Privacy Policy – ReBuild Physio App

Last Updated: January 2026

1. Who We Are

This Privacy Policy applies to the ReBuild Physio mobile application (the “App”).

The App is operated by Pain to Performance Physio Ltd, trading as ReBuild Physio, registered in Northern Ireland. We are the data controller responsible for your personal information under applicable data protection laws.

This policy explains how we collect, use, store, and protect your information when you use the App.

Contact:

If you have any questions about this policy or how your data is handled, you can contact us at: [email protected]

2. Information We Collect

We only collect information that is necessary for the App to function properly and to support app-based physiotherapy guidance.

Information you may provide:

Name

Email address

Phone number

Date of birth

Country or region

Health and movement-related information:

Information about pain, injury history, and physical condition

Movement patterns and physical capabilities

Training or activity background

Video recordings uploaded by you for movement analysis

Information collected through your use of the App:

Account login details

App usage and activity data

Exercise completion and adherence data

Messages and support requests sent through the App

Information we do not collect:

Payment or financial information

Precise GPS location data

Biometric identifiers (beyond video-based movement analysis)

Advertising or tracking data

Data from third-party analytics cookies

3. How We Collect Information

We collect information in the following ways:

Directly from you when you:

Create an account

Complete in-app forms

Upload videos or progress updates

Message us through the App

Use App features

Automatically through the App:

When you log in and navigate the App

When you complete exercises or view content

From authorised team members:

When reviewing information you submit

When responding to support requests

When monitoring app usage for safety and quality purposes

4. How We Use Your Information

We use your information only for purposes related to operating and supporting the App.

App functionality and support:

Creating and managing user accounts

Delivering in-app physiotherapy guidance

Reviewing uploaded videos for movement analysis

Tracking progress and app engagement

Responding to support requests

Communication:

Sending app-related messages

Providing updates relevant to your use of the App

Responding to enquiries

Security and improvement:

Maintaining the security of the App

Diagnosing technical issues

Improving app functionality and user experience

5. Legal Basis for Processing (UK GDPR / GDPR)

We process your personal information based on the following lawful grounds:

Consent – particularly for health-related data and video uploads

Healthcare provision – to support physiotherapy guidance through the App

Legitimate interests – to operate, maintain, and improve the App

Legal obligations – where required under applicable laws

6. Who We Share Your Information With

We do not sell your personal data.

We only share information when necessary for App operation or legal compliance.

With our team:

Authorised physiotherapy team members may access your information solely to support app-based guidance and respond to support requests. All team members are bound by confidentiality and data protection obligations.

With service providers:

We use LeadConnector as our platform provider to host app data, including accounts, communications, and uploaded content. LeadConnector processes data only on our instructions and in accordance with applicable data protection laws.

Their privacy policy can be viewed here:

https://www.leadconnectorhq.com/privacy-policy

Legal requirements:

We may disclose information if required by law, court order, or regulatory authority, or to protect safety or legal rights.

We do not share data with:

Advertisers

Marketing companies

Data brokers

Social media platforms

7. International Data Transfers

As the App is available globally, your information may be processed outside your country of residence.

Where international transfers occur, we ensure appropriate safeguards are in place, including:

Participation in recognised data protection frameworks

Standard contractual clauses where required

Use of providers that meet GDPR and UK GDPR standards

Your data receives the same level of protection regardless of where it is processed.

8. How We Protect Your Information

We use appropriate technical and organisational measures to protect your information, including:

Encrypted data transmission and storage

Restricted access controls

Regular security reviews

Staff training on data protection

Secure backup systems

You are responsible for keeping your login credentials secure. If you believe your account has been compromised, contact us immediately.

While no system is completely secure, we will notify you and relevant authorities if a data breach occurs where legally required.

9. Data Retention

We retain personal information only for as long as necessary.

While your account is active, we retain information to support app functionality

Health-related records are retained in line with UK healthcare record-keeping requirements (typically up to 8 years)

After retention periods expire, data is securely deleted or anonymised

10. Your Rights

You have the following rights under data protection law:

Access your personal information

Correct inaccurate or incomplete information

Request deletion of information (subject to legal obligations)

Restrict or object to processing in certain circumstances

Request data portability

Withdraw consent where processing is based on consent

To exercise these rights, email: [email protected]

We will respond within one month and may need to verify your identity.

You also have the right to lodge a complaint with your local data protection authority, including the UK Information Commissioner’s Office (ICO).

11. Health Information

Health-related information is treated as special category data and receives additional protection.

We process health information only to support physiotherapy guidance within the App. If you withdraw consent for processing health data, we may be unable to continue supporting you through the App.

12. Children’s Privacy

The App is intended for users aged 18 and over.

We do not knowingly collect information from children under 16.

If we become aware that information has been collected from a child without appropriate consent, it will be deleted promptly.

13. Changes to This Policy

We may update this Privacy Policy to reflect changes in the App or legal requirements.

When updates are made:

The “Last Updated” date will be revised

Significant changes may be communicated through the App

Continued use of the App after changes indicates acceptance of the updated policy.

14. Third-Party Links

The App may contain links to external resources not operated by us. We are not responsible for the privacy practices of third-party websites and encourage you to review their policies before sharing information.

15. Contact Us

If you have questions about this Privacy Policy or your data:

[email protected]

We aim to respond to all enquiries within 5 business days.

This Privacy Policy is governed by the laws of Northern Ireland and the United Kingdom.