1. Introduction
Shelfmark, Inc. ("the Company," "we," "us," or "our") operates sheifmark.com (the "Service"), a B2B platform that delivers AI-powered production intelligence for continuous-flow manufacturing operations. This Privacy Policy describes what personal information we collect through the Service, why we collect it, how we protect it, and the rights you have. It applies to information gathered through sheifmark.com and through direct communications with us.
We are based at 4620 Henry Street, Suite 200, Pittsburgh, PA 15213, and can be reached at [email protected].
2. Information We Collect
2.1 Account and Contact Information
We collect information you submit directly, including:
- Contact details (name, company, email, phone, role) when you fill out a pilot inquiry form, contact form, or register for a platform account;
- Company and operational context you share (facility type, production process, number of lines) in connection with a pilot or sales discussion;
- The content of any messages you send us directly.
2.2 Information Collected Automatically
When you visit sheifmark.com, we automatically collect limited technical information:
- IP address and approximate location (city and region level);
- Browser type, operating system, and device class;
- Pages visited, referring URLs, and session duration;
- Cookie and similar tracking identifiers (see Section 5 and our Cookie Policy).
2.3 Production and Operational Data
When your organization uses the Shelfmark platform, operators and plant engineers submit production telemetry, sensor time-series readings, and machine vision data to the Service for continuous defect analysis. This factory-floor operational data belongs to your manufacturing organization and is governed by the data processing terms in your platform agreement with us. It is not personal data in the consumer sense. For purposes of this Privacy Policy, "personal information" refers to data about identifiable individuals (such as account holders and contact-form submitters), not to anonymized machine readings, line telemetry, or vision frames.
We do not use line telemetry, sensor data, or vision data submitted by platform operators to train, fine-tune, or benchmark our AI models without the explicit written consent of the data-owning organization.
2.4 We Do Not Knowingly Collect Children's Data
sheifmark.com is a business-to-business platform not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us information, contact [email protected] and we will delete it promptly.
3. How We Use Information
We use the information we collect to:
- Respond to pilot inquiries, sales discussions, and support requests;
- Create and manage operator and engineer accounts on the platform;
- Operate, maintain, and improve the Service and the underlying detection models;
- Send service updates, onboarding communications, and (with your consent where required) marketing messages;
- Detect, investigate, and prevent fraud, abuse, or unauthorized access;
- Comply with applicable legal obligations.
We do not sell personal information for monetary value. Where applicable state law treats certain advertising arrangements as a "sale" or "share," see your state's section below.
4. Sharing of Information
We share personal information only with:
- Service providers acting on our behalf (for example, hosting infrastructure, email delivery, and analytics tools) under contractual confidentiality terms that restrict their use of the data;
- Our angel investors and board observers, to the limited extent required for financial reporting and governance obligations, under confidentiality commitments;
- Law enforcement or regulatory authorities, when required by law or court order, or to protect the rights, safety, or property of the Company or others;
- A successor entity in the event of a merger, acquisition, or asset sale, subject to this Policy.
We do not sell personal information to third parties. We do not share production or factory-floor operational data with any party outside of direct service delivery without written authorization from the owning organization.
5. Cookies and Tracking
We use cookies and similar technologies to operate the site, maintain session state for platform accounts, and measure website usage. For a full description of the cookies we use and your opt-out options, see our Cookie Policy.
6. Data Retention
We retain personal information only as long as needed for the purposes described in this Policy, to satisfy legal or accounting obligations, and to resolve disputes. Specifically:
- Inactive marketing-list contacts are purged after 24 months of no engagement;
- Web server access logs are retained for 90 days, then aggregated and anonymized;
- Platform operator account data is retained for the duration of the active subscription plus a reasonable wind-down period, after which it is deleted or anonymized on written request;
- Contact form submissions are retained for up to 24 months or until the related inquiry is resolved, whichever is shorter.
7. Security
We use administrative, technical, and physical safeguards to protect personal information. These include TLS encryption for data in transit, restricted-access databases, and least-privilege access controls on production systems. Platform customers may also choose on-premises or edge-inference deployment options, in which case factory-floor data does not transit our cloud infrastructure. No security system is perfectly secure; we cannot guarantee absolute protection against all threats.
8. Your General Rights
Depending on your jurisdiction, you may have rights including the right to know what information we hold about you, the right to request correction or deletion, and the right to limit certain types of processing. To exercise any of these rights, email [email protected] with a description of your request and sufficient detail for us to verify your identity. We will respond within the timeframe required by applicable law.
9. Pennsylvania Residents
Pennsylvania does not currently have a comprehensive consumer privacy statute. As a matter of policy, we extend the following baseline rights to all U.S. residents regardless of state of residence.
9.1 Baseline Rights
- Right to Know: request the categories of personal information we have collected about you.
- Right to Delete: request deletion of personal information you have provided.
- Right to Correct: request correction of inaccurate personal information.
- Right to Opt Out of Marketing: unsubscribe from marketing emails or opt out via the link in each marketing message.
9.2 How to Exercise
Email [email protected] with a description of your request and enough detail for us to verify your identity. We respond within 45 days.
9.3 Sector-Specific Rights
If you are protected by federal sector laws (for example, HIPAA, GLBA, or FERPA), those laws may give you additional rights with respect to data covered by them.
9.4 California Visitors
If you are a California resident, you may also exercise the rights granted under the California Consumer Privacy Act ("CCPA") and California Privacy Rights Act ("CPRA"), including the right to know, the right to delete, the right to correct, and the right to opt out of sale or sharing. We do not sell personal information and do not "share" personal information for cross-context behavioral advertising.
To submit a CCPA or CPRA request, email [email protected] with the subject line "California Privacy Request."
10. Changes to This Policy
We may update this Policy from time to time. Material changes will be reflected by a new "Last updated" date and, where appropriate, a notice on the Service. Continued use of the Service after a change takes effect constitutes acceptance of the revised Policy.
11. Contact
Questions, requests, or complaints about this Policy can be sent to:
Shelfmark, Inc.4620 Henry Street, Suite 200
Pittsburgh, PA 15213
Email: [email protected]
Phone: +1 (412) 553-1860