Compliance posture
Fitpocket uses cautious, transparent language about readiness, privacy principles, and current product boundaries.
SOC 2
Readiness in progressWe are implementing security controls aligned with SOC 2 principles, including access control, change management, incident response, vendor governance, and monitoring. We do not currently claim SOC 2 certification unless and until an independent audit has been completed.
GDPR
Privacy principles supportedFitpocket is designed to support GDPR and POPIA privacy principles, including privacy rights such as access, correction, deletion, and data portability where applicable. We aim to collect only the data needed to provide and improve the product.
POPIA
South Africa privacy safeguardsFitpocket is designed to support GDPR and POPIA privacy principles with safeguards for personal information, including reasonable technical and organisational controls, data subject request handling, and vendor governance.
HIPAA
Consumer wellness boundaryFitpocket is a consumer wellness platform. HIPAA-regulated workflows require a separate Business Associate Agreement. Fitpocket is not intended to be used by covered entities or business associates to create, receive, maintain, or transmit HIPAA-regulated protected health information unless a separate Business Associate Agreement has been executed by Fitpocket.