Authentication
Merchant access uses authenticated email and password sign-in with protected dashboard routes.
Security
Sellentum is built on a simple safety principle: product selection stays deterministic and server-side, AI only explains selected product facts, and public widgets never receive dashboard secrets.
Merchant access uses authenticated email and password sign-in with protected dashboard routes.
Workspace data is isolated with row-level security policies and server-side routes for public runtimes.
Embedded experiences load published data server-side and return shopper-safe payloads instead of raw merchant logic.
Production verification, data-contract checks and runtime operations help prove launch readiness before traffic scales.
Data we receive
This list is checked against our code by an automated test, so it cannot quietly go out of date. The same list is available as data at /api/v1/data-manifest.
From: Shoppers' browsers, through the Sellentum search, finder or assistant on your store
We receive
We never receive
Why: Choose and explain products, and show you reports on what shoppers look for
How long: Kept while your account exists and deleted with it. Search caches keep only a one-way code of the words and are not used after 7 days. Abuse counters reset within a day.
From: You: store sync, product feeds, file uploads, manuals and your own edits
We receive
We never receive
Why: Understand your products so rules can choose them and AI can explain them
How long: Kept while your account exists and deleted with it. Your original product text is kept beside anything Sellentum adds.
From: Your store platform, after you approve the connection
We receive
We never receive
Why: Keep your catalog in step with your store
How long: Kept while the connection exists. Access keys are stored separately and never sent to a browser.
From: You and your payment provider
We receive
We never receive
Why: Run your account, bill correctly and answer you
How long: Kept while your account exists and deleted with it, except where the law requires billing records to be kept.
From: Sellentum's own systems
We receive
We never receive
Why: Find faults, stop abuse and keep an audit trail
How long: Kept while needed to run and secure the service.
If you believe you have found a security issue, email a clear report with affected URLs, reproduction steps and impact. Please report privately and give us a reasonable chance to fix it first — do not post exploit details, proof-of-concept code or affected data publicly. Our machine-readable contact is at /.well-known/security.txt.
Report an issueRoadmap
Controls such as SSO, advanced audit logs, granular team permissions and formal compliance reports are on the roadmap. They are added once the core guided-selling workflow is production-proven, so the foundation stays solid first.
How selection stays deterministic