Privacy Policy | Svasa Stillness
top of page

Privacy Policy

Privacy Policy – Svasa Stillness
Last updated: 21 April 2026

​

1) Who we are

​

“Svasa Stillness” (“we”, “our”, “us”) provides yoga, Pilates, meditation, and wellness services. We are based in Holden Hill, South Australia, Australia at:

560 North East Road, Holden Hill SA 5088
Website: https://www.svasastillness.com

This Privacy Policy explains how we collect, use, disclose, and protect your personal information across our website, studio, and related services.

This Policy is governed by the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

 

2) Scope

​

This Policy applies to personal information we handle as a business operating in Australia. If you are located outside Australia, additional privacy rights may apply depending on your local laws. If you have questions, contact us (see section 12).

3) What we collect

​

We may collect the following types of personal information:

  • Identity & contact: name, email, phone number, address.

  • Account & booking: membership details, class bookings, attendance, and communications with us (including via Mindbody).

  • Payment: payments are processed securely via Stripe. We do not store full card numbers.

  • Health & wellbeing: any conditions you disclose when booking, completing intake forms, or speaking with staff. This is requested to support safe participation.

  • Media consent preferences: from time to time we may take photos or videos for studio and promotional purposes (e.g., social media, website). You can notify us in advance if you do not want to appear, and we will take reasonable steps to ensure you are excluded.

  • Website & device: IP address, browser type, device information, usage data, and cookies (see section 8).

  • Minors: for under-18s, we may collect the child’s name, age, relevant health notes, and the parent/guardian’s contact details.

Where lawful and practicable (e.g., casual enquiries), you may interact with us anonymously or using a pseudonym.

 

4) How we obtain consent

​

  • Adults: By booking a class, purchasing a membership, or otherwise providing information, you give implied consent for us to collect and use your personal information as described in this Policy.

  • Health information: By answering health questions during booking or providing details verbally/in writing, you give consent for us to use that information solely to support safe participation.

  • Media: Studio activities may include photos/videos. If you do not wish to appear, you must inform us before class or via email, and we will take reasonable steps to exclude you.

  • Service communications: We may contact you about bookings, memberships, class changes, and important service notices.

  • Minors: A parent/guardian must book on behalf of under-18s and is deemed to provide consent for collection and use of the child’s information.

 

5) How we use personal information

​

We may use personal information to:

  • Manage memberships, bookings, and studio operations.

  • Process payments and manage refunds (where applicable).

  • Support safe participation in classes (using health details only for that purpose).

  • Communicate essential updates (class changes, service notices, policy updates).

  • Improve our website, services, and customer experience.

  • Comply with legal, tax, and regulatory obligations.

 

6) Sharing & overseas disclosure

​

We do not sell your personal information.

We may share personal information with trusted third parties where needed to deliver our services, including:

  • Booking/membership platform: Mindbody (used to manage bookings, memberships, and related communications).

  • Payment processor: Stripe (used to process card payments).

  • Website and technology providers: website hosting, security, and related IT providers.

  • Analytics providers: e.g., Google Analytics (see section 8).

  • Authorities: where required or authorised by law.

 

Overseas disclosure

​

Some of our service providers (including Mindbody, Stripe, website/IT providers, and analytics providers) may store or process information outside Australia. Consistent with APP 8, we take reasonable steps to ensure overseas recipients handle personal information in a way that is consistent with Australian privacy requirements.

Third-party responsibility: We are not responsible for the privacy practices of third-party providers. Please review their privacy policies for more information.

 

7) Data retention

​

We retain personal information only for as long as needed for the purposes described in this Policy, unless a longer retention period is required by law.

  • Financial/transaction records: generally kept for up to 7 years to meet legal and tax requirements.

  • Health information: kept only while relevant to participation and safety, then securely deleted or de-identified where appropriate.

  • Media consent preferences: recorded and respected while you are a member/client, or as otherwise needed to honour your preference.

  • Backups/logs: retained temporarily as part of IT and security practices.

When no longer required, information is securely destroyed or de-identified.

 

8) Cookies & analytics

​

We use cookies and similar technologies for:

  • Essential purposes: site functionality and security.

  • Analytics: e.g., Google Analytics to understand website usage and improve site experience.

You can manage or disable cookies in your browser settings. Essential cookies may be required for the website to function properly.

 

9) Children & parents/guardians

​

  • All bookings for under-18s must be made by a parent/guardian, who consents to data collection and any relevant health disclosures.

  • We do not knowingly collect personal information directly from minors without parent/guardian involvement.

  • Parents/guardians may request access to or correction of their child’s information at any time.

 

10) Security & data breaches

​

We apply reasonable technical and organisational safeguards to protect personal information (e.g., HTTPS, access controls, and encryption in transit where applicable).

If a data breach occurs that is likely to result in serious harm, we will:

  • Contain and assess the breach promptly.

  • Notify affected individuals with recommendations to minimise risk.

  • Notify the Office of the Australian Information Commissioner (OAIC) where required.

 

11) Your rights

​

You can request to:

  • Access or correct your personal information.

  • Request deletion (subject to legal requirements).

  • Withdraw consent for certain processing (where applicable).

We may need to verify your identity (and for minors, parental authority). If a request is refused, we will explain why and how you can complain.

​

12) Complaints

​

Please send all privacy complaints in writing to:

Svasa Stillness – Privacy Officer: Anmool Kaur
Email: admin@svasastillness.com
Phone: +61 451 413 147

We will respond within 30 days. If you are not satisfied, you may contact the Office of the Australian Information Commissioner (OAIC) at: www.oaic.gov.au

​

13) Changes

​

We may update this Policy from time to time. The new effective date will be published above, and material changes will be notified via our website or by email to active members where appropriate.

bottom of page