Legal
Privacy Policy
Last updated: August 10, 2026
Goo Fashion respects your privacy. This policy explains, in plain language, exactly what personal data we collect, why we collect it, which service providers it is shared with, and the rights you have over it.
Who We Are
Goo Fashion (“GOO”, “we”, “our”, “us”) is a fashion-discovery and AI-styling platform available at goo-fashion.com. The service is operated by:
David Arakhamia, Sole Trader
Mykolaiv, Ukraine
Registered address available on request.
For the purposes of the EU General Data Protection Regulation (GDPR) and the Law of Ukraine “On Personal Data Protection”, the operator above is the data controller for personal data processed through the website.
Information We Collect
Account data
When you create an account, our authentication provider Clerk collects your email address, name, optional profile photo and — if you sign in with a social account — your public profile identifiers from that provider. Your password is handled entirely by Clerk and never reaches our servers.
Style profile (optional)
To personalise recommendations you can voluntarily provide: body type, clothing and shoe sizes, budget range, favourite colours and styles, a nickname, pronouns, style goals, lifestyle notes, and “hard limits” — things GOO should never suggest. You can edit or clear these in your profile at any time.
Content you create
Liked products and outfits, saved looks, looks you submit for publication, and — for signed-in users — your AI Stylist chat history, so conversations can continue across devices.
Try-on photos
If you use virtual try-on, the photo you upload is processed to generate the styled image and is not saved on our servers. The finished generated image is stored and linked to your account (see Section 4).
Payment and subscription data
Your plan, price and currency, subscription status and renewal dates, payment-invoice identifiers, a reusable card token issued by our payment provider, and a masked card number (first six and last four digits). Your full card number is entered on monobank’s secure payment page and never touches our servers.
Usage data
A pseudonymous session identifier, pages viewed, referring page, UTM tags, coarse device type, browser and operating-system class, your country code, and page-performance metrics. We do not store your IP address or full browser user-agent string in our analytics database. When you are signed in, usage records may be linked to your account identifier.
Communications
Your email address if you join the waitlist, the content of bug reports (description, page address, an optional screenshot), and any messages you send us by email.
Data that stays on your device
Your shopping cart, recently viewed items, guest likes, theme and currency preferences are stored only in your browser’s local storage and are not transmitted to our servers. See the Cookie Policy for the full inventory.
How We Use Your Information
We use personal data for the following purposes, on the following legal bases:
- Providing the service — accounts, saved content, styling tools (performance of a contract)
- Processing payments and managing subscriptions and renewals (performance of a contract; legal obligations, e.g. accounting)
- Personalised AI styling based on the profile details you choose to share (performance of a contract)
- Understanding how the site is used and improving it (legitimate interest)
- Service messages about your account or subscription, and occasional product announcements (legitimate interest; you can object at any time)
- Security, rate limiting and abuse prevention (legitimate interest)
- Complying with legal obligations (legal obligation)
AI Features and Your Data
GOO’s styling features are powered by third-party AI infrastructure. What is shared depends on the feature:
- AI Stylist chat — your messages, recent conversation history, your style-personalisation details and relevant catalogue excerpts are sent to Replicate, which runs the language model that generates the reply
- Catalogue search — your search or chat query may be converted into an embedding via OpenAI to match it against our catalogue
- Virtual try-on — your uploaded photo and the selected product images are sent to an image model hosted on Replicate; your photo is processed transiently and is not stored by us; the generated image is stored in our storage and linked to your account
- Bug reports — your report text and optional screenshot are analysed by Anthropic (Claude) and the structured result is filed in our internal issue tracker
These providers act as our processors under their API terms, which state that content submitted via API is not used to train their models. AI outputs are recommendations and visualisations only — we make no automated decisions about you that produce legal or similarly significant effects.
Cookies and Similar Technologies
We keep cookies to a minimum: essential sign-in cookies, and an optional analytics cookie set only after you accept it in our consent banner. Our Cookie Policy lists every cookie and browser-storage key we use, and lets you change your analytics choice at any time.
Who We Share Data With
We do not sell personal data. We share it only with the service providers below (acting on our instructions), with affiliate networks as described in Section 7, or where required by law.
Clerk (USA)
Authentication and account management.
Data involved: account data, style profile
Supabase
Database and file storage.
Data involved: likes, looks, chat history, subscriptions, analytics events
Vercel (USA)
Website hosting and cookieless web analytics.
Data involved: request data; IP addresses appear transiently in server logs
monobank / Plata by mono (Ukraine)
Payment processing and card tokenisation on their hosted payment page.
Data involved: payment details, subscription reference including your account identifier
Replicate (USA)
Running the AI models behind the stylist chat and virtual try-on.
Data involved: chat messages, style personalisation, try-on photos, product images
OpenAI (USA)
Search embeddings for catalogue matching.
Data involved: search and chat queries; product texts
Anthropic (USA)
Structuring bug reports.
Data involved: report text, page address, optional screenshot
Resend (USA)
Email delivery.
Data involved: email address, message content
Upstash
Rate limiting to prevent abuse.
Data involved: IP addresses and account identifiers, kept from about a minute up to one day
PostHog (EU hosting)
Product analytics — loaded only after you accept analytics cookies in the consent banner.
Data involved: usage events and visited page addresses
Cloudflare / ipapi.co
Resolving your country for regional statistics.
Data involved: IP address, used transiently for the lookup and never stored by us
Google (favicon service)
Loading retailer logos on product pages.
Data involved: your browser requests the logo image directly from Google
Affiliate Links Disclosure
Goo Fashion earns commissions from qualifying purchases made through retailer links on our site (“Where to buy”). These links route through affiliate networks such as Awin, which set their own tracking cookies on their and the retailer’s domains after you click.
We receive aggregated commission reports from affiliate networks; they do not tell us who you are. Purchases from third-party retailers are governed by those retailers’ own privacy policies.
International Transfers
We operate from Ukraine and use service providers in the European Union and the United States. Where personal data of EEA/UK residents is transferred outside those regions, we rely on the providers’ appropriate safeguards, such as Standard Contractual Clauses or certification under the EU–U.S. Data Privacy Framework.
Data Retention
- Account and profile data — for as long as your account exists
- Billing and subscription records — for as long as accounting and tax law requires
- AI Stylist chat history — until you delete it or ask us to delete your account data
- Analytics records — currently retained without a fixed expiry; deleted on request where they can be linked to you
- Data in your browser storage — entirely under your control; clear it in your browser at any time
Public Content
Some content you create is public by design: a look you share via a link can be viewed by anyone who has that link, and looks you submit for publication become publicly visible if approved. Generated try-on images are stored at link-accessible addresses.
Please do not include anything in shared content that you would not want visible to others. To have a shared look or generated image removed, email us and we will take it down.
Security
We protect data with encryption in transit (TLS), tokenised payments (we never hold full card numbers), cryptographically signed payment notifications, and access controls on administrative systems. No method of transmission or storage is 100% secure, but we work to protect your data with measures appropriate to the risk.
Your Rights
Subject to applicable law (including the GDPR if you are in the EEA/UK), you have the right to:
- Access the personal data we hold about you and receive a copy
- Correct inaccurate data
- Have your data deleted, including your account
- Restrict or object to processing, including analytics and product announcements
- Receive your data in a portable format
- Withdraw consent at any time, where processing is based on consent
To exercise any of these rights, email anything@goo-fashion.com from the address linked to your account. We respond within 30 days. You can also lodge a complaint with the Ukrainian Parliament Commissioner for Human Rights or, in the EEA, with your local data protection authority.
Children
Goo Fashion is not directed at children under 16, and we do not knowingly collect their personal data. If you believe a child has provided us personal data, contact us and we will delete it.
Changes to This Policy
We may update this policy from time to time. The current version is always published on this page with its “last updated” date; material changes will be announced on the website or by email.
Contact
Questions about privacy? Contact us at anything@goo-fashion.com.