Privacy policy

Privacy Policy – GOATS

Last updated: December 9, 2025

GOATS operates this store and website, including all related information, content, features, tools, products and services, in order to provide you, the customer, with a curated shopping experience (the "Services"). GOATS is powered by Shopify, which enables us to provide the Services to you. This Privacy Policy describes how we collect, use, and disclose your personal information when you visit, use, or make a purchase using the Services.

If there is a conflict between our Terms of Service and this Privacy Policy, this Privacy Policy controls with respect to the collection, processing, and disclosure of your personal information.

By using our Services, you acknowledge that you have read and understood this Privacy Policy.


Data Controller (Required by EU/GDPR)

The data controller responsible for your personal information is:

GOATS
Am Unterfeld 7
4844 Regau
Austria
info@goats.at


Legal Bases for Processing (GDPR Art. 6)

We process your personal information using the following legal bases:

  • Contract Performance (Art. 6(1)(b)) – To process orders, payments, deliveries, returns and provide customer service.

  • Legal Obligation (Art. 6(1)(c)) – For tax, accounting and regulatory compliance.

  • Legitimate Interests (Art. 6(1)(f)) – To improve our Services, prevent fraud and ensure security.

  • Consent (Art. 6(1)(a)) – For marketing communications, where required. You may withdraw consent at any time.


Personal Information We Collect

We may collect or process the following categories of personal information, depending on how you interact with the Services:

  • Contact details, such as your name, billing and shipping address, phone number and email address.

  • Financial information, such as payment card numbers and transaction details.

  • Account information, such as login details and preferences.

  • Transaction information, such as items viewed, added to cart, purchased, returned or exchanged.

  • Communications, including customer support messages.

  • Device information, including IP address, browser type, device identifiers.

  • Usage information, such as how and when you interact with the Services.


Sources of Personal Information

We collect personal information from:

  • Directly from you when you communicate with us or use the Services.

  • Automatically, through cookies and similar technologies.

  • Service providers, such as payment processors or analytics tools.

  • Partners or third parties, where permitted by law.


How We Use Your Personal Information

We use your personal information to:

  • Provide and improve the Services

  • Process payments and fulfill orders

  • Authenticate your account and ensure security

  • Offer personalized content and product recommendations

  • Conduct marketing and advertising

  • Communicate with you

  • Comply with legal obligations


How We Disclose Personal Information

We may disclose your information to:

  • Shopify (hosting + ecommerce platform)

  • Vendors and service providers (payment processors, IT hosting, logistics, analytics)

  • Business and marketing partners

  • Third parties at your direction, such as social media login tools

  • Affiliates within our company structure

  • Authorities, when legally required

  • Entities involved in business transfers, such as mergers or acquisitions


Relationship with Shopify

The Services are hosted by Shopify, which collects and processes personal information about your interactions with our store and other merchants for service improvement.

For details about Shopify’s privacy practices:
https://www.shopify.com/legal/privacy

To exercise privacy rights regarding Shopify’s processing:
https://www.shopify.com/legal/data-processing


Third-Party Websites

We may link to third-party sites. We are not responsible for their privacy or security practices. Please review their privacy policies before interacting with them.


Children’s Data

The Services are not intended for use by children.
We do not knowingly collect information from individuals under the age of majority.
If you believe your child has provided personal information, contact us so we can delete it.


Security and Retention

No security system is perfect.
We retain your data only as long as necessary to:

  • Provide Services

  • Maintain your account

  • Comply with legal obligations

  • Resolve disputes


Your Rights and Choices (GDPR)

If you reside in the EU or UK, you may exercise the following rights:

  • Right of access

  • Right to deletion

  • Right to correct inaccuracies

  • Right to data portability

  • Right to restrict processing

  • Right to object

  • Right to withdraw consent

  • Right to lodge a complaint

To exercise your rights, contact us at info@goats.at.

You may also contact Shopify regarding data processed by Shopify.


Complaints (Required by GDPR)

You have the right to lodge a complaint with your local supervisory authority:

Austrian Data Protection Authority (DSB)
Barichgasse 40–42
1030 Vienna
Austria
https://www.dsb.gv.at


International Transfers

We may transfer your information outside the EU.
When we do, we use:

  • Standard Contractual Clauses (SCCs)

  • Adequacy decisions

  • Other legally recognized safeguards


Changes to This Privacy Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements.
Updates will be posted on this page with a new “Last updated” date.


Contact

If you have questions about our privacy practices or wish to exercise your rights, contact us at:

GOATS
Am Unterfeld 7
4844 Regau
Austria
Email: info@goats.at

We are the data controller for your personal information.