1. Introduction
Beddora ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Amazon Selling Partner API (SP-API) integration services.
2. Information We Collect
2.1 Amazon SP-API Data
When you connect your Amazon Seller Central account, we collect:
- Order information (order IDs, dates, amounts, customer information)
- Product data (ASINs, SKUs, titles, prices, inventory levels)
- Financial data (fees, settlements, refunds, reimbursements)
- Advertising data (PPC campaigns, keywords, performance metrics)
- Inventory data (FBA inventory levels, inbound shipments, reserved quantities)
- Listing data (product listings, buy box status, competitor information)
2.2 Authentication Credentials
We securely store and encrypt:
- LWA (Login with Amazon) Client ID and Client Secret
- Refresh tokens (encrypted using AES-256-CBC)
- IAM role ARN for AWS authentication
2.3 Account Information
We collect account information including:
- Amazon Seller ID
- Marketplace IDs
- Account status and connection metadata
3. How We Use Your Information
We use the collected information to:
- Provide Amazon SP-API integration services
- Sync and process your Amazon seller data
- Generate reports, analytics, and insights
- Manage your account and provide customer support
- Comply with legal obligations and Amazon's requirements
- Improve our services and develop new features
4. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information. We may share data only:
- With Amazon: As required by the SP-API terms of service and for API authentication
- Service Providers: With trusted third-party services that help us operate our platform (hosting, analytics, customer support)
- Legal Requirements: When required by law, court order, or government regulation
- Business Transfers: In connection with a merger, acquisition, or sale of assets
5. Data Security
We implement industry-standard security measures:
- Encryption: All sensitive data (tokens, secrets) are encrypted using AES-256-CBC before storage
- Access Controls: Multi-seller isolation ensures your data is only accessible to your account
- Secure Transmission: All API communications use HTTPS/TLS encryption
- Token Management: Secure token storage with automatic rotation and expiration handling
- Audit Logging: Comprehensive audit logs for all credential and data access operations
6. Data Retention
We retain your data for as long as necessary to provide our services and comply with legal obligations. You can request data deletion at any time (see Data Deletion Policy).
- Active account data: Retained while your account is active
- Historical sync data: Retained for up to 2 years for reporting purposes
- Account credentials: Retained until account disconnection
- Audit logs: Retained for 1 year for security and compliance
7. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request data deletion
- Disconnect your Amazon account at any time
- Export your data
- Opt-out of certain data processing
8. Amazon SP-API Compliance
Our use of Amazon SP-API data complies with Amazon's Selling Partner API Developer Guide and Data Protection Policy. We:
- Only access data necessary for providing our services
- Do not share Amazon data with unauthorized third parties
- Implement security measures required by Amazon
- Respect rate limits and API usage guidelines
- Handle token rotation and refresh securely
9. Cookies and Tracking
We use cookies and similar technologies to provide, maintain, and improve our services. You can control cookies through your browser settings.
10. Children's Privacy
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.
11. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us: