Locus
By Mara Labs Inc
Initial Consultation and Requirement Gathering: Project scope, workflow requirements, and integration needs with existing TMS, WMS, OMS, or ERP systems are mapped out in detail.
Solution Design and Custom Configuration
The Locus team configures the modular, API-first platform to match the client’s hierarchy and operational structure. Future changes can be handled internally or with Locus support.
Documentation is created for all customizations and unique configurations.
Legacy data is migrated (if needed), issues with older data are resolved, and all datasets are validated for consistency and readiness.
Integration and Testing: Secure API connections and real-time data exchanges are set up with core business systems. System testing ensures all integrations work as designed and any potential hurdles are addressed before going live.
User Training and Onboarding: Teams are onboarded to the Locus platform with hands-on training, walkthroughs, and access to detailed documentation.
Locus is engineered as a highly modular, API-first logistics solution that prioritizes customization and adaptability for a wide range of enterprise scenarios. Here are the key data points illustrating how Locus can be tailored to fit specific business requirements:
Customizable Modules: The platform offers discrete, configurable modules (e.g., dispatch planning, hub operations, orchestration) that can be enabled, disabled, or re-ordered to match distinct workflows.
API-First Integrations: Locus supports seamless, rapid integration with TMS, WMS, OMS, ERP, CRM, and business intelligence systems through robust APIs, ensuring interoperability with custom and legacy software stacks.
No-Code/Low-Code App Development: Power users and IT teams can build and deploy customized workflows, forms, and entire apps within the Locus environment, supporting non-standard business processes without coding or with minimal code.
Custom Queries and Reports: Users can create, save, and schedule personalized queries, dashboards, and reports, adjusting output columns, filters, and visualizations to individual or departmental needs.
Custom Data Views: Tailor which business or operational columns are displayed, filtered, or prioritized in every module, creating individualized data perspectives for different users or teams.
Open Data Model: Locus’s architecture accommodates diverse data structures, supporting integration and real-time data flow with external systems or proprietary databases.
Custom Data Mapping: The solution can map, transform, and automate data imports/exports in standard or bespoke formats such as XLS, CSV, EDD, and more.
Extensibility via Python or R: For advanced use cases, further extensibility is possible with custom connectors and scripts using Python or R to meet proprietary in-house requirements.
Customizable Dashboards: Each user or department can design dashboards with the metrics, workflows, or notifications most relevant to their function.
Bookmarking and Shortcuts: Pages and workflows can be bookmarked or set as landing pages, speeding up access for frequent, role-based tasks.
Mobile-Enabled Custom Forms: Any workflow or custom form built on Locus can be instantly made available on mobile devices, supporting field operations and off-site data collection.
Event-Based Alerts: Users can define triggers for automated alerts, ensuring relevant teams are notified of issues, exceptions, or scheduled updates based on business logic.
Scheduled Reporting: Automated delivery of operational or compliance reports can be set up for internal or external stakeholders.
Sector-Specific Templates: Locus is used across retail, CPG, 3PL, healthcare, and industrial sectors, with configuration options for the distinct needs of each.
Customizable Geocoding and Routing: Smart geocoding and route optimization engines can be adapted to handle complex, industry-specific logistics scenarios.
Configuration Workbench: Admin users have access to a suite of tools for self-service app building, form design, workflow modification, and logic/rule setting, without vendor reliance for every change.
Role-Based Access Control: Custom access levels, roles, and authentication policies can be defined to fit organizational security requirements.
Proven Custom Deployments: Locus is deployed at over 200+ brands in 30+ countries, each leveraging different workflow customizations and integrations.
Locus offers a suite of training and support services designed to ensure new users can effectively implement and utilize its advanced logistics platform. The company’s approach combines structured onboarding, ongoing education, and responsive support, fostering long-term customer success.
Structured Onboarding: New users are guided through the onboarding process with hands-on, practical training. This typically includes classroom-style learning (in-person or virtual), e-learning modules, and engagement with real-world projects to help users quickly understand and apply the platform’s features.
Product and Workflow Training: Training covers core Locus functions such as dispatch planning, hub operations, capacity management, integration with existing systems (e.g., OMS, WMS, ERP), and analytics dashboards. The curriculum is adapted according to each client’s needs for relevance and effectiveness.
Locus employs a multi-layered, industry-certified approach to data protection, integrating advanced technical and organizational controls into its logistics platform:
ISO 27001:2022 Certified: Locus maintains a certified Information Security Management System, reflecting strong data security governance, risk management, and continuous security improvement.
ISO 27701:2019 Compliance: Certification demonstrates capabilities in protecting customer personal information and managing privacy risks.
SOC 2 Type II & SOC 3: Locus has completed independent audits verifying the effectiveness of its controls for data security, availability, and confidentiality. SOC 3 reports are publicly available as assurance to stakeholders.
GDPR Compliance: The platform’s data processing practices are independently validated and aligned with the General Data Protection Regulation, including comprehensive Data Protection Agreements on request.
Data Encryption: Data is encrypted both in transit (using TLS/SSL protocols) and at rest on secure servers, ensuring the confidentiality and integrity of all stored and transmitted information.
Access Controls: Strong authentication methods (unique usernames/passwords, session management, and possibly role-based controls) limit access to authorized personnel only.
Physical & Network Security: Locus is hosted on secure AWS infrastructure, leveraging firewalls, intrusion detection, session encryption, and multi-layered server protections to guard against external threats.
User Authentication: Each user receives a unique login; password security and session cookies are implemented with secure practices.
Regular Security Assessments: Security reviews, vulnerability scans, and audits help identify and address emerging threats, and protocols are updated as best practices evolve.
Data Governance: Strict internal policies govern data access, change management, and policy enforcement, mandating appropriate handling and continuous improvement in controls.
Data Minimization and Privacy by Design: Locus collects and processes only the necessary data for operations, following privacy-by-design principles.
Secure APIs: All integrations with external business systems occur via secure, authenticated APIs to prevent unauthorized data access.
End-User Privacy: Sensitive or regulated data (such as PCI, PHI, or minor information) is only processed with explicit authorization and contractual protection.
Locus delivers updates to its logistics platform several times a year. These updates typically include feature enhancements, performance improvements, bug fixes, security patches, and compliance upgrades. The company follows a cloud software model, ensuring that clients benefit from regular advancements and do not need to pay extra for routine update cycles.
Locus has established a vendor-managed, rolling upgrade program designed to minimize disruption and ensure that clients always operate with the latest, most secure system. Key aspects of their update management include:
Automatic Cloud Updates: Updates are automatically rolled out to all users, so the platform stays current without requiring manual intervention from customer IT teams.
Proactive Communication: Customers are notified about significant changes, new features, and upcoming system enhancements through official communications.
Release Transparency: Details about new features, fixes, and improvements are documented and made accessible to users, allowing businesses to anticipate changes relevant to their workflows.
Comprehensive QA and Testing: Each release goes through extensive quality assurance processes to ensure stability and compatibility with various integrations.
Seamless Rollout: Locus schedules updates on a cycle that aims to minimize system downtime and user disruptions, frequently leveraging non-peak hours or providing pre-defined maintenance windows.
Client Ownership of Data: Locus’s policy follows standard SaaS practices in which all data submitted by customers during the use of its online services remains the sole property of the customer. Locus does not claim ownership, and customers retain full intellectual property and legal rights to all data they submit or generate on the platform.
Locus Rights and Usage: Locus is granted only the non-exclusive, worldwide right to use, copy, store, transmit, and display customer data as necessary to provide the agreed-upon service. The platform will not use customer data for any other purposes without permission.
Responsibility: Customers are solely responsible for the accuracy, quality, legality, and reliability of their data. Locus is absolved from any liability for loss, deletion, or correction of data caused by customer actions or breach of contract.
Protection of Data: Data access within Locus is restricted to authorized employees and agents who have a genuine need to know and are bound by confidentiality and platform controls.
Right to Data Export: Upon termination of service or at the client’s request, Locus will make customer data available for export in a structured, machine-readable format, typically CSV with attachments in their native format. This ensures that customers can transfer their data to other platforms or retain operational continuity if they leave Locus.
Data Export Timeline: After service termination, Locus provides a data export within a specific time window (commonly within 20 business days from customer notice of readiness), with all necessary data included for portability.
Security in Data Transfer: Exported data is delivered securely to the client and is only purged from Locus systems after written acknowledgment from the client that the export is complete and backup copies are no longer needed.
Locus is designed as a modular, API-first SaaS logistics platform with flexibility at its core, allowing organizations to scale up or down based on their operational requirements. Here are the key aspects of how Locus addresses scalability:
Elastic Scalability: The cloud-based architecture of Locus allows automatic and seamless scaling, so organizations can increase or decrease users, functionalities, shipment volumes, and integrations without redeployment or major technical changes.
Resource Usage: The platform uses autoscaling technologies to adjust server resources dynamically according to real-time operational demand, ensuring efficiency and cost-effectiveness.
Subscription Model: Locus typically operates on a subscription (SaaS) basis, where customers can adjust the scope of service according to their current size and usage, with licensing often reflecting active users, transaction volume, or selected features.
Scaling Up: As your organization grows, you can add new modules (such as dispatch planning, hub operations, orchestration), increase user seats, integrate additional carriers or business lines, and expand to new geographies, all within your existing contract structure or through a straightforward amendment.
Scaling Down: If operational needs decrease—for example, during off-peak periods—organizations can scale back user licenses, modules, or features at renewal or sometimes with mid-term adjustments, depending on contractual terms.
No Service Disruption: Scale adjustments (up or down) are performed without service interruption due to the underlying SaaS and multi-tenant infrastructure.
Self-Service Configuration: Admin users often have rights to adjust many operational parameters within the platform interface, while major scale changes (e.g., lowering subscription tier) may require contact with customer success or account management for formal processing.
Dynamic Load Handling: The Locus platform auto-adjusts for peak demand—such as seasonal spikes—by allocating extra computational resources or enabling additional features temporarily, then scaling back after demand drops.
Automatic Renewal: Locus subscriptions automatically renew at the end of each initial term (monthly, quarterly, or yearly, as specified in your agreement), unless either party provides a formal cancellation notice before the renewal date.
Renewal Notice Period: To avoid automatic renewal, written notice of cancellation or intent to reduce the service level must be provided at least 30 days before the end of the current term.
Service Term Duration: Renewal terms are typically the same length as the original term (e.g., another year for an annual contract), unless otherwise agreed in the order form. Add-on modules or features generally follow the term of the primary subscription.
Billing & Payment: Renewal is invoiced or charged in advance for the new term, according to the payment method specified (credit card, purchase order, etc.). Fees are non-cancellable and non-refundable for the renewed period.
Price Changes: Unless stated otherwise, renewal occurs under the same pricing and terms as the prior term unless updated contractually or due to advance notification by Locus.
Cancellation Process:
Customers may cancel or reduce service levels by submitting a written notice at least 30 days before the end of the then-current contract term.
For free trials, service notifications showing remaining trial days may serve as notice of the impending end of services.
Billing After Cancellation Notice:
Upon giving notice, you will continue to be billed at the current service level for one month after the notice date.
No refunds are provided for prepaid charges covering the period after that one-month window post-notification.
No Early Termination: During the committed term, cancellation for convenience (without cause) is typically not permitted; the contract may only be terminated for a material breach that is not remedied after notice.
Termination for Cause:
Locus may terminate for non-payment, breach of use guidelines, or unauthorized platform use, with customer access to data and services ceasing immediately following such violations.
Customers are obligated to pay any outstanding fees up to the effective termination date.
Data Return:
On proper termination (other than for breach), Locus will provide the customer a downloadable file of their data (typically in CSV format with attachments in their native form) within 20–30 days after the customer requests termination and confirms readiness to receive data.
Locus will permanently delete customer data after written confirmation of successful export and only when back-up copies are no longer needed by the client.
No Refund for Remaining Term:
Prepaid fees for the remaining contract period after the one-month window following notice are not refundable.
Amendments: Any modifications to these terms, contract duration, fees, or features must be in writing and agreed to by both parties through a revised order form or addendum.
Locus logistics software adheres to multiple internationally recognized data security and privacy compliance standards, ensuring robust protection and governance over client and operational data. Here are the compliance standards that Locus meets:
ISO 27001:2022: Locus is certified under ISO 27001, the gold standard for Information Security Management Systems (ISMS). This ensures rigorous management of data security risks and continual improvement of protective controls.
ISO 27701:2019: Compliance with ISO 27701 (an extension for privacy information management to ISO 27001) certifies Locus in best-practice privacy management, ensuring the platform securely processes customer and personal data.
SOC 2 Type II & SOC 3: Locus has completed independent System and Organization Controls (SOC) audits. SOC 2 Type II confirms the continuous operational effectiveness of controls concerning security, availability, and confidentiality, while SOC 3 provides public assurance of these controls' effectiveness.
GDPR Compliance: Locus follows the General Data Protection Regulation (GDPR), enabling clients—especially those handling European Union personal data—to operate in line with the world's most comprehensive privacy framework. All data processing is transparently structured to support privacy, data access, and data portability.
Data Encryption: Encryption is applied both in transit (TLS/SSL protocols) and at rest to meet best security and privacy requirements.
Access Control & Data Minimization: Strong authentication, strict user access policies, and privacy-by-design principles are enforced, aligning with requirements in ISO, GDPR, and industry standards for SaaS platforms.