Privacy Policy
Last updated: 19 July 2026
This policy explains how Eve SellerOps ("we", "us") collects, uses, stores, protects, shares and deletes information when you use the Eve SellerOps application and the eve-sellerops.com website. We act in accordance with the UK GDPR, the EU GDPR where applicable, and Amazon's Data Protection Policy for Selling Partner API applications.
1. Information we collect
Account information you provide.
- Name and email address when you create an account or invite a team member.
- A password, stored only as a salted cryptographic hash — we cannot read it.
- Messages you send us at contact@eve-sellerops.com.
Amazon selling data you authorise.
When you connect your Amazon Seller Central account through Amazon's consent flow, we access data about your own selling account via the Amazon Selling Partner API, including:
- Listing and catalogue data (SKUs, titles, prices, stock levels, listing status).
- Order and sales data (order totals, units, fees, refunds) used for performance analytics.
- Offer and pricing data on your listings, used for repricing and Buy Box analytics.
Business data you enter. Product costs, supplier details and workflow records you add inside the application.
Technical data. Standard server logs (IP address, browser type, timestamps) kept for security and troubleshooting.
We do not collect payment card details ourselves. Paid subscriptions are processed by our payment provider (Stripe), which handles card data under its own PCI-DSS-compliant systems; we receive only a reference to the subscription, never your card number.
2. How we use information
- To provide the application's features: catalogue sync, performance analytics, repricing, product research and workflows.
- To operate your subscription, including billing through our payment provider.
- To secure the service: authentication, permission enforcement, fraud and abuse prevention.
- To respond when you contact us for support.
What we never do: we never sell your data, never use one seller's data to provide insights or advice to another seller, never use Amazon data for advertising, and never contact Amazon buyers. Amazon data is used solely to provide the services described above to you.
3. How we store and protect information
- All traffic between your browser, our servers and Amazon uses TLS (HTTPS).
- Amazon API credentials and tokens are encrypted at rest using AES-256-GCM.
- Passwords are stored only as salted hashes using an industry-standard algorithm.
- Each customer organisation's data is logically isolated; access is enforced server-side on every request.
- Within your organisation, the account owner controls which areas each invited user can access.
- Access to production systems is restricted to authorised personnel and is logged.
4. How we share information
We share data only with service providers needed to run the application:
- Hosting providers that run our servers and databases.
- Stripe, for subscription payments.
- Amazon, in the sense that the application calls the Selling Partner API on your behalf under your authorisation.
Each provider processes data only on our instructions. We do not share your data with advertisers, data brokers or other sellers. We may disclose information if required by law.
5. How long we keep information and how it is deleted
- Account and business data are kept while your account is active.
- If you disconnect your Amazon authorisation, we stop retrieving Amazon data immediately; you can also revoke access directly in Seller Central at any time.
- If you close your account or ask us to, we delete your personal data and Amazon-derived data within 30 days, except where a legal obligation (for example, tax records relating to billing) requires longer retention of specific records.
- Backups are encrypted and expire on a rolling schedule; deleted data ages out of backups automatically.
6. Your rights
Under UK and EU data protection law you have the right to access, correct, export and delete your personal data, to restrict or object to processing, and to complain to a supervisory authority (in the UK, the Information Commissioner's Office). To exercise any of these rights, email contact@eve-sellerops.com — we respond within one month.
7. Cookies
The eve-sellerops.com website sets no advertising or analytics cookies. The application uses only strictly necessary cookies/tokens to keep you signed in securely.
8. Changes to this policy
If we make material changes we will update this page and, for significant changes, notify account holders by email before the change takes effect.
9. Contact
Data controller: Eve SellerOps (eve-sellerops.com).
Email: contact@eve-sellerops.com