Commerce built for every business model.
Launch digital commerce, manage end-to-end operations and expand across storefronts, channels, markets and customer segments from one unified AI commerce platform.
Launch digital commerce, manage end-to-end operations and expand across storefronts, channels, markets and customer segments from one unified AI commerce platform.
Launch a professional business website, manage customer relationships, automate sales and organize finance, operations and services through one connected business platform.
Start with the cloud foundation you need today and expand into connected applications, AI agents and enterprise capabilities as you grow.
A connected ecosystem for business partners, developers and investors contributing to customer growth, platform innovation and SKARTIO's global expansion.
Explore our philosophy, global locations, latest updates, founder dialogues and direct channels to connect with SKARTIO.
This Policy explains how SKARTIO collects, uses, shares, protects, stores and otherwise processes Personal Data when you visit our websites, use our cloud services or mobile applications, operate a business on SKARTIO, interact with Agentic AI, use APIs and integrations, participate in trials, or otherwise engage with us.
When SKARTIO manages its own accounts, billing, website, marketing, security and business relationships, SKARTIO generally determines why Personal Data is processed. When a customer uses SKARTIO to run commerce, CRM, workforce, finance, support or other business operations, the customer may determine the purposes of processing and SKARTIO processes that data on the customer’s behalf, subject to applicable agreements and law.
We collect account, contact, device, browser, transaction, support, payment, usage and security information as needed to operate the Services.
Data supports service delivery, billing, support, personalization, fraud prevention, security, analytics, communication and legal compliance.
Merchant, shopper, employee and business records are processed according to the role SKARTIO performs and the customer’s configuration and instructions.
Information may be shared with affiliates, processors, service providers, integrations, financial institutions or authorities where necessary and lawful.
The categories below help explain when SKARTIO is acting for itself and when it is processing information on behalf of another business.
Businesses and authorized users who create accounts, subscribe to SKARTIO services, operate cloud solutions, contact support or use APIs and applications.
People whose data is processed through a SKARTIO customer’s store, CRM, HR, LMS, support, finance or other business workflows.
Partners, developers, consultants, resellers, implementation providers, integration providers and prospective ecosystem participants.
People who browse SKARTIO websites, request information, attend events, submit forms, interact with marketing or otherwise communicate with SKARTIO.
This Privacy Policy applies to Personal Data processed by SKARTIO in connection with our websites, mobile applications, cloud services, software, APIs, support channels, events, marketing, Agentic AI capabilities and other interactions with SKARTIO.
It does not govern independent websites, applications or services that SKARTIO does not control, including third-party products selected by customers or independent websites operated by SKARTIO customers.
SKARTIO generally acts as a Controller when it determines the purposes of processing for account registration, website analytics, billing, fraud prevention, security, direct support, business communications, marketing, partner management, legal compliance and internal operations.
SKARTIO generally acts as a Processor or service provider when a business customer uses SKARTIO to process Shopper, customer, workforce, lead, partner, order, catalog, finance, learning, support or other business data according to that customer’s instructions.
| Category | Examples | Typical purpose |
|---|---|---|
| Identity & contact | Name, business, email, phone, address | Account setup, support, billing, communication |
| Account & access | User ID, organization, roles, permissions, login history | Authentication, authorization, service delivery |
| Device & browser | IP, device, OS, browser, cookies, approximate region | Security, analytics, personalization |
| Commerce & transaction | Orders, products, shipping, customer and payment-related records | Merchant service delivery, fulfilment, fraud controls |
| Business solution data | CRM, HR, LMS, finance, partner, support and operational records | Customer-configured cloud workflows |
| AI interaction | Prompts, files, retrieval context, outputs, tool calls | AI feature delivery, safety, troubleshooting |
| Support | Tickets, chat, diagnostics, screenshots, technical details | Customer support and incident resolution |
| Security & telemetry | Audit logs, risk signals, API events, usage metrics | Security, reliability, fraud and abuse prevention |
When you create an account, request a trial, subscribe, contact us, use a mobile application, access an API or use SKARTIO cloud services, we may collect Account, Contact, Browser, Device, Payment, Security, Support, Transaction and Usage Information.
We use this information to provide and improve services, authenticate users, manage subscriptions, invoice customers, provide support, detect fraud, manage risk, secure accounts, administer contracts, communicate with customers, personalize experiences and meet legal obligations.
When a Shopper or other individual interacts with a SKARTIO-powered business, SKARTIO may process Personal Data on behalf of the relevant customer. Depending on the solution, this may include contact, order, browser, support, transaction, profile, employment, learning or other business information.
The customer is generally responsible for deciding why this information is collected and used, providing appropriate notices, obtaining required consent and responding to privacy requests.
SKARTIO may process Account, Contact, Payment, Browser, Security, Support and Usage Information for partners, developers, consultants, resellers, implementation providers and other ecosystem participants.
This information may be used for onboarding, account administration, program operations, referrals, marketplace or integration enablement, support, billing, fraud prevention, communications, compliance and management of the partner relationship.
When you visit a SKARTIO website, submit a form, attend an event, request a consultation, download content or communicate with us, we may collect Contact, Browser, Device, Cookie and Usage Information.
This information may be used to respond to requests, personalize website experiences, understand site performance, manage events, provide requested communications and market SKARTIO where permitted by law.
Depending on the context, SKARTIO may process Personal Data to:
The legal basis for processing depends on the applicable jurisdiction and our role. Where required by law, SKARTIO may rely on contractual necessity, consent, legitimate interests, compliance with legal obligations, protection of vital or security interests, or other lawful grounds.
Where SKARTIO acts as a Processor, the relevant customer determines the lawful basis for the underlying business processing unless law requires otherwise.
SKARTIO may provide AI assistants, agents, content generation, recommendations, knowledge retrieval, model routing, automated workflows and tool-enabled actions.
AI Interaction Data may be processed to provide the requested feature, maintain security, troubleshoot failures, evaluate quality, enforce usage policies and improve the operation of SKARTIO Services.
SKARTIO may use different model families, service providers or private model infrastructure. Where a third-party model provider processes Personal Data on SKARTIO’s behalf, the provider is handled under applicable contractual and security controls.
Customers may upload documents, catalogs, policies, product information, FAQs, business records and other materials into knowledge or retrieval features. These materials may be indexed, transformed, embedded or otherwise processed to enable search, retrieval and AI-assisted responses.
Access to customer knowledge sources is governed by customer account permissions and applicable tenancy controls. Customers are responsible for ensuring they have lawful rights to upload and use such material.
Depending on the SKARTIO solution selected by a customer, the platform may process data relating to products, catalogs, orders, shoppers, leads, employees, learning, finance, partners, support, operations, websites, communications and other business functions.
SKARTIO does not independently determine the business purpose for customer-controlled records merely because they are hosted on SKARTIO. Customers are responsible for privacy notices, permissions, retention instructions and lawful processing associated with their business use.
SKARTIO may collect operational telemetry including authentication events, API requests, feature usage, system events, errors, performance metrics, network information, security events, audit records, capacity information and other diagnostic data.
This information supports service delivery, billing, reliability, troubleshooting, abuse prevention, fraud detection, threat detection, incident response, capacity planning and enforcement of service limits.
Where practical, SKARTIO may aggregate or de-identify telemetry for analytics, performance analysis and product improvement.
If you use a SKARTIO cybersecurity feature, scanner, monitoring agent, assessment service or security trial, we may process technical information about the authorized systems being evaluated, including host, network, endpoint, domain, configuration, event, vulnerability and security findings.
Security evaluation data may be used to provide the assessment, generate findings, investigate security events, maintain the integrity of the service and comply with lawful obligations.
Customers must only submit or scan systems they own, control or are expressly authorized to assess. Unauthorized third-party security testing is prohibited by the SKARTIO Terms of Service.
SKARTIO may collect billing contacts, invoice details, transaction references and payment-related information. Payment credentials may be processed by financial institutions, payment gateways or other payment providers.
SKARTIO may use payment and transaction information for invoicing, reconciliation, taxation, fraud prevention, charge management, customer support and compliance.
SKARTIO may send product updates, offers, event invitations, surveys and other promotional communications where permitted by law. You can opt out of promotional communications through the method provided in the message or through available preference settings.
Billing notices, account changes, legal notices, security alerts, service-impacting updates and other operational communications may be necessary for active accounts and may not be subject to marketing opt-out.
SKARTIO may use cookies, pixels, local storage, SDKs and similar technologies to operate websites and applications, remember preferences, maintain sessions, protect accounts, measure usage and support marketing where permitted.
| Type | Purpose |
|---|---|
| Essential | Authentication, security, sessions and core site functionality. |
| Functional | Preferences, chat, media and enhanced user experiences. |
| Analytics | Understanding website and application performance and usage. |
| Advertising | Marketing measurement, audience creation or targeted advertising where permitted. |
You may control non-essential cookies through available cookie settings, your browser or device. Disabling certain cookies may affect features. SKARTIO may honor Global Privacy Control or similar legally recognized signals where applicable and technically supported.
SKARTIO may disclose Personal Data to:
Service providers are expected to process Personal Data under applicable contractual, confidentiality, security and data-protection requirements.
Customers may choose to connect SKARTIO with third-party applications, marketplaces, payment providers, logistics systems, social platforms, AI services or other integrations.
Enabling an integration may allow the third party to receive Personal Data from SKARTIO or send information into SKARTIO. Third-party products are governed by their own privacy practices and terms.
SKARTIO may use automated systems to detect fraud, suspicious access, spam, abuse, security threats and other platform risks. Automated systems may also support recommendations, personalization, routing, classification or marketing where permitted.
Where applicable law provides a right concerning solely automated decisions with significant effects, you may request available information, human review or another remedy as required by law.
SKARTIO uses administrative, organizational and technical safeguards designed to protect Personal Data from unauthorized access, alteration, disclosure, loss or misuse.
Measures may include encryption in transit, access controls, authentication protections, logging, network controls, monitoring, backup procedures, vulnerability management, tenant isolation and other controls appropriate to the nature of the Services.
No security measure or transmission method can guarantee absolute security. Customers are responsible for protecting credentials, configuring users and permissions, securing integrations and following reasonable security practices.
SKARTIO maintains processes to investigate suspected security incidents and take appropriate remedial action. Where a Personal Data breach triggers legal or contractual notification obligations, SKARTIO will provide notifications in accordance with the applicable role, law and agreement.
Where SKARTIO acts as a Processor, SKARTIO may notify the relevant customer so that the customer can meet its own obligations to affected individuals or authorities.
SKARTIO retains Personal Data for as long as reasonably necessary for service delivery, account administration, support, security, fraud prevention, billing, legal obligations, dispute resolution, business continuity and other purposes described in this Policy.
Retention periods may differ by data category, solution, customer instruction, regulatory obligation, backup cycle and contractual requirement.
Customer-controlled data may be deleted or returned following account termination according to the applicable product capability, retention schedule, backup cycle and contractual terms. Some records may be retained where legally required or necessary to establish, exercise or defend legal claims.
SKARTIO may process or store Personal Data in countries other than the country in which it was collected, depending on cloud region, service configuration, customer choice, support operations and service providers.
Where applicable law requires transfer safeguards, SKARTIO may use approved contractual mechanisms, data-processing agreements, Standard Contractual Clauses, the UK International Data Transfer Addendum or other legally recognized measures.
Transfers involving Personal Data originating in India are handled subject to applicable Indian data-protection law, including any restrictions or requirements issued by the Government of India.
Depending on your jurisdiction, role and applicable law, you may have rights to:
SKARTIO may need to verify identity, authority and account relationship before fulfilling a request. Rights may be limited by law, security, confidentiality, legal obligations or the rights of others.
If you are a Shopper, employee, learner, lead, partner contact or other person whose information is controlled by a SKARTIO customer, you should normally submit your privacy request directly to that customer.
SKARTIO may assist the customer in responding where required by our agreement and applicable law, but SKARTIO may not be able to independently alter customer-controlled data without the customer’s instruction.
SKARTIO websites and business services are not intended to be independently used by children where such use is prohibited or requires parental authorization under applicable law.
SKARTIO does not knowingly seek to collect children’s Personal Data for its own direct marketing. Customers using SKARTIO to provide services involving children are responsible for determining applicable age, notice, consent and parental-authorization requirements.
If you believe Personal Data relating to a child has been processed unlawfully, contact SKARTIO Support so the matter can be investigated.
SKARTIO does not sell Personal Data in the ordinary meaning of selling personal information for monetary payment. Certain privacy laws may define “sale” or “sharing” more broadly, including some advertising or cross-context behavioral activities.
Where legally required, SKARTIO provides applicable choices regarding targeted advertising, profiling or legally defined sharing. SKARTIO does not intentionally use Sensitive Personal Data for targeted advertising in a manner prohibited by applicable law.
SKARTIO may disclose Personal Data to actual or prospective investors, acquirers, successors, lenders and advisers in connection with financing, mergers, acquisitions, restructuring, sale of assets, insolvency or other corporate transactions, subject to appropriate confidentiality and legal safeguards.
Customers that use SKARTIO to collect or process Personal Data are responsible for their own compliance with applicable privacy, employment, consumer, marketing and data-protection laws.
SKARTIO may update this Policy to reflect changes in our products, technology, legal requirements, security practices or business operations.
Where required, material changes will be communicated through the website, service, email or other appropriate method and additional consent will be obtained where applicable law requires it.
Questions about this Privacy Policy, privacy rights requests, complaints or concerns about how SKARTIO handles Personal Data can be directed to SKARTIO Support.
If applicable law requires SKARTIO to designate or publish additional privacy, grievance or data-protection contact details, those details should be maintained in the production version of this Policy and applicable account or privacy interfaces.
Ask what Personal Data SKARTIO controls about you and how it is being used, subject to applicable law.
Request correction or deletion where the relevant privacy law provides that right and no lawful retention exception applies.
Opt out of promotional communications and manage applicable cookie or advertising preferences.
Contact SKARTIO about a privacy concern or exercise a right to complain to an applicable authority where available.
For privacy requests, questions about Personal Data, AI data handling, customer-controlled data or cross-border processing, contact us through the channels below.