Body Good Studio

Privacy Policy

Last updated: April 3, 2026

Cookies & Tracking

We use cookies and similar technologies, grouped into the three categories below. You control Analytics and Marketing through the cookie banner · Necessary cookies are always on so the site can function. You can change your choice at any time using the Cookie Preferences link in the footer.

Necessary

Required for the site to function · session, security, cart, checkout, language preference, and your cookie-consent choice itself. Always on.

Vendors
  • Body Good Studio (first-party)
  • Stripe (checkout & fraud prevention)
  • Vercel (hosting & security)
Data collected
  • Body Good Studio (first-party): session identifiers, CSRF tokens, cart contents, locale, authentication state, and your stored consent choice.
  • Stripe (checkout & fraud prevention): payment session identifiers and fraud-screening signals (including IP address) used to process checkout securely.
  • Vercel (hosting & security): request metadata and IP address used for hosting, caching, and platform-level security.
Retention
Session cookies clear when you close the browser. Persistent functional cookies (cart, locale, consent) last up to 12 months. Stripe fraud signals follow Stripe's policy.

Analytics

Helps us understand how visitors use the site so we can improve it · which pages are visited, how the quiz performs, where users drop off.

Vendors
  • Google Analytics 4 (GA4)
Data collected
  • Google Analytics 4 (GA4): pseudonymous client identifier, pages viewed, referrer, device and browser type, approximate location (city / region from IP, IP is not stored by GA4), and events such as quiz steps, add-to-cart, and checkout milestones.
Retention
GA4 stores user-level and event-level data for up to 14 months. Aggregated reports are retained longer.

Marketing

Used to show relevant ads on Meta and Bing, suppress ads to existing customers, and measure campaign performance. We do not share clinical intake answers with ad vendors.

Vendors
  • Meta Pixel
  • Meta Conversions API (server-side)
  • Google Ads
  • Microsoft Bing UET
Data collected
  • Meta Pixel: pseudonymous advertising identifier, pages viewed, and conversion events (lead, add-to-cart, purchase) with purchase value and currency.
  • Meta Conversions API (server-side): server-side conversion events with hashed email and phone (where available) for ad matching.
  • Google Ads: advertising identifier, pages viewed, and conversion events used to measure campaign performance and suppress ads to existing customers.
  • Microsoft Bing UET: advertising identifier, pages viewed, and conversion events used to measure Bing campaign performance.
Retention
Cookies set by these vendors typically last up to 13 months. Conversion records held by the vendors follow their own retention policies.

To withdraw or change consent, open Cookie Preferences in the footer. Disabling Analytics or Marketing stops new data collection by those vendors going forward.