Trust & Data Security

How we handle your Amazon account.

Connecting Metrique to Seller Central is the first thing every brand worries about. Here’s exactly how the connection works, what we can see, and what we can never touch.

AES-256-GCM encrypted
TLS in transit, always
Revoke access anytime
We never see your password

How authorization works

Your Amazon password never reaches us.

You

Click “Connect Amazon” inside Metrique

Amazon's login

You sign in on Amazon's own page — Login with Amazon

Scoped token

Amazon hands Metrique a limited, revocable refresh token

Metrique

We use that token to sync only the data your features need

We never ask for or store your Seller Central username or password — the entire handoff happens on Amazon’s own login page.

Scope of access

We only request what a feature actually needs.

Amazon splits access into individual permission “roles.” We request a role only when you turn on the feature that needs it — never broad access up front.

Orders

Order IDs, SKUs, ASINs, quantities and status — to build your sales reports.

Finance

Settlements, fees, reimbursements and tax reports — to power your margin math.

Inventory & Fulfillment

FBA stock levels and fulfillment centers — to track what's actually on hand.

Advertising

Campaign, keyword and search-term performance — only if you use the Ads modules.

Brand Analytics & Catalogue

Product titles, images and ASIN mappings — only if you use those modules.

What we do with this access

Read to report. Never act without you.

We do

Read order, financial, inventory and advertising data to build your reports

Act on Amazon only when you explicitly trigger it (e.g. rescheduling a pickup)

Store the minimum data needed to power your dashboards

Use your Amazon data solely to provide the Service to your organization

We don’t

Create, cancel, or modify orders on your behalf

Take automated or independent actions on your account without you

Sell, rent, or share your Amazon data with advertisers or data brokers

Use your Amazon data to train general-purpose or third-party AI models

Safeguards

Built to be revoked, not just secured.

Encrypted at rest

Refresh tokens and API secrets are encrypted with AES-256-GCM, never shown back to any user once submitted.

Encrypted in transit

Every connection between your device, our servers and Amazon's APIs runs over TLS.

Role-based access

Only the backend services that need your credentials to sync data can decrypt them — scoped to your organization.

Revoke in one click

Disconnect from Metrique settings or Seller Central any time — we stop syncing and delete the token immediately.

Want the full legal detail?

This page covers the plain-language version — the complete Privacy Policy has everything, section by section.

Read the Privacy Policy