Privacy policy
PRIVACY POLICY
Last updated: February 23, 2026
Goaltown.io operates this website and online store (the “Services”). This Privacy Policy explains how we collect, use, process, disclose, and protect your personal data in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) where applicable.
By accessing or using the Services, you acknowledge that you have read and understood this Privacy Policy.
1. Personal Data We Collect
“Personal data” means any information that identifies or can reasonably be linked to an identifiable person.
We may collect the following categories of personal data:
Contact Information
• Name
• Billing address
• Shipping address
• Email address
• Phone number
Payment Information
• Payment card details (processed via secure third-party providers)
• Transaction confirmation
• Payment history
Account Information
• Username
• Account preferences
• Order history
Transaction Information
• Products viewed
• Items added to cart
• Purchase and return history
Communications
• Customer support inquiries
• Email correspondence
Technical & Device Data
• IP address
• Browser type
• Device identifiers
• Usage data
• Cookie data
We do not knowingly collect personal data from children under 18.
2. Sources of Data
We collect personal data:
• Directly from you (when placing orders or contacting us)
• Automatically via cookies and analytics tools
• From Shopify (our hosting provider)
• From payment processors
• From affiliate tracking systems (UpPromote)
3. How We Use Your Personal Data
We process personal data for the following lawful purposes:
Contract Performance
• Order fulfillment
• Payment processing
• Shipping coordination
• Personalization of QR products
Affiliate & Commission Tracking
• Cookie-based attribution (30 days)
• Commission validation
• Payout processing
Customer Support
• Responding to inquiries
• Resolving disputes
Marketing (where consent applies)
• Promotional emails
• Product announcements
You may withdraw marketing consent at any time.
Security & Fraud Prevention
• Account authentication
• Fraud detection
• Transaction monitoring
Legal Compliance
• Compliance with tax and accounting regulations
• Responding to lawful requests
4. Sharing of Personal Data
We may disclose personal data to:
• Shopify (hosting & infrastructure)
• Payment processors (e.g., Shopify Payments)
• Fulfillment partners
• Logistics providers
• UpPromote (affiliate tracking)
• IT and analytics providers
We do not sell personal data.
We may share data where required by law.
5. Relationship with Shopify
Our store is powered by Shopify.
Information submitted through the Services is processed by Shopify in accordance with Shopify’s own Privacy Policy.
Shopify may process data to:
• Provide store functionality
• Enable payment processing
• Support personalized advertising features
For details, see:
https://privacy.shopify.com
6. International Transfers
Personal data may be transferred outside your country of residence.
Where data is transferred outside the EEA or UK, we rely on:
• Standard Contractual Clauses
• Adequacy decisions
• Legally recognized safeguards
7. Data Retention
We retain personal data only as long as necessary to:
• Fulfill contractual obligations
• Comply with legal requirements
• Resolve disputes
• Enforce agreements
Retention periods may vary depending on legal obligations.
8. Your Rights (EEA / UK Residents)
Where applicable, you may have the right to:
• Access your personal data
• Request correction
• Request deletion
• Restrict processing
• Object to processing
• Data portability
• Withdraw consent
To exercise your rights, contact:
We may require identity verification before fulfilling requests.
You also have the right to lodge a complaint with your local data protection authority.
9. Cookies & Tracking
We use cookies for:
• Store functionality
• Affiliate tracking (30-day attribution)
• Analytics
• Security
Disabling cookies may affect functionality and commission attribution.
For details, see our Cookie Policy.
10. Data Security
We implement technical and organizational measures to protect personal data.
However, no system is completely secure. Transmission of data occurs at your own risk.
11. Children’s Data
Our Services are not intended for individuals under 18.
We do not knowingly collect data from minors.
If you believe a minor has provided data, contact us for removal.
12. Updates to This Policy
We may update this Privacy Policy for operational, legal, or regulatory reasons.
Changes take effect upon publication.
The “Last updated” date will reflect revisions.
13. Contact Information
If you have privacy-related questions: