Privacy Policy for PEMFiT Old Trafford


The event organiser, PEMFiT Old Trafford, has the legal responsibility to tell ticket buyers and event attendees how their personal information will be collected and used. You can find their Privacy Policy below or contact them to request it.


Effective Date: 05/12/2025
PEMFiT is registered at:  
FM House  
Bentley Wood Way  
Network 65 Business Park  
Burnley  
Lancashire  
BB11 5ST  

Welcome to PEMFit we are a leading provider of optimising your health & wellbeing (“we”,  “our”, or “us”) refers to our subsidiaries:  

  • PEMFiT Burnley Ltd: Company registration 115496216  
  • PEMFiT City of London Ltd: Company registration 15299491  
  • PEMFiT Old Trafford Ltd: 15299818  
  • PEMFiT Perth & Kinross Ltd: 15300518  
  • PEMFiT Lancaster Ltd: 15734779  

PEMFiT takes the protection of your personal data very seriously and strictly adheres to the  rules laid out by data protection laws.  

This Privacy Policy explains how we collect, use, disclose, and safeguard your information,  in accordance with the UK General Data Protection Regulation (UK GDPR) and other  applicable data protection laws such as the Data Protection Act 2018, The Data Use & Access  Act 2025 and the Privacy & Electronic Communications Regulations.  

We have appointed a Data Protection Officer (DPO) who is responsible for monitoring and  providing guidance with our compliance status. If you have any questions about this privacy  notice, please contact us by using the contact information in section 11.  

By using our website, products and services, you consent to the practices described in this  privacy notice.


1. Information We Collect

We may collect and process the following data:

  • Personal information (such as your first name, last name, address, email address,  phone number and mobile number, right to work and recruitment data, chat  conversations)
  • Technical data (including IP address, & Geographical location browser type and  language, operating system, device information, time zone, communication &  marketing preferences, financial information, training & analytical information)
  • Usage data (pages visited, time spent on the site, clickstream data, scrolling, clicks  and mouse hovers)
  • Cookies and tracking technologies – A banner is displayed on our website giving  you clear information about the purpose, storage, and access to the cookies and to  confirm you have given consent before it captures data. (please refer to our Cookie Policy for details)

2. Why we Use Your Information 

We may use the collected information to:

  • ● Provide and manage our services
    ● To communicate with you
    ● To perform a contract or take steps before entering into a contract
    ● To process payments
    ● Respond to inquiries and provide customer support
    ● Improve our website and user experience
    ● To monitor the performance of our website
    ● Contact you via email or mobile for booking confirmations, service updates, or relevant offers (only if you’ve opted in to receive marketing communications).
    ● To provide you with information that you have requested or which we may feel may be of relevant interest to you
    ● To provide dashboard to monitor trends, analysis performance and make informed decisions
    ● For marketing and advertising purposes or you are an existing customer who has purchased similar products and/or services from us
    ● For training purposes
    ● To provide Human Resources functions and services including recruitment and right to work
    ● To conduct surveys and solicit customer feedback
    ● Comply with legal obligations
  •  

3. Where we collect information from: 

● When you work for us  
● When filling out enquiry or Intake booking forms on our website  
● Completion of Session forms  
● Clients  
● Customers  
● Suppliers  
● Subsidiaries  
● PEMFiT Franchise  
● Social Media  
● External Events, Exhibitions and Off-site sessions  
● Paid media  
● Partnerships/collaboration 


4. Legal Basis for Processing (GDPR)

We only collect and use personal information when the law allows us to. Under the UK  GDPR, we process personal data based on the following legal grounds:

● Consent – when you have given clear unambiguous explicit permission for us to  process your personal data  
● Contract – when processing is necessary for a contract  
● Vital Interest – if processing is necessary to protect the vital interest of data subjects  and that of another person  
● Legal obligation – when processing is necessary to comply with the law  
● Legitimate interests – when processing is necessary for our legitimate interests and  does not override your data protection rights  
● Public Record – where personal data has been manifestly made public by the data subject  
● Public Health – where processing is necessary for reasons of public health 
● Archiving – where processing is necessary for archiving purposes in the public interest  

You can withdraw your consent at any time by clicking “unsubscribe” in our emails or  contacting us directly at enquiries@pemfit.co.uk 


5. Sharing Your Information

We do not sell or rent your personal data. We may share your information with:  

● Service providers and partners who help us operate our website and to provide  services and products  
● Legal authorities if required to do so by law  
● Other parties with your consent or at your direction  
● Our subsidiaries  
● PEMFiT franchises  

We may collect and share information from and to:  
● Zoho (our CRM supplier)  
● Pulse PEMF (our products supplier)  
● Shopify (online checkouts for payments)  
● Microsoft  
● Google  
● Atwood Digital (Marketing Agency)  
● Vault Consultancy (Marketing Consultancy)  
● Azets (our payroll provider)  
● Xero (our Accountancy provider)  
● Foremore (Marketing Consultancy)
● Easy Booking  
● Our CCTV provider  
● Our broadband and website provider  
● Professional advisers (Lawyers, auditors, DPO)  

All third parties are required to respect the security of your personal data and to treat it in  accordance with data protection law.  


6. Data Retention

We retain your personal data only as long as necessary to fulfil the purposes we collected it  for, including legal, accounting, or reporting requirements. We may retain your personal data  for a longer period in the event of a complaint, for litigation purposes or where we are  required by law.  

To determine the appropriate retention period for personal data, we consider the amount,  nature and sensitivity of the personal data, the potential risk of harm from unauthorised use or  disclosure of your personal data, the purposes for which we process your personal data and  whether we can achieve those purposes through other means, and the applicable legal,  regulatory, tax, accounting, or other requirements. 


7. Your Data Protection Rights

Under UK GDPR, you have the right (unless prohibited by law) to:

    • ● Access your personal data  
    • ● Rectify inaccurate or incomplete data  
    • ● Request erasure of your data  
    • ● Restrict or object to the processing of your data  
    • ● Data portability  
    • ● Withdraw consent at any time (this will not affect the lawfulness of processing based  on consent before its withdrawal)  
    • ● Be informed  
    • ● Prevent Automated individual decision making, including profiling 
    • ● Complain about the way in which we process your personal information  

To exercise your rights, please contact us at: [enquiries@pemfit.co.uk]


8. Security of Your Data

We implement appropriate technical and organisational measures to protect your data from  loss, misuse, or unauthorised access. We have in place a robust access control policy which  limits access to your personal data to those who only have a business need to know or a legal  basis for doing so. However, no method of transmission over the internet is 100% secure.  

We have policies and procedures to handle any potential data security breaches, and data  subjects, third parties, and any applicable regulators will be notified where we are legally  required to do so.  

We only use individuals who are registered as AOPP certified, and we are compliant with the  Payment Card Industry (PCI) Data Security Standard (DSS) and payment transactions are  encrypted.  

We have ensured that all employees complete information security and data protection  training and refresher training on an annual basis.  


9. Third-Party Links

Links  
Unfortunately, the transmission of information via the Internet is not completely secure, so  we cannot guarantee the security of your information when it is transmitted to our website or  from third-party websites. Any transmission is at your own risk; however, we use strict  procedures and security features to prevent unauthorised access.  

Our site may from time to time contain links to and from the websites of our partner  networks, advertisers, and affiliates. If you follow a link to any of these websites, we cannot  accept any responsibility or liability, and you will have to agree to such a company’s privacy  notice. Please ensure you agree to such policies before submitting your personal data.  

Transfers  
We may disclose your personal data, listed in section 4 to some third parties to help us deliver  our services/products or for marketing purposes. All third parties are contractually bound to  protect the personal data we provide to them.

10. Transfers outside of the UK 

In this section, we provide information about the circumstances in which your personal data  may be transferred and stored in countries outside the UK.  

Where we share personal information to third parties outside of the UK any personal  information transferred will only be processed on our instruction and we ensure that  information security at the highest standard would be used to protect any personal  information as required by Data Protection laws. 

Where personal data is transferred outside of the UK to a country without an adequacy  decision, we will ensure appropriate safeguards are in place prior to the transfer. These could  include:  
● UK International Transfer Agreements (UK ITAs).  
● The Data Protection (Adequacy (United States of America) Regulations 2023  ● EU-US Data Privacy Framework and Data Bridge accreditation  
● An exception as defined in Article 49 of the UK GDPR 

11. Children’s Privacy

Our website is not intended for children under the age of 13, and we do not knowingly collect  data from children. If we have collected personal information on a child, please contact us  immediately, so we can remove and/or assess this information for compliance without any undue delay. 

12. Children’s Privacy

We take any complaints about our collection and use of personal information very seriously.  If you think that our collection or use of personal information is unfair, misleading, or  inappropriate, or have any other concern about our data processing, please raise this with us  in the first instance. To make a complaint, please contact us via email on dpo@pemfit.co.uk 

Alternatively, if you are dissatisfied with the outcome of your complaint or any review  carried out by us in relation to information we hold about you, you can make a complaint to  the Information Commissioner’s Office, who oversees the UK GDPR regulations. If you wish  to do this, you can contact them at: By Post: Information Commissioners Office, Wycliffe  House, Water Lane, Wilmslow, Cheshire, SK9 5AF By Website: Click Here By Email: Click  Here By Phone: 0303 123 1113 (local rate) or 01625 545 745 (National rate) 


13. Changes to This Privacy Policy

We keep this privacy notice under regular review, and we may update this Privacy Policy  from time to time. Changes will be posted on this page with a revised effective date. 


14. Contact Us

If you have any questions or concerns about this Privacy Policy, or if you wish to exercise  your rights under UK GDPR, please contact us at:  

PEMFiT
Email: dpo@pemfit.co.uk
Website: https://pemfit.co.uk