Privacy Policy
This page describes current WeBuyItForLife.com website practices at https://www.webuyitforlife.com. Third-party merchants and services apply their own terms and policies.
Scope
This Privacy Policy explains how WeBuyItForLife.com handles information through https://www.webuyitforlife.com. It covers public browsing, browser-local features, signed-in account features, community content, contact and legal requests, newsletter signup, analytics, and outbound merchant links. A merchant, identity provider, or other third party applies its own privacy policy when you use its service.
Information We Process and Its Sources
- Account identity: Firebase Authentication supplies a Firebase UID and may supply an email address, display name, profile image, and sign-in provider information. WeBuyItForLife.com uses the UID as the application account key.
- Profile and account data: usernames, bios, profile settings, shelf visibility, wishlist and owned-product records, collections, collaboration and contribution records, likes, and account status.
- Community content: ratings, review titles and text, ownership or use status, material-connection disclosures, images, product-chat messages and replies, reports, and related timestamps and display labels.
- Operational records: in-site notifications, moderation and audit records, consent preferences, safety or legal request status, abuse-prevention data, and account-deletion progress where applicable.
- Contact and legal requests: name, email address, subject or request type, message, relevant product or content URLs, brand relationship and evidence URLs when submitted, source form, triage state, and notification-delivery state.
- Newsletter signup: email address, affirmative consent, and signup source sent to the configured newsletter provider.
- Images: authenticated review or product-related image uploads and related technical or provenance fields. Image files are subject to type, size, naming, account-namespace, and moderation controls.
- Usage and device information: page path, page type, referral classification, theme, authentication state, product and feature interactions, affiliate-link events, approximate technical request data, and anti-abuse verification results when analytics or form protection is configured.
- Browser-local data: cart items, theme, recently viewed products, guest wishlist, guest owned products, local price alerts, and privacy preferences stored by your browser.
How We Use Information
WeBuyItForLife.com processes information to authenticate users; provide profiles, shelves, collections, reviews, chat, images, notifications, and preferences; generate and protect public catalog pages; operate local shopping tools; respond to contact, legal, privacy, correction, safety, and moderation requests; deliver requested newsletters; detect abuse and security problems; maintain audit and safety records; understand service use; measure affiliate-link activity; debug and improve the service; and comply with applicable obligations.
Public and Private Information
Product pages, public reviews, chat, public profiles, public collections, usernames, display labels, bios, profile images, and any shelf a user makes public can be seen by other people and may be indexed by search engines. Public content can be copied or shared by others. WeBuyItForLife.com does not intentionally expose a private account email address on a public profile.
Wishlist and owned-product shelves default to private for new account settings unless the user makes them public. Authentication credentials, private email addresses, nonpublic settings, private shelves, and internal moderation or audit details are not intended for public display. A report or moderation record may retain a Firebase UID, target, reason, status, timestamp, and limited operational context without publishing those internal details.
Authentication, Hosting, and Storage
Firebase Authentication provides identity and sign-in. Cloudflare Pages and Pages Functions serve the website and APIs. Cloudflare D1 stores account and application data, and Cloudflare R2 stores authenticated image uploads. Public catalog data is also generated into static files so logged-out product and research routes can load without an account API request. These providers may process technical request information needed to deliver and secure their services.
Analytics, Affiliate Links, and Form Protection
When configured and permitted by the saved preference and deployment settings, WeBuyItForLife.com may use Google Tag Manager or Google Analytics, Amplitude, and Microsoft Clarity to measure page and feature use. Analytics payloads are designed to exclude private email addresses, authentication tokens, message bodies, review text, notes, and other unnecessary personal content. Microsoft Clarity is restricted from routes excluded by WeBuyItForLife.com's route policy.
If no privacy preference is saved, the deployment setting determines whether optional analytics can initialize. Saving “Reject optional storage” prevents WeBuyItForLife.com's optional analytics initialization on that browser unless the preference is changed. Analytics providers may use their own browser technologies under their policies. The marketing preference records a choice; selecting it does not itself subscribe you to a newsletter.
WeBuyItForLife.com records public-safe information about outbound affiliate interactions, such as product, merchant, placement, price, currency, order-readiness status, and destination URL. When you follow an outbound link, the merchant or affiliate service receives the request and may receive ordinary browser or referral information under its own policy. Cloudflare Turnstile may process browser and request signals when you use a protected contact, legal-request, or review form.
Local Browser Storage
Cart items, theme, recently viewed products, guest wishlist, guest owned products, price alerts, and privacy choices are stored in localStorage on the browser or device that created them. They are distinct from D1 account records and do not automatically follow you to another browser or device. Clearing site data, using private browsing, or browser controls may remove them.
The cart is a local shopping list, not a server order or checkout. Price alerts are local-only at launch and do not create server monitoring, email or push alerts, guaranteed prices, or server alert history.
Service Providers and Disclosures
Current code supports service-provider categories including Firebase Authentication; Cloudflare hosting, D1, R2, and Turnstile; Google Tag Manager or Google Analytics; Amplitude; Microsoft Clarity; Resend for contact-notification delivery; Kit for requested newsletters; and third-party merchants or affiliate services reached through outbound links. A provider receives only the information used for the relevant function, subject to configuration and its own terms.
WeBuyItForLife.com may also disclose information when reasonably necessary to protect users, the service, or third parties; investigate abuse or security incidents; enforce site policies; respond to valid legal process; handle copyright, privacy, safety, or other legal requests; or support a business transition subject to appropriate handling. WeBuyItForLife.com does not publish private account emails as profile data and does not sell products or process merchant payments.
Retention and Deletion Requests
WeBuyItForLife.com retains information for as long as reasonably needed for the feature for which it was collected, account operation, security, abuse prevention, dispute handling, legal or safety obligations, backups, and audit integrity. Retention varies by data type and no fixed period is represented on this page. Public content may remain visible until removed or moderated, and limited records may be kept after deletion when needed for the purposes above.
Your Choices and Requests
You can change available profile and shelf settings, edit or remove supported contributions, clear browser-local data through browser controls, change privacy preferences below, and unsubscribe from newsletter messages through the mechanism in those messages. Use the Contact and Legal Requests page at /legal-requests to request access, correction, deletion, account closure, content removal, or other privacy help. WeBuyItForLife.com may need enough information to locate the data, verify the request, protect other users, and preserve records it must or is permitted to retain. A request does not guarantee deletion or another outcome where a lawful exception applies.
Security
WeBuyItForLife.com uses measures appropriate to the current service, including identity-token verification, UID-scoped account operations, prepared database statements, input and upload validation, access-controlled administration, limited logging, and encrypted network transport provided by hosting and identity services. No internet service can guarantee absolute security. Do not send passwords, authentication tokens, payment-card data, government identifiers, or unrelated sensitive information through public content or contact forms.
Children and Eligibility
WeBuyItForLife.com is a general-audience product-research service and is not designed for children who cannot legally consent to account use or data processing on their own. Such users should not create an account or submit personal information without a parent or legal guardian. A parent or guardian can use the legal-request path about information a child may have submitted.
Privacy preferences
Essential local storage keeps core preferences like cart, theme, recent products, guest wishlist, guest owned products, and these consent settings. Analytics and marketing choices are optional.
Changes to This Privacy Policy
WeBuyItForLife.com may update this policy as the service, providers, or legal obligations change. The current version is posted on this page. When a change materially affects available choices, WeBuyItForLife.com may provide an additional notice through the service where appropriate.
Contact
Use the Contact and Legal Requests page at /legal-requests for privacy questions and requests. Submit only the information needed to identify the account, content, or request; do not include passwords, tokens, payment-card data, government IDs, or unrelated sensitive information.