Privacy Policy

Last updated: March 24, 2026

1. Information We Collect

We collect only the information necessary to provide our Service:

  • Account information: Email address, name, and organization name when you create an account.
  • Product data: Product names, barcodes, storage locations, and associated Safety Data Sheet files that you add to your binder.
  • SDS files: Safety Data Sheet documents you upload or that we retrieve on your behalf.
  • Usage data: Basic analytics such as pages visited and features used, to improve the Service.
  • Payment information: Processed securely by our payment provider (Stripe). We do not store credit card numbers.

2. How We Use Your Data

Your data is used solely for service delivery:

  • Providing and maintaining the SDS management Service.
  • Sending account-related notifications (e.g., SDS updates, billing confirmations).
  • Generating compliance reports you request.
  • Improving Service performance and reliability.
  • Responding to support requests.

3. Data Sharing

We do not sell, rent, or trade your personal information or SDS data to third parties. We may share data only in the following cases:

  • Service providers: With trusted third parties that help us operate the Service (e.g., hosting, payment processing), bound by confidentiality agreements.
  • Legal requirements: If required by law, subpoena, or court order.
  • Business transfer: In the event of a merger, acquisition, or sale of assets, with prior notice to you.

4. Data Storage and Security

Your data is stored on secure servers in the United States, powered by Supabase. We use encryption in transit (TLS 1.2+) and at rest. Access to production data is restricted to authorized personnel only. We perform regular backups to prevent data loss.

5. Data Retention

We retain your data for as long as your account is active. If you delete your account, we will remove your personal information and SDS data within 30 days, except where retention is required by law (e.g., billing records). Anonymous, aggregated analytics data may be retained indefinitely.

6. Your Rights

You have the right to:

  • Access your data at any time through your dashboard.
  • Export all your products and SDS files as a downloadable archive.
  • Delete your account and all associated data.
  • Correct inaccurate information in your account settings.
  • Object to data processing by contacting us.

To exercise any of these rights, email us at support@mysdsmanager.com.

7. Cookies

We use minimal cookies, strictly for authentication and session management. We do not use tracking cookies or third-party advertising cookies. No cookie consent banner is required because our cookies are essential to the Service's functionality.

8. Children's Privacy

The Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or an in-app notice at least 14 days before they take effect.

10. Contact

For privacy-related questions or requests, contact us at support@mysdsmanager.com.