GoKart

Privacy Policy

Effective Date: Oct 1, 2025

GoKart, a service operated by Zariz Technologies, Inc. (“we”, “us”, or “our”), provides a SaaS platform enabling advertisers, publishers, and partners to manage offer-wall experiences, track engagement, and measure performance. We are committed to protecting the privacy of individuals who visit our website, interact with us, or whose data is processed through our services on behalf of our customers.

This Privacy Policy explains what information we collect, how we use it, how we share it, and the rights available to individuals under applicable laws.

1. Scope of This Policy

This Privacy Policy applies to:

  1. Visitors to our marketing website (https://getgokart.ai or related domains)

  2. Business contacts (customer personnel, partners, prospects)

  3. Event-level data processed through the GoKart platform on behalf of our customers

GoKart acts as:

  • Data Controller for personal data related to website visitors and business contacts.

  • Data Processor for event-level data our customers send through our platform.

Customers remain responsible for compliance with their own privacy obligations and for ensuring they have the right to send identifiers and metadata to GoKart.

2. Information We Collect

2.1. Website Visitors

When you visit our website, we may collect:

  • IP address, browser type, operating system, device information

  • Pages viewed, referral URLs, timestamps

  • Cookie or analytics identifiers (e.g., Google Analytics)

  • Aggregated usage and performance information

We use this information to understand site usage, improve our website, and ensure security.

2.2. Business Contacts (Customers & Partners)

When you request a demo, sign up, or communicate with us, we may collect:

  • Name

  • Business email address

  • Company name

  • Role or title

  • Any information voluntarily provided through forms or communications

We use this information to administer accounts, respond to inquiries, provide support, and communicate about our services.

2.3. Offer-Wall & API Event Data (Service Data)

GoKart processes operational event data only as instructed by our customers.

 

We do not collect personal data directly from end-users, and we do not store names, emails, phone numbers, or direct identifiers.

 

Depending on customer configuration, Service Data may include:

  • IP address and device metadata (e.g., user agent)

  • Customer-defined user identifiers (e.g., user_id, hashed IDs, internal account IDs)

  • Device IDs (IDFA, GAID) only if provided by customers

  • Event data such as offer views, clicks, conversions, timestamps

  • Fraud-related metadata associated with events

  • City, region, or country derived from IP

 

We store these identifiers solely for providing the service, fraud detection, analytics, debugging, and performance optimization.

 

We do not use end-user event data for GoKart advertising, profiling, or cross-customer purposes.

3. How We Use Information

We use information to:

  • Deliver and maintain our SaaS platform

  • Authenticate customer accounts

  • Provide analytics, offer-wall performance, fraud-detection features

  • Improve platform reliability, stability, and security

  • Respond to inquiries and provide customer support

  • Analyze usage trends for product improvement

  • Comply with legal obligations and enforce our Terms of Service

 

We do not sell or rent personal information.

4. Legal Bases for Processing (GDPR)

For individuals in the EEA, UK, or Switzerland, GoKart processes data under the following legal bases:

  • Contract performance: To provide the GoKart platform to customers

  • Legitimate interests:

    • Improve platform functionality and security

    • Perform fraud detection

    • Analyze website usage

  • Consent: For optional website analytics cookies (where required)

  • Legal obligation: To comply with regulations or defend legal claims

5. How We Share Information

5.1. Service Providers (Subprocessors)

We share information with trusted third-party vendors who support our operations, such as:

  • Cloud hosting and storage

  • Monitoring, logging, and analytics

  • Web application security

  • Customer communication systems (e.g., Intercom)

 

All vendors are contractually required to protect information and act only on our instructions.

 

A current list of subprocessors is available in our Data Processing Addendum.

5.2. Legal and Compliance Obligations

We may disclose information to:

  • Comply with applicable laws, regulations, or legal requests

  • Prevent fraud, abuse, or security incidents

  • Enforce our terms or protect GoKart, our customers, or users

 

We do not permit third parties to use customer data for their own marketing purposes.

6. International Data Transfers

GoKart is based in the United States, and Service Data is currently stored in U.S. cloud regions.

If data is transferred outside the EEA, UK, or Switzerland, we rely on:

  • Standard Contractual Clauses (SCCs)

  • Adequacy decisions where applicable

  • Additional safeguards required by law

7. Data Retention

We retain data only for as long as necessary to:

  • Provide the GoKart platform

  • Fulfill contractual or legal obligations

  • Maintain system integrity and security

 

Customers may request deletion of event-level Service Data or account data by contacting privacy@getgokart.ai.

 

Website analytics data is retained according to the settings defined by Google Analytics.

8. Security

We use administrative, technical, and organizational measures designed to protect information, including:

  • Multi-factor authentication

  • Encryption in transit and at rest

  • Access controls and role-based permissions

  • Logging, monitoring, alerting

  • DDoS and web application firewall protection

  • Secure development and vulnerability scanning practices

While no system is perfectly secure, we work to safeguard information against unauthorized access, alteration, or loss.

9. Your Privacy Rights

Depending on your location, you may have rights including:

GDPR / UK Data Protection Rights

  • Access your personal data

  • Rectify inaccurate data

  • Request deletion (“right to be forgotten”)

  • Restrict or object to processing

  • Data portability

  • Withdraw consent (where applicable)

California (CCPA/CPRA) Rights

California residents may:

  • Request to know categories and specific pieces of personal information collected

  • Request deletion

  • Correct inaccurate information

  • Opt out of “sharing” of personal information (GoKart does not sell or share data for cross-context behavioral advertising)

 

Requests may be submitted at privacy@getgokart.ai.

 

We may verify your identity before fulfilling requests.

10. Children’s Privacy

Our services are not intended for children under 16.

We do not knowingly collect or store data directly from minors.

If we learn that personal information of a minor was submitted improperly, we will take steps to delete it.

11. Cookies and Tracking Technologies

We use limited cookies and analytics tools on our marketing website.

Visitors may control cookie preferences through their browser or device settings.

12. Changes to This Policy

We may update this Privacy Policy periodically.

If changes are material, we will notify customers by email or through the platform.

The “Effective Date” at the top of this page indicates when changes take effect.

13. Contact Us

For privacy questions or to submit a rights request:

Zariz Technologies, Inc. (GoKart)

Email: privacy@getgokart.ai