Payment and collection
Acquirer for payment services, debt collection agencies and credit reference agencies.
GDPR
We process only the information we need, for the purpose we have stated, and no longer than necessary.
When you join, when you use the gym, and when you are in contact with us.
You have the right to access, rectification and erasure, and to complain to Datatilsynet, the Norwegian Data Protection Authority. See the privacy policy.
The text on this page is reproduced from energyfitness.no, retrieved 3 August 2026. If you are in any doubt, the version ENERGY publishes on its own domain is the one that applies. Any questions, take them up with us at hei@energyfitness.no.
This statement applies to you as an individual when ENERGY Fitness AS, which runs ENERGY Fitness, is the data controller for personal data about you. That is, when you use our services and we decide the purpose of the processing and which methods, means and security measures are to be used.
It does not apply where someone else is the data controller, even if you reach that controller's services through ours.
Information linked to your membership, such as contact details, invoices, visit history and membership administration, is available in the Membro app, and that is also where you update your details yourself. If you want a full overview of what we process about you, request access at hei@energyfitness.no. About Membro
Which data we process depends on which services you have an agreement for or actually use.
This is how ENERGY itself describes who the data may be shared with, and where it is processed.
Acquirer for payment services, debt collection agencies and credit reference agencies.
Companies we have an agreement with, and that carry out work on our behalf.
Others you have given us your consent to share information with, for example an accountant or an accountancy firm.
Potential partners in a sale, purchase, merger or other reorganisation of the company.
Where we are required to disclose information.
We use both Norwegian and foreign partners, and we transfer information only to recipients that have committed to adequate privacy and security safeguards. Transfers outside the EU or the EEA are made under the EU standard data processing agreement.
The information is secured through physical, technical and administrative measures, including encryption via TLS and SSL and strict requirements for our staff. When we develop services, privacy and data protection are built in, and we carry out privacy assessments to identify and limit risk.
We process your information for as long as it is necessary to achieve the purpose of the processing. After that it is deleted, unless the law requires us to keep it longer.
Children means people under 18. Children over 15 can consent to the processing of non-sensitive data, and ENERGY Fitness has a minimum age of 15 for training on your own, 14 in Stord. Whether a member under 18 can give consent themselves depends on the activity and the privacy risk.
The statement is reviewed every year, so that any necessary updates and changes are included. See also the privacy policy.