions taken, session duration, and click patterns.
- Device and technical data: IP address, browser type, operating system, device identifiers, and time zone.
- Log data: error reports, access logs, and system activity for performance monitoring and debugging.
2.3 Information from Third Parties
We may receive information about you from:
- PayPal: transaction records, payment status, and subscription confirmations for payments processed through PayPal.
- Viber: delivery and read status for automated messages sent to your studio members.
- GoHighLevel (GHL): platform usage data and workflow activity related to your sub-account.
3. How We Use Your Information
We use the personal information we collect to:
- Provide, operate, and maintain the SuperStudio platform and all its features.
- Process subscription payments, issue invoices, and manage billing cycles through PayPal.
- Send automated notifications and reminders to studio members via Viber on your behalf.
- Communicate with you about your account, product updates, and support requests.
- Monitor platform performance, diagnose technical issues, and improve the service.
- Comply with legal obligations under Philippine law, including the Data Privacy Act of 2012.
- Detect, investigate, and prevent fraudulent transactions or abuse of the Platform.
- Generate anonymized and aggregated analytics to improve our product offerings.
We will not use your personal information or your members' data for advertising purposes, nor will we sell it to third parties.
4. Legal Basis for Processing
Under the Data Privacy Act of 2012, we process personal data based on the following grounds:
- Contractual necessity — processing is required to fulfill the subscription agreement between you and Supermind AI.
- Legitimate interests — for platform security, fraud prevention, and service improvement, where these do not override your rights.
- Legal compliance — where processing is required by Philippine law or regulatory obligations.
- Consent — for any processing activities not covered by the above grounds, we will obtain your explicit consent.
6. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes outlined in this policy:
- Active account data is retained for the duration of your subscription.
- After account closure, your data is retained for 90 days to allow for data export requests, after which it is permanently deleted or anonymized.
- Billing and transaction records may be retained for up to seven (7) years to comply with Philippine tax and accounting regulations.
- Anonymized and aggregated analytics data may be retained indefinitely as it cannot be used to identify individuals.
7. Data Security
We implement commercially reasonable technical and organizational measures to protect personal information from unauthorized access, disclosure, alteration, or destruction. These include:
- Encryption of data in transit using TLS (Transport Layer Security).
- Access controls limiting data access to authorized personnel only.
- Regular security assessments and monitoring of our systems.
- Secure credential management and authentication protocols.
While we take these precautions, no system is completely secure. In the event of a data breach that poses a risk to your rights and freedoms, we will notify affected individuals and the National Privacy Commission (NPC) in accordance with the Data Privacy Act of 2012.
8. Your Rights as a Data Subject
Under the Data Privacy Act of 2012, you have the following rights regarding your personal information:
- Right to be informed — to know how your personal data is being collected and processed.
- Right to access — to obtain a copy of any personal data we hold about you.
- Right to rectification — to correct inaccurate or incomplete personal data.
- Right to erasure — to request deletion of your personal data, subject to legal retention requirements.
- Right to data portability — to receive your data in a structured, machine-readable format.
- Right to object — to object to certain types of processing, including direct marketing.
- Right to lodge a complaint — to file a complaint with the National Privacy Commission (NPC) at www.privacy.gov.ph.
To exercise any of these rights, contact our Data Protection Officer at partners@super-studio.tech. We will respond to requests within 15 business days.
9. Subscriber Responsibilities for Member Data
As a SuperStudio subscriber, you act as a personal information controller with respect to your studio members' data. This means:
- You are responsible for obtaining the appropriate consents from your members before collecting and processing their personal information through the Platform.
- You must ensure your privacy practices comply with the Data Privacy Act of 2012 and any other applicable laws.
- You must not use the Platform to process personal data in a manner that violates applicable law or the rights of your members.
Supermind AI acts as a personal information processor on your behalf and processes member data only in accordance with your instructions and these Terms.
11. Cross-Border Data Transfers
Some of our third-party service providers (including GoHighLevel, n8n, and Supabase) may process and store data outside the Philippines. Where this occurs, we ensure that appropriate safeguards are in place to protect your data consistent with the requirements of the Data Privacy Act of 2012.
12. Children's Privacy
SuperStudio is not directed at individuals under the age of 18. We do not knowingly collect personal information from minors. If you believe a minor's data has been submitted to the Platform without appropriate consent, please contact us immediately at partners@super-studio.tech and we will take steps to delete it.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify subscribers via email at least 14 days before the changes take effect. The most current version will always be available at super-studio.tech/privacy.
14. Data Protection Officer and Contact
For any questions, concerns, or requests related to this Privacy Policy or your personal data, please contact our Data Protection Officer:
- Supermind AI — Data Protection Officer
- Email: partners@super-studio.tech
- Website: super-studio.tech
- National Privacy Commission (Philippines): www.privacy.gov.ph
By using SuperStudio, you acknowledge that you have read and understood this Privacy Policy and agree to the collection and use of your information as described herein.