SKUsmith ingests your product data — ERP exports, price lists, images, and documents. Here is exactly how that data is handled. If anything below is a blocker for your IT or legal review, email us and we'll get on a call with whoever needs answers.
Customer catalogs are stored in isolated, single-tenant databases hosted in the United States. Your catalog is never commingled with another customer's data.
All data is encrypted in transit (TLS 1.2+). Storage volumes are encrypted at rest by the hosting provider.
Access is limited to the people implementing your catalog, for the purpose of implementing your catalog. No third party is granted access. We do not sell, share, or license customer data — it isn't our data.
AI features (import mapping, photo matching, copy drafting, restriction extraction) process your data to produce proposals for your team's approval. Your data is not used to train models — ours or anyone else's.
The health report reads only your public storefront — the same pages any customer, marketplace, or search engine sees. It involves no credentials and no internal data.
Your full catalog is exportable in open formats (CSV, JSON, original files) any day, self-serve. On contract end, we delete your data on request and confirm in writing — or hand you a self-hosted copy of the system with your data in it.
SKUsmith is an early-stage product and we don't hold a SOC 2 attestation yet. What we offer instead: single-tenant isolation, the export-anytime guarantee above, and direct access to the people who built the system for any security question your team has. We would rather tell you that plainly than hide it behind a badge wall.