Compliance frameworks, security audits, and quality certifications this company maintains.
Lowe's maintains PCI DSS Level 1 certification for its in-store, online, and Pro payment processing infrastructure, protecting credit, debit, and commercial payment card data across all retail and contractor transactions.
Lowe's e-commerce platform and supply chain management systems undergo SOC 2 Type II audits, ensuring the security and availability of supplier portals, vendor data, and Lowes.com customer information.
Lowe's holds ISO 14001 environmental management certification at distribution centers and import logistics operations, managing packaging waste, energy consumption, and chemical handling in its supply chain.
Environmental
GRI Standards
CompliantLowe's publishes an annual ESG Report aligned with GRI Standards, disclosing carbon emissions, water use, packaging reduction, and responsible sourcing data across its U.S. and Canadian operations.
Lowe's distribution centers participate in OSHA's Voluntary Protection Programs, implementing comprehensive safety management systems for associates handling heavy building materials, lumber, and power tools.
Lowe's stores are designed to ADA accessibility standards with wide aisles, accessible checkout lanes, and assistive technology, while Lowes.com meets WCAG guidelines for customers with disabilities.
Lowe's complies with CCPA, providing California customers with rights to access and delete personal data collected through MyLowe's rewards, the Lowe's app, and Lowes.com purchase history.
Lowe's store design and installation services comply with ANSI A117.1 accessibility standards for commercial facilities, ensuring building products sold and installed meet accessibility requirements for residential and commercial projects.
Lowes applies ISO 9001 quality management practices across its private-label product lines and supply chain operations, ensuring consistent quality standards for the home improvement products sold across its 1,700+ stores.
Lowes complies with GDPR for data collected from customers in EU markets and through its international supplier relationships, implementing data minimization and consent management practices across its digital and in-store platforms.