How we handle your Amazon account.
Connecting Metrique to Seller Central is the first thing every brand worries about. Here’s exactly how the connection works, what we can see, and what we can never touch.
How authorization works
Your Amazon password never reaches us.
You
Click “Connect Amazon” inside Metrique
Amazon's login
You sign in on Amazon's own page — Login with Amazon
Scoped token
Amazon hands Metrique a limited, revocable refresh token
Metrique
We use that token to sync only the data your features need
We never ask for or store your Seller Central username or password — the entire handoff happens on Amazon’s own login page.
Scope of access
We only request what a feature actually needs.
Amazon splits access into individual permission “roles.” We request a role only when you turn on the feature that needs it — never broad access up front.
Orders
Order IDs, SKUs, ASINs, quantities and status — to build your sales reports.
Finance
Settlements, fees, reimbursements and tax reports — to power your margin math.
Inventory & Fulfillment
FBA stock levels and fulfillment centers — to track what's actually on hand.
Advertising
Campaign, keyword and search-term performance — only if you use the Ads modules.
Brand Analytics & Catalogue
Product titles, images and ASIN mappings — only if you use those modules.
What we do with this access
Read to report. Never act without you.
We do
Read order, financial, inventory and advertising data to build your reports
Act on Amazon only when you explicitly trigger it (e.g. rescheduling a pickup)
Store the minimum data needed to power your dashboards
Use your Amazon data solely to provide the Service to your organization
We don’t
Create, cancel, or modify orders on your behalf
Take automated or independent actions on your account without you
Sell, rent, or share your Amazon data with advertisers or data brokers
Use your Amazon data to train general-purpose or third-party AI models
Safeguards
Built to be revoked, not just secured.
Encrypted at rest
Refresh tokens and API secrets are encrypted with AES-256-GCM, never shown back to any user once submitted.
Encrypted in transit
Every connection between your device, our servers and Amazon's APIs runs over TLS.
Role-based access
Only the backend services that need your credentials to sync data can decrypt them — scoped to your organization.
Revoke in one click
Disconnect from Metrique settings or Seller Central any time — we stop syncing and delete the token immediately.
Want the full legal detail?
This page covers the plain-language version — the complete Privacy Policy has everything, section by section.