Privacy Policy

Last updated: 30 August 2026

Coased is a trading name of Nusmark Ltd, a company registered in England and Wales. This policy explains what data we handle, why, and the rights you have over it. If you have any questions, contact us at dhruv@coased.com.

Who we are

Coased provides supply chain and inventory analytics software for consumer brands. Our platform connects to a brand's sales and fulfilment systems, brings the data into a single view, and helps the brand's team decide what stock to move, make, or reorder. For the purposes of UK data protection law, Nusmark Ltd is the data controller for account and website data, and acts as a data processor for the business data a customer connects to the platform.

What data we access

Customer business data. When a customer connects their systems, we access operational business data such as inventory levels, units sold, order counts, product identifiers, and fulfilment status. We access this data only for accounts the customer has explicitly authorised, and only to the extent needed to provide the analytics described above.

Connected commerce platforms. Where a customer authorises us to connect a commerce platform - an Amazon selling account through the Amazon Selling Partner API (SP-API), a Shopify store, a TikTok Shop account, or a retailer or EDI feed carrying purchase orders, forecasts, and store sell-through - we use that access on a read-only basis to retrieve inventory levels and aggregated sales and order metrics. On none of them do we create or edit listings, change pricing, contact buyers, generate shipping labels, or place or modify orders. We access a connected platform's data only for the authorised seller or account owner who owns it, and we surface it only back to that owner. Data retrieved through SP-API is referred to in this policy as Amazon Information.

Account and website data. We collect basic information needed to run the service and communicate with customers, such as names, work email addresses, and account settings, along with standard website and security logs.

How we use data

We use customer business data and Amazon Information solely to provide the analytics service to the customer who owns that data: calculating stock cover, flagging stock risks, detecting demand changes, and recommending stock actions. We use account and website data to operate, secure, and support the service.

We do not sell, rent, or share customer business data or Amazon Information with any third party for their own purposes. We do not use one customer's business data or Amazon Information to serve another customer.

Product development

We may use general, aggregated, and de-identified insights about how the platform is used to improve our software and to build new features and modules. Any views, tools, templates, or modules we demonstrate to other prospective or existing customers use synthetic or anonymised sample data only. We never expose a customer's actual business data, Amazon Information, or credentials to any other party.

Service providers

We use reputable cloud infrastructure providers (for hosting, compute, and storage) to run the platform. These providers act as our processors under their own data protection terms and may only handle data to provide infrastructure to us. They are not permitted to use customer data for their own purposes.

Where data is stored

Customer data is processed and stored on managed cloud infrastructure located in the United Kingdom and the United States. Where data moves between those locations, we rely on the transfer safeguards required by UK data protection law.

How we protect data

We restrict access to customer data and credentials to named personnel who need it to deliver the service. Data is encrypted in transit. Credentials and access keys are stored using secure, access-controlled storage and are never placed in public code repositories, shared over insecure channels, or hard-coded into applications. We maintain an incident response process and, where required, will report security incidents involving Amazon Information to Amazon within the timeframe set out in Amazon's policies.

Your rights and control

Customers can revoke our access to any connected system at any time from their own side (for example, by revoking the relevant API authorisation or key), and can ask us to delete the business data associated with their account. To make a request, or to exercise your rights under UK data protection law, contact dhruv@coased.com. Where we hold personal data, you have rights including access, correction, deletion, and objection, and you may complain to the Information Commissioner's Office (ICO). We assist our customers, and the platforms they connect, in responding to data subject requests to access, correct, or delete personal data.

Data retention

We retain customer business data only for as long as needed to provide the service, and delete or anonymise it on request or when an account is closed, subject to any legal retention obligations. Amazon Information is retained only as long as necessary to provide the service to the authorised seller, in line with Amazon's data protection requirements. On the end of a customer relationship, all collected customer data in our possession is deleted, subject to any legal retention obligations.

Changes to this policy

We may update this policy as the service evolves. Material changes will be reflected here with an updated date.

Contact

Nusmark Ltd (trading as Coased)
Email: dhruv@coased.com