Legal

Privacy Policy

Last updated: May 14, 2026

This Privacy Policy describes how GoFitment (“we”, “us”, “our”), operated by WebDevArif, collects, uses, and protects information in connection with your use of the GoFitment Shopify application. We are committed to protecting your privacy and handling your data transparently.

1. Information We Collect

When you install and use GoFitment, we collect the following categories of information:

Store & Account Data

  • Shopify store domain (e.g., yourstore.myshopify.com) — used to identify your store and authenticate API calls.
  • Store owner email address — used for billing notifications and support communications.
  • Shopify access tokens — securely stored OAuth tokens that allow GoFitment to read your product catalog and write App Block settings. We do not store your Shopify admin password.

Fitment Data You Upload

  • CSV / FTP fitment files — Year, Make, Model, Trim, and related fitment records you import. This data belongs to you; we only process it to power the YMM search widget.
  • Product-to-fitment mappings — the associations our engine creates between your Shopify product variants and uploaded fitment records.

YMM Search Activity Data

  • Storefront search queries — when shoppers use the YMM widget on your store, we log the Year, Make, Model combination searched and whether results were found. We do not collect shopper names, emails, or any personally identifiable information about your customers.
  • Usage analytics — aggregate data on widget impressions, search counts, and fitment gap events used to power your analytics dashboard.

Technical & Log Data

  • IP addresses and request logs for security monitoring and debugging purposes.
  • Error logs and performance metrics used to maintain service reliability.

2. How We Use Your Information

We use the information we collect for the following purposes:

  • To provide the service — processing your fitment data, powering the YMM widget, and syncing data with your Shopify products.
  • To manage billing — communicating with Shopify's billing API using your store domain and subscription status.
  • To send service communications — billing receipts, subscription status updates, and critical service announcements. We do not send marketing emails unless you opt in.
  • To improve the App — aggregate, anonymized analytics help us understand which features are used and where improvements are needed.
  • To provide customer support — when you contact us, we use your email and store information to resolve your issue.
  • To comply with legal obligations — we may retain certain data as required by applicable law.

3. Data Sharing

We do not sell, rent, or trade your personal data or your store's data to any third party.

We share data only in the following limited circumstances:

  • Shopify APIs — we read and write data through Shopify's official Partner APIs. Shopify's own Privacy Policy governs how Shopify handles this data.
  • Cloud infrastructure providers — our App runs on industry-standard cloud providers (server hosting, database). These providers access data only to provide infrastructure services and are contractually bound to confidentiality.
  • Legal requirements — we may disclose data if required by law, court order, or to protect the rights, property, or safety of GoFitment, our users, or the public.
  • Business transfers — if GoFitment is acquired or merges with another entity, user data may be transferred as part of that transaction, with notice provided to affected users.
🛡

We never sell your data. Your store information and fitment data are used exclusively to provide the GoFitment service. We do not use it for advertising, profiling, or any third-party commercial purpose.

4. Cookies & Tracking

The GoFitment app dashboard (admin interface) uses minimal session cookies required for authentication and CSRF protection. These cookies are necessary for the App to function and cannot be disabled while using the dashboard.

The GoFitment storefront widget (the YMM search widget embedded in your Shopify store) uses localStorage to remember the last vehicle selection a shopper made, so it can persist their selection across pages. No personal information is stored in localStorage — only the selected Year, Make, and Model values.

We do not use advertising cookies, third-party tracking pixels, or behavioral tracking technologies. We do not integrate with Google Analytics, Facebook Pixel, or similar tools.

5. Data Retention & Deletion

While subscribed: We retain your store data, fitment records, and product mappings for the duration of your active subscription to provide the service.

After uninstallation: When you uninstall GoFitment from your Shopify store, we will delete all associated data (store credentials, fitment records, mappings, and analytics) within 30 days. Some anonymized, aggregate analytics data (not linked to your store) may be retained longer for product improvement purposes.

Data deletion requests: You may request immediate deletion of all your data by emailing info@webdevarif.com with the subject “Data Deletion Request”. We will process your request within 10 business days and confirm completion.

Backups: Deleted data may persist in encrypted backups for up to 14 days after deletion, after which it is permanently purged.

6. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

GDPR Rights (EU / EEA users)

  • Right of access — you can request a copy of the data we hold about you.
  • Right to rectification — you can request correction of inaccurate data.
  • Right to erasure (“right to be forgotten”) — you can request deletion of your data subject to legal retention obligations.
  • Right to data portability — you can request your data in a machine-readable format.
  • Right to object — you can object to processing in certain circumstances.
  • Right to restrict processing — you can request we limit how we use your data.

CCPA Rights (California users)

  • Right to know — what personal information we collect, use, disclose, and sell.
  • Right to delete — request deletion of personal information we have collected.
  • Right to opt-out of sale — we do not sell personal information, so this right is already satisfied.
  • Right to non-discrimination — we will not discriminate against you for exercising your CCPA rights.

To exercise any of these rights, email info@webdevarif.com. We will respond within 30 days (or the timeframe required by applicable law).

7. Contact for Privacy

For any privacy-related questions, requests, or complaints, please contact our privacy team:

Privacy Contact — GoFitment / WebDevArif

Email: info@webdevarif.com

Subject line: Privacy Inquiry – GoFitment

We aim to respond to all privacy-related communications within 10 business days.

If you are located in the EU and believe we have not adequately addressed your privacy concern, you have the right to lodge a complaint with your local Data Protection Authority (DPA).