MASHINIi

NetSuite Inc..

N.US | Computer programming activities

NetSuite Inc. is a software company that provides cloud-based enterprise resource planning (ERP) solutions. Its offerings include software and services covering ERP, customer relationship management (CRM), professional services automation (PSA), and e-commerce. NetSuite's solutions are designed to h...Show More

Ethical Profile

Mixed.

Is NetSuite ethical? Recent reports suggest a significant vulnerability in NetSuite's Custom Record Types allegedly exposed sensitive customer data, including PII, addresses, and phone numbers, on thousands of e-commerce sites. This could allow unauthenticated users access via API endpoints. However, NetSuite maintains robust security certifications, including ISO 27001, PCI DSS, and SOC 2 Type 2, and adheres to the EU Cloud Code of Conduct. The company also employs encryption for data and offers multi-factor authentication. Information on AI ethics or bug bounty programs is not available.

Value Scores

Better Health for All0
-100100
Fair Money & Economic Opportunity0
-100100
Fair Pay & Worker Respect0
-100100
Fair Trade & Ethical Sourcing0
-100100
Honest & Fair Business-10
-100100
Kind to Animals0
-100100
No War, No Weapons20
-100100
Planet-Friendly Business0
-100100
Respect for Cultures & Communities-20
-100100
Safe & Smart Tech-20
-100100
Zero Waste & Sustainable Products-20
-100100

Better Health for All

0

NetSuite's ERP systems for healthcare significantly improve patient care, reduce errors, and enhance efficiency by unifying data, streamlining processes, and enabling collaboration, leading to better patient outcomes.

1
The company's software automates financial and administrative workflows, reducing the administrative burden on healthcare professionals and allowing them to focus on patient care, thereby strengthening workforce capacity.
2
NetSuite provides robust data protection features, including automated audit trails, role-based access controls, data encryption, threat monitoring, and multifactor authentication, supporting compliance with HIPAA and GDPR for sensitive patient data.
3
The company's products do not have direct safety implications for physical or mental health, nor do they carry health risks requiring disclosure. NetSuite does not offer health-related products requiring accessibility considerations, nor does its business model directly involve serving vulnerable populations with health needs or engaging in preventative health, treatment activities, or public health education. There is no evidence of NetSuite having specific health equity or mental health initiatives, or direct involvement in global health crisis response. As a software company, it does not hold healthcare-related patents, produce food or nutritional products, or conduct clinical trials, and its products do not have addiction potential. There is no quantifiable evidence of NetSuite's R&D or capital allocation aimed at improving health outcomes and accessibility, and no significant health externalities from its operations are evidenced.

Fair Money & Economic Opportunity

0

NetSuite Inc. is an ERP software company, providing cloud-based enterprise resource planning solutions. The 'Fair Money & Economic Opportunity' value and its associated KPIs are designed to assess financial institutions that lend, insure, move, or store money for consumers. For each KPI, the rubric includes a '0' tier for companies whose core business lies outside financial services or that do not offer consumer financial products. The provided articles contain no evidence that NetSuite Inc. directly offers consumer lending, deposit services, or other financial products that would make these KPIs applicable beyond the '0' tier. Mentions of pricing or fees relate to NetSuite's ERP implementation services or features for its business customers to manage their own invoices, not consumer financial products. Initiatives discussed are either internal diversity and inclusion efforts or activities of NetSuite's customers, not NetSuite's own financial inclusion programs.

Fair Pay & Worker Respect

0

No specific, quantitative data for NetSuite Inc. was found in the provided articles for any of the requested KPIs. Information regarding Oracle Corporation or its specific subsidiaries/regions (e.g., Oracle Global Services Limited UK

1
, Oracle's offices in India, Dubai, and Abu Dhabi
2
) could not be applied to NetSuite Inc. as a whole, as the articles did not explicitly state company-wide scope for NetSuite Inc. Additionally, data for 'N.US (NU Skin Enterprises, Inc.)' was identified
3
but is not relevant to 'N.US (NetSuite Inc.)'.

Fair Trade & Ethical Sourcing

0

No specific, quantifiable data for N.US (NetSuite Inc.) was found across any of the Fair Trade & Ethical Sourcing KPIs in the provided articles. The articles discuss general industry trends, regulatory requirements, and the importance of ethical supply chain practices, often referencing other companies or Oracle (NetSuite's parent company), but do not provide concrete evidence of N.US's performance on fair trade certifications, audit frequency, forced/child labor incidents, traceability coverage, remediation speed, ethical clause coverage, materials risk, or supplier diversity spend.

Honest & Fair Business

-10

NetSuite's parent company, Oracle, maintains a Code of Ethics and Business Conduct from 2017 that applies to all personnel.

1
This code includes a "no tolerance" policy for corruption and bribery, explicitly prohibiting direct or indirect bribery of government officials and facilitation payments.
2
It also requires partners and suppliers to comply with anti-corruption laws globally.
3
Oracle has a formal whistleblower policy that prohibits retaliation against any employee who raises a compliance issue in good faith or cooperates with an investigation.
4
This policy is supported by a 24/7 Integrity Helpline with specific numbers for USA and EU.
5

Kind to Animals

0

NetSuite Inc. is a software company that provides cloud-based enterprise resource planning (ERP) solutions. Its core business model is service-oriented and does not involve animal-derived products, animal testing, animal husbandry, or direct impact on wildlife habitats. Therefore, all KPIs related to 'Kind to Animals' are not applicable to its direct operations or product lines, aligning with the 'N/A' criteria in the rubric for service-oriented companies without relevant activities.

No War, No Weapons

20

Oracle, NetSuite's parent company, is an active member of the Responsible Business Alliance (RBA)

1
and requires its business partners and suppliers to prohibit child labor, prison/forced labor, and physical punishment
2
. Oracle also states it universally respects recognized human rights throughout its operations
3
, with RBA membership implying third-party assurance of performance
4
.

Planet-Friendly Business

0

The assessment is for N.US (NetSuite Inc.). The provided articles either discuss the environmental performance of its parent company, Oracle, or explicitly state that specific environmental data for NetSuite Inc. is unavailable. No article provides concrete, quantitative data points directly attributable to NetSuite Inc.'s own operations for any of the KPIs in the rubric. Therefore, all KPIs must be omitted due to a lack of direct evidence for the assessed company.

Respect for Cultures & Communities

-20

NetSuite.org, a division of NetSuite, provides software grants to nonprofits

1
, including three organizations that serve indigenous or local community groups: Cartwheel Foundation, which focuses on nurturing indigenous Filipino heritage
2
; Virlanie Foundation, which serves children in residential homes
3
; and Hapinoy, which works with micro-entrepreneurs in the Philippines
4
.

Safe & Smart Tech

-20

A critical vulnerability, identified in August 2024, allowed unauthenticated users to access sensitive customer PII on thousands of NetSuite SuiteCommerce websites due to misconfigured access controls.

1
This represents a significant incident of unauthorized data access and points to below-average authentication security. While a fix for a related method was implemented, NetSuite does not provide easily accessible transaction logs, making it difficult for customers to detect exploitation, indicating moderate vulnerability management.
2
Despite these issues, NetSuite maintains a strong regulatory compliance program, adhering to CCPA, GDPR (via BCR-p), ISO 27001, ISO 27018, PCI DSS, PA-DSS, SOC 1 Type 2, SOC 2 Type 2, and the EU Cloud Code of Conduct.
3
The company uses industry-standard encryption.
4
, oversees privacy by design.
5
, and implements very good data minimization practices with short retention periods for operational data (30-90 days for some data, 1 year for facility visits).
6
Users are provided with good control over their data, including rights to opt-out, delete, change, object, and access personal information.
7
NetSuite also undergoes external SOC 1 Type 2 and SOC 2 Type 2 audits.
8

Zero Waste & Sustainable Products

-20

Oracle, NetSuite's parent company, recycles or reuses 99.4% of all processed hardware.

1
The company has achieved a 63% reduction in RE&F waste to landfill since 2015
2
and a 33% reduction in waste to landfill per square foot.
3
Oracle's waste management program includes recycling and composting at offices, employee awareness programs, and education on minimizing waste to landfill, and it supports local recycling kiosks in Nigeria.
4
Oracle has a 'Design for the Environment' program that enables engineers to consider environmental impacts, including recyclability, during hardware design, and Oracle Cloud promotes a circular economy by repurposing equipment.
5
For hazardous waste, Oracle partners with local compliance programs to collect and recycle waste portable batteries.
6
The company engages with indirect and direct suppliers to report data on their waste footprints and educates them about waste-related goals, and has an Excess and Obsolete (E&O) program for supplier materials.
7
Oracle provides customers with information on how to return products.
8

Own NetSuite Inc.?

Upload your portfolio and see how all your holdings score across 11 ethical dimensions.

Audit My Portfolio

AI-generated analysis based on publicly available data. Not financial advice. Ratings are expressions of opinion derived from automated models and may contain inaccuracies. See our Risk Disclosure for full details.