Privacy Policy

What we collect, why, and how to control it. Plain language. No tracking maze. Last updated: April 27, 2026 · Effective date: April 27, 2026

Who runs this site

This website is operated by Fit Beyond Sight LLC, founded by Mario Bonds, based in Maryland with operations in Georgia. The website is fbs.fit. For privacy questions, contact us at info@fitbeyondsight.com. This policy covers everything that happens on this website and the member-only areas. Coaching engagements may have their own additional confidentiality terms — those are spelled out in your coaching agreement separately.

What we collect

We collect only what we actually use. Nothing extra, nothing speculative.

Account data (when you become a member)

Held in our own database:

Third-party login (Google, Facebook)

If you choose "Continue with Google" or "Continue with Facebook" instead of creating a password, the provider returns to us:

We do not receive your contacts, friends, files, posts, photos, or any other data from the provider account. The connection is one-way — Fit Beyond Sight learns nothing about the rest of your Google or Facebook activity, and the provider learns only that you’re authenticating with us. You can revoke the connection at any time from your provider’s account settings, or from your Fit Beyond Sight account page .

Payment data (when you buy something)

Stripe handles all payments. Your card number, CVV, and billing address go directly from your browser to Stripe — they never touch our servers. From Stripe we receive:

Contact form submissions

When you write to us through the contact form, we receive your name, email address, and the message you sent. Our application delivers it to Mario directly; the message is stored so he can reply. We keep these messages so we have a thread of context if you write again later.

Newsletter sign-ups

If you subscribe to the newsletter, your email address goes to Beehiiv (our newsletter provider). We may also tag your subscriber profile with which membership tier you’re on, so we can send tier-relevant content. You can unsubscribe from any newsletter email at any time.

Vault playback (members only)

When you play tier-gated video or audio from the vault , our streaming function records minimal information server-side for security and abuse-prevention purposes:

We do not record IP addresses, browser fingerprints, or watch-time analytics. Each playback session uses a short-lived signed token (5 to 15 minutes) tied to one content item; tokens cannot be reused or shared across accounts. The video player also displays your email address as a semi-transparent overlay on top of the video. This is a deterrent against unauthorized sharing — recordings of vault content are traceable back to the account they were streamed to.

Phone numbers & SMS

If you provide a phone number — at signup, on your account page, after purchase, or on a booking form — we store it on your member record in our own database. Phone numbers are used for two distinct purposes:

We also store an audit record of when and how you consented (timestamp, page, version of the consent text), so you can verify what you agreed to. If you opt out, we keep the audit record but stop the messages immediately. Full SMS-specific terms — frequency, cost language, opt-out mechanics — live on the SMS Terms page.

You can update or remove your phone number at any time from your account communications settings .

If you’ve consented to analytics through the cookie banner on your first visit, Google Analytics 4 records anonymized usage data — pages visited, session duration, country (not city), referrer. IP addresses are anonymized. We use this in aggregate to understand what’s working on the site, not to identify individuals.

Full details — including the four cookie categories and how to control each — live on the Cookie Policy .

What we don’t collect

How we use what we collect

Third parties we work with

Each of these has its own privacy policy and handles a specific job. We pick vendors with strong track records on data handling.

How long we keep things

Your rights

You have the right to:

To exercise any of these, write to info@fitbeyondsight.com with "Privacy request" in the subject. We’ll respond within 30 days, often sooner.

California residents (CCPA & CPRA)

If you live in California, in addition to the rights above you have the right to:

To exercise California-specific rights, email us with "California privacy request" in the subject. You can also designate an authorized agent to make a request on your behalf.

EU/UK residents (GDPR)

If you’re in the EU or UK, GDPR applies. Our lawful bases for processing your data are:

You have the right to lodge a complaint with your local data protection authority if you believe we’ve handled your data improperly.

Children (COPPA)

Fit Beyond Sight is not intended for anyone under 13, and we don’t knowingly collect personal data from children, in line with the U.S. Children’s Online Privacy Protection Act (COPPA). Coaching services for minors require a parent or guardian to set up the account. If you believe a child has signed up directly without parental consent, write to us and we’ll delete the account.

International transfers

Some of our third-party providers (Stripe, Google, Neon, Vercel, Resend, Twilio, Beehiiv) are based in the United States. If you’re outside the US, your data may be transferred to and processed in the US. These providers maintain appropriate safeguards (Standard Contractual Clauses, EU-U.S. Data Privacy Framework participation where applicable) to protect data transferred internationally.

Security

We use industry-standard practices: HTTPS everywhere, hashed passwords, PCI-compliant payment processing, secure third-party providers, and access controls. No system is bulletproof — if a breach happens that affects you, we’ll notify you within 72 hours of becoming aware, in line with applicable law.

Changes to this policy

We update this page when we add new vendors, change practices, or when laws change. The "last updated" date at the top reflects the most recent change. For significant changes (new vendors handling personal data, expanded use of data, or changed retention), we’ll notify members by email at least 30 days before the change takes effect.

Contact

For any privacy question, request, or concern: info@fitbeyondsight.com . We read every message; expect a response within two business days.