Effective Date: September 11th, 2025
Last Updated: September 11th, 2025
1. INTRODUCTION
1.1 Our Commitment to Privacy
GIGA Chad Ltd. ("GIGA," "GIGA Fitness," "we," "us," or "our") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://www.gigafitness.com/ (the "Site"), use our services, purchase our products, or interact with us in any way.
1.2 Scope and Consent
This Privacy Policy applies to all information collected through:
- Our website and any related services
- Our mobile-optimized website
- Our email, SMS, and other marketing communications
- Our social media pages and advertising
- Our Discord community platform accessed through Whop
- Any other interactions with GIGA
By accessing or using our Site, purchasing our products, or providing us with any personal information, you consent to the collection, use, and disclosure of your information as described in this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access the Site or provide us with any personal information.
1.3 Updates to This Policy
We reserve the right to update this Privacy Policy at any time. We will notify you of any changes by updating the "Last Updated" date of this Privacy Policy and, for material changes, we may provide additional notice through email or a prominent notice on our Site. Your continued use of our Site following the posting of changes constitutes your acceptance of such changes.
2. INFORMATION WE COLLECT
2.1 Information You Provide Directly
We collect information you voluntarily provide to us, including when you:
2.1.1 Account Registration and Purchases
-
Identity Information: First and last name, username, password
-
Contact Information: Email address, phone number, shipping address, billing address
-
Demographic Information: Date of birth, age, gender (optional)
-
Payment Information: Credit/debit card details (processed by Shopify Payments), cryptocurrency wallet public keys (for Solana Pay)
-
Account Preferences: Language preference, communication preferences, product preferences
2.1.2 Community and Engagement
-
Profile Information: Profile pictures, bio, fitness goals (optional)
-
User Content: Reviews, ratings, photos, videos, transformation pictures, testimonials
-
Community Data: Discord username (via Whop integration), community posts, interactions
-
Contest Entries: Information provided for contests, giveaways, or promotions
-
Survey Responses: Feedback, preferences, and other information provided in surveys
2.1.3 Communications
-
Customer Service: Inquiries, complaints, feedback, and other communications
-
Marketing Preferences: Email subscription status, SMS opt-in status, communication preferences
-
Social Media: Information from social media interactions, tags, mentions, direct messages
2.2 Information Collected Automatically
When you visit our Site, we automatically collect certain information about your device and browsing activity:
2.2.1 Device and Browser Information
-
Device Data: Device type, operating system, unique device identifiers, mobile network information
-
Browser Data: Browser type and version, browser language, time zone setting
-
Connection Data: IP address, ISP, referring/exit pages, clickstream data
2.2.2 Usage Information
-
Site Activity: Pages viewed, time spent on pages, links clicked, search queries on our Site
-
Shopping Activity: Products viewed, items added to cart, purchase history, abandoned cart data
-
Engagement Metrics: Email opens, click-through rates, video views, ad interactions
2.2.3 Location Information
-
IP-Based Location: Approximate geographic location based on IP address
-
Shipping Location: Country, state, city for shipping and tax purposes
-
Time Zone: For optimal communication timing
2.3 Information from Third Parties
We may receive information about you from third parties:
2.3.1 Service Providers
-
Payment Processors: Transaction confirmations and fraud assessments from Shopify Payments and Solana Pay
-
Shipping Partners: Delivery confirmations and tracking information from our Canadian 3PL partner
-
Marketing Platforms: Engagement data from Klaviyo, social media platforms, and advertising partners
-
Review Platforms: Verified purchase reviews from Trustpilot
2.3.2 Social Media and Advertising Partners
-
Social Platforms: Profile information when you interact with us on social media
-
Advertising Networks: Information about ad interactions and conversions
-
Analytics Partners: Aggregated demographic and interest data
2.4 Cookies and Tracking Technologies
We use various tracking technologies to collect information:
2.4.1 Types of Tracking Technologies
-
Cookies: Small data files stored on your device
-
Pixels: Transparent images embedded in emails and web pages
-
Tags: Code snippets that track user behavior
-
Local Storage: Data stored locally on your device
-
Session Storage: Temporary data storage during your browsing session
2.4.2 Categories of Cookies We Use
Essential Cookies (Cannot be disabled)
- Authentication and security
- Shopping cart functionality
- Checkout process
- Site preferences and settings
Analytics Cookies
- Google Analytics: Site usage statistics and user behavior
- Shopify Analytics: E-commerce performance metrics
- Platform-specific analytics for optimization
Marketing and Advertising Cookies
- Meta Pixel: Facebook and Instagram advertising
- TikTok Pixel: TikTok advertising and retargeting
- Snapchat Pixel: Snapchat advertising
- Pinterest Tag: Pinterest advertising
- X (Twitter) Pixel: X platform advertising
- Retargeting pixels for personalized advertising
Functional Cookies
- Language preferences
- Recently viewed products
- Wishlist items
- User preferences and settings
3. HOW WE USE YOUR INFORMATION
3.1 Business Operations
We use your information to:
- Process and fulfill orders
- Process payments and prevent fraud
- Send order confirmations and shipping notifications
- Manage your account and provide customer service
- Communicate important updates about your orders or account
- Verify age requirements for product purchases
- Comply with legal obligations and enforce our Terms and Conditions
3.2 Marketing and Communications
With your consent, we use your information to:
- Send promotional emails about products, sales, and events
- Send SMS/text messages about orders and promotions (with explicit opt-in)
- Display personalized advertisements across platforms
- Conduct retargeting and remarketing campaigns
- Share exclusive offers and early access opportunities
- Send abandoned cart reminders
- Provide product recommendations based on purchase history
3.3 Site Improvement and Analytics
We analyze information to:
- Improve Site functionality and user experience
- Optimize product offerings and inventory
- Understand customer preferences and shopping patterns
- Measure marketing campaign effectiveness
- Conduct A/B testing and conversion optimization
- Detect and prevent fraudulent activity
- Ensure Site security and prevent abuse
3.4 Community Features
For our Discord community (accessed via Whop), we use information to:
- Verify community membership
- Moderate content and enforce community guidelines
- Facilitate member interactions and engagement
- Recognize member achievements and milestones
- Provide exclusive community benefits
- Sync account benefits between platforms
3.5 Legal Purposes
We may use your information to:
- Comply with applicable laws and regulations
- Respond to legal requests and court orders
- Protect our rights, property, and safety
- Investigate and prevent fraud or illegal activities
- Enforce our Terms and Conditions and other agreements
- Defend against legal claims
4. HOW WE SHARE YOUR INFORMATION
4.1 Service Providers
We share your information with trusted third-party service providers who assist us in operating our business:
4.1.1 Essential Service Providers
-
E-commerce Platform: Shopify for Site hosting and order management
-
Payment Processors: Shopify Payments and Solana Pay for transaction processing
-
Fulfillment Partners: Our Canadian 3PL partner for order fulfillment and shipping
-
Email Marketing: Klaviyo for email campaigns and automation
-
Customer Reviews: Trustpilot for verified reviews
-
Community Platform: Whop and Discord for community access
4.1.2 Marketing and Analytics Partners
-
Analytics Providers: Google Analytics for Site analytics
-
Advertising Platforms: Meta, TikTok, Snapchat, Pinterest, X for advertising
-
Marketing Tools: Various platforms for campaign management
-
Affiliate Networks: Partners for affiliate tracking (when implemented)
4.2 Business Transfers
In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of our assets, your personal information may be transferred to the successor entity. We will notify you via email and/or prominent notice on our Site of any change in ownership or uses of your personal information.
4.3 Legal Disclosure
We may disclose your information if required to do so by law or in response to valid requests by public authorities, including:
- Court orders and subpoenas
- Government and regulatory requests
- Law enforcement investigations
- National security requirements
- Protection of our legal rights
4.4 Consent-Based Sharing
We may share your information with your consent or at your direction, including:
- When you authorize third-party access to your account
- When you participate in promotions with partner brands
- When you submit user-generated content for marketing use
- When you request specific services requiring third-party involvement
4.5 Aggregated and De-Identified Data
We may share aggregated or de-identified information that cannot reasonably be used to identify you. This includes:
- Industry reports and market research
- Anonymized analytics and trends
- Aggregated demographic information
- Statistical data about Site usage
4.6 Internal Sharing
Your information may be shared within our organization on a need-to-know basis for:
- Customer service and support
- Order fulfillment and logistics
- Marketing and product development
- Legal and compliance purposes
- Business operations and management
5. DATA SECURITY
5.1 Security Measures
We implement appropriate technical and organizational security measures to protect your personal information, including:
- SSL/TLS encryption for data transmission
- PCI DSS compliance for payment processing
- Secure servers and databases with restricted access
- Regular security audits and vulnerability assessments
- Employee training on data protection and security
- Multi-factor authentication for administrative access
- Regular backups and disaster recovery procedures
5.2 Data Breach Response
In the event of a data breach that may pose a risk to your rights and freedoms:
- We will notify affected individuals within 72 hours of becoming aware of the breach (where required by law)
- We will provide information about the nature of the breach and potential impacts
- We will offer guidance on steps you can take to protect yourself
- We will cooperate with relevant authorities as required
- We will implement measures to prevent future breaches
5.3 Your Security Responsibilities
You play a vital role in keeping your information secure:
- Choose strong, unique passwords for your account
- Keep your login credentials confidential
- Log out of your account when using shared devices
- Notify us immediately of any unauthorized account access
- Be cautious of phishing attempts and suspicious communications
- Keep your device and browser software updated
5.4 Limitations
While we strive to protect your personal information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security, and you provide information at your own risk.
6. DATA RETENTION
6.1 Retention Periods
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law:
-
Account Information: Retained for the duration of your account plus 7 years after account closure
-
Transaction Records: Retained for 7 years for tax and accounting purposes
-
Marketing Communications: Retained until you unsubscribe plus 3 years for suppression lists
-
Customer Service Records: Retained for 3 years after resolution
-
Cookie Data: Varies by cookie type (session to 2 years maximum)
-
Legal Hold Data: Retained as required for legal proceedings
6.2 Deletion and Anonymization
After the retention period expires, we will either:
- Securely delete your personal information
- Anonymize it so it can no longer identify you
- Archive it in accordance with legal requirements
6.3 Exceptions
We may retain certain information beyond stated periods when:
- Required by law or legal proceedings
- Necessary to prevent fraud or abuse
- Required to enforce our agreements
- Needed for legitimate business interests
7. YOUR PRIVACY RIGHTS
7.1 Universal Rights
Regardless of your location, you have the right to:
-
Access: Request information about the personal data we hold about you
-
Correction: Request correction of inaccurate or incomplete personal data
-
Deletion: Request deletion of your personal data (subject to legal requirements)
-
Portability: Receive your personal data in a structured, commonly used format
-
Opt-Out: Unsubscribe from marketing communications at any time
-
Restriction: Request restriction of processing in certain circumstances
7.2 California Privacy Rights (CCPA)
California residents have additional rights under the California Consumer Privacy Act:
7.2.1 Right to Know
You have the right to request:
- Categories of personal information collected
- Sources of personal information
- Business purposes for collecting information
- Categories of third parties with whom we share information
- Specific pieces of personal information we hold about you
7.2.2 Right to Delete
You may request deletion of personal information we collected from you, subject to certain exceptions.
7.2.3 Right to Opt-Out
You have the right to opt-out of the "sale" of personal information. We do not sell personal information in the traditional sense, but sharing data with advertising partners may constitute a "sale" under CCPA.
7.2.4 Right to Non-Discrimination
We will not discriminate against you for exercising your privacy rights, including by:
- Denying goods or services
- Charging different prices
- Providing different quality of service
- Suggesting you will receive different treatment
7.2.5 Authorized Agents
You may designate an authorized agent to make requests on your behalf. The agent must provide proof of authorization.
7.3 European Privacy Rights (GDPR)
If you are in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights:
7.3.1 Legal Basis for Processing
We process personal data based on:
-
Consent: For marketing communications and cookies
-
Contract: For order fulfillment and account services
-
Legitimate Interests: For fraud prevention, security, and business operations
-
Legal Obligations: For tax, accounting, and legal compliance
7.3.2 Additional Rights
-
Withdraw Consent: Where processing is based on consent
-
Object: To processing based on legitimate interests
-
Lodge a Complaint: With your local data protection authority
-
International Transfers: Information about data transfers outside the EEA
7.4 Canadian Privacy Rights (PIPEDA)
Canadian residents have rights under the Personal Information Protection and Electronic Documents Act:
- Access to personal information with limited exceptions
- Challenge the accuracy and completeness of information
- Know how your information is used and to whom it's disclosed
- Withdraw consent for certain uses
7.5 Other Jurisdictions
We respect privacy rights in all jurisdictions where we operate. If you have questions about your specific rights, please contact us.
7.6 Exercising Your Rights
To exercise any of your privacy rights:
- Email us at contact@gigafitness.com
- Include "Privacy Rights Request" in the subject line
- Provide sufficient information to verify your identity
- Specify which rights you wish to exercise
- We will respond within 30 days (or as required by applicable law)
8. CHILDREN'S PRIVACY
8.1 Age Restrictions
Our Site and products are not intended for children under the age of 13. We do not knowingly collect personal information from children under 13.
8.2 Age Verification
We implement age verification measures including:
- Requiring date of birth during account registration
- Age confirmation checkboxes for certain products
- Restricting purchases of age-restricted products (supplements, energy drinks)
8.3 Parental Rights
If you are a parent or guardian and believe we have collected information from your child under 13:
- Contact us immediately at contact@gigafitness.com
- We will promptly delete such information
- We will take steps to prevent future collection
8.4 Teen Privacy (13-17)
For users aged 13-17:
- Parental consent may be required for certain features
- Parents may request access to their teen's information
- Additional protections may apply based on local laws
9. INTERNATIONAL DATA TRANSFERS
9.1 Cross-Border Transfers
Your information may be transferred to and processed in countries other than your country of residence, including:
- United States (our headquarters)
- Canada (fulfillment partner)
- Countries where our service providers operate
9.2 Data Protection Safeguards
When we transfer data internationally, we implement appropriate safeguards:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions where applicable
- Appropriate technical and organizational measures
- Compliance with local data protection laws
9.3 Your Consent
By using our Site and services, you consent to the transfer of your information to countries that may have different data protection laws than your jurisdiction.
10. COOKIES AND TRACKING PREFERENCES
10.1 Cookie Management
You can manage your cookie preferences through:
-
Browser Settings: Most browsers allow you to refuse or delete cookies
-
Cookie Banner: Manage preferences when you first visit our Site
-
Marketing Preferences: Opt-out of marketing cookies in your account settings
10.2 Do Not Track Signals
Currently, our Site does not respond to Do Not Track (DNT) browser signals. However, you can manage tracking through cookie settings and opt-out mechanisms.
10.3 Third-Party Opt-Out Options
You can opt-out of targeted advertising through:
10.4 Email and SMS Preferences
-
Email: Unsubscribe link in every marketing email
-
SMS: Reply STOP to any marketing text message
-
Account Settings: Manage all communication preferences
11. THIRD-PARTY LINKS AND SERVICES
11.1 External Links
Our Site may contain links to third-party websites, including:
- Social media platforms
- Payment processors
- Review platforms
- Partner websites
11.2 Third-Party Privacy Practices
We are not responsible for the privacy practices of third parties:
- Review their privacy policies before providing information
- We do not control their data collection or use
- Direct any questions to the third party
11.3 Social Media Features
Our Site includes social media features (like buttons, widgets) that may:
- Collect your IP address and browsing data
- Set cookies to enable functionality
- Be governed by the social media platform's privacy policy
11.4 Discord Community
Our Discord community (accessed via Whop) is subject to:
- Discord's Privacy Policy and Terms of Service
- Whop's Privacy Policy and Terms
- Our community guidelines and rules
12. YOUR CALIFORNIA PRIVACY RIGHTS
12.1 California Shine the Light Law
California residents may request information about personal information shared with third parties for direct marketing purposes. To make such a request, email contact@gigafitness.com with "California Shine the Light Request" in the subject line.
12.2 California Online Privacy Protection Act (CalOPPA)
In compliance with CalOPPA:
- We clearly identify our privacy policy on our homepage
- We describe how we respond to Do Not Track signals
- We allow users to visit our Site anonymously
- We notify users of privacy policy changes
12.3 Categories of Information We Collect
Under California law, we collect these categories of personal information:
- Identifiers (name, email, IP address)
- Commercial information (purchase history, preferences)
- Internet activity (browsing history, interactions)
- Geolocation data (approximate location from IP)
- Inferences (preferences and characteristics)
12.4 Sources, Purposes, and Sharing
Details about our data practices for California residents:
-
Sources: Directly from you, automatically, from third parties
-
Purposes: As described in Section 3 of this Policy
-
Sharing: As described in Section 4 of this Policy
-
Sale: We do not sell personal information for monetary consideration
13. SPECIAL CATEGORIES OF DATA
13.1 Sensitive Personal Information
We generally do not collect sensitive personal information. However, in limited circumstances:
-
Health Information: May be collected for dietary supplements or energy drinks (allergies, restrictions)
-
Fitness Information: Optional fitness goals or transformation data you choose to share
-
Financial Information: Payment card details (processed securely by payment providers)
13.2 Biometric Data
We do not collect biometric data such as fingerprints, face recognition, or voice patterns.
13.3 Government Identifiers
We do not collect government-issued identifiers such as social security numbers, driver's license numbers, or passport numbers.
14. AUTOMATED DECISION-MAKING
14.1 Current Practices
We currently use limited automated decision-making for:
- Fraud detection and prevention
- Personalized product recommendations
- Marketing segmentation
- Content customization
14.2 Your Rights
You have the right to:
- Request information about automated decision-making
- Object to decisions based solely on automated processing
- Request human review of automated decisions
14.3 Future AI and Machine Learning
As we implement AI and machine learning technologies, we will:
- Update this Policy accordingly
- Ensure transparency in automated processes
- Maintain human oversight where appropriate
- Respect your rights regarding automated decisions
15. DATA PROTECTION CONTACTS
15.1 Contact Us
For all privacy-related inquiries:
-
Email: contact@gigafitness.com
-
Subject Line: Include "Privacy" for faster routing
-
Mail: GIGA Chad Ltd., 611 South DuPont Highway, Suite 102, Dover, Delaware, 19901, United States
15.2 Response Times
We strive to respond to privacy requests within:
-
General Inquiries: 2-3 business days
-
Rights Requests: 30 days (or as required by law)
-
Data Breach Notifications: 72 hours (where required)
15.3 Supervisory Authorities
You may also contact your local data protection authority:
-
EU Residents: Your national data protection authority
-
UK Residents: Information Commissioner's Office (ICO)
-
California Residents: California Attorney General
16. PRIVACY POLICY UPDATES
16.1 Notification of Changes
We will notify you of material changes to this Policy through:
- Email notification to registered users
- Prominent notice on our Site homepage
- In-app notifications (if applicable)
- Update to the "Last Updated" date
16.2 Review and Acceptance
Your continued use of our Site after changes constitutes acceptance. If you disagree with changes:
- Stop using our Site and services
- Close your account
- Contact us with concerns
16.3 Version History
We maintain a record of all Privacy Policy versions. Previous versions available upon request.
17. ACCESSIBILITY
17.1 Accessible Formats
This Privacy Policy is available in alternative formats upon request:
- Large print version
- Screen reader-compatible version
- Plain language summary
17.2 Assistance
If you need assistance understanding or exercising your privacy rights due to a disability, please contact us at contact@gigafitness.com.
18. GOVERNING LAW AND DISPUTES
18.1 Governing Law
This Privacy Policy is governed by the laws of the State of Delaware, without regard to conflict of law principles.
18.2 Dispute Resolution
Any disputes relating to this Privacy Policy shall be resolved according to the dispute resolution provisions in our Terms and Conditions.
18.3 Jurisdiction-Specific Rights
Nothing in this Policy limits your rights under applicable local privacy laws.
19. CONSENT AND ACKNOWLEDGMENT
By using our Site, providing personal information, or interacting with GIGA in any way, you acknowledge that:
- You have read and understood this Privacy Policy
- You consent to the collection and use of your information as described
- You understand your privacy rights and how to exercise them
- You are at least 13 years of age (or have parental consent)
20. DEFINITIONS
For clarity, the following terms have these meanings in this Policy:
-
Personal Information/Data: Information that identifies or could identify you
-
Processing: Any operation performed on personal data
-
Controller: GIGA, as the entity determining how data is processed
-
Processor: Third parties processing data on our behalf
-
Consent: Freely given, specific, informed agreement to data processing
-
Anonymization: Irreversibly preventing identification
-
Pseudonymization: Processing data so it cannot be attributed without additional information
IMPORTANT NOTICE: This Privacy Policy is part of our Terms and Conditions. Please also review our Terms and Conditions and Return and Refund Policy for complete information about your relationship with GIGA.