Security & data
Your account stays yours
You are connecting the account your livelihood runs through. Here is exactly what we do, what we never do, and how you take access away.
Official SP-API only
We are an Amazon Solution Provider Network partner. Authorisation happens inside your own Seller Central. No password sharing, no browser plugins, no screen-scraping.
Read-only until you approve
Nothing is written to your account until you tap approve on a specific action. Autopilot is off by default and always bounded by limits you set.
Revoke in one click
From inside MiniTaka or from Amazon’s own app permissions page. Revoking stops all reads immediately and your data is deleted within 30 days on request.
Your data stays in India
Stored in Indian regions, encrypted in transit and at rest. Never pooled with another seller’s data, never sold, never used to advise a competitor.
What we never do
- Never change a price without approval
- Never touch your payouts or bank details
- Never contact your buyers as you
- Never share your numbers with another seller
- Never train shared models on your account
- Never keep access after you revoke it
What we read
- Orders, listings, fees, settlements, ads and inventory reports
- Buyer names and addresses, only where an order needs shipping
- Your bank account, card or payout credentials
- Your Amazon password, at any point
Practices
- TLS 1.2+ in transit, AES-256 at rest
- Staff access only on need, fully logged
- Annual third-party penetration test
- SOC 2 readiness in progress
- Incident notice within 72 hours