Security and data

The short version of the privacy policy and terms, in the order a seller asks.

Where your data lives

AWS Mumbai (ap-south-1). Nothing is replicated outside India; DPDP data localisation is a design constraint, not a setting.

Isolation

Every table is row-level-secured to your workspace and the application filters on it again. A query that forgets your workspace returns nothing, not someone else's rows.

Encryption

TLS 1.2+ in transit. Storage encrypted at rest. Marketplace tokens and buyer names and addresses are additionally encrypted with a key that belongs to your workspace.

Buyer details

Erased 30 days after an order reaches a final state — the limit Amazon's Data Protection Policy sets, applied to every channel. Every read before then is an audited disclosure naming who and why.

Your account

12+ character passwords with a 365-day expiry, email codes on sign-in, lockout after five wrong attempts. Staff must use an authenticator app.

Support access

A support engineer can only open your dashboard read-only, in a session you see a banner for, that is written to your audit log and expires on its own.

AI

Buyer details are redacted before any model call; your catalogue is never training data; the tools the assistant may call are allow-listed.

Leaving

Orders, listings, settlements and the audit log are exportable while the account exists. Deletion removes tokens immediately and data within 30 days, except invoices GST law requires us to keep.