Data Security at SellerBowl
SellerBowl is committed to protecting your data. Below is an overview of current public security practices, the Etsy OAuth authorization model, and the authorization model intended for a future Amazon SP-API integration.
Seller Authorization Model
SellerBowl’s planned Amazon integration is designed so that protected Amazon seller account information would be available only after the selling partner explicitly authorizes the connection through Amazon OAuth. SellerBowl does not ask for or store Amazon marketplace passwords. A production OAuth or SP-API connection is not currently represented as available.
Seller-Scoped Access
Amazon access is limited to the roles approved for the connected seller and the workflows that seller enables. Listing submissions and other Amazon actions require a clear seller-initiated approval step.
Etsy Authorization Model
When a seller connects an Etsy shop, access is granted only through Etsy’s official OAuth 2.0 flow and is scoped to the shop and OAuth scopes the seller grants. SellerBowl accesses Etsy shop data exclusively through the official Etsy Open API and does not screen-scrape Etsy or sidestep the API to retrieve or post Etsy data. Sellers can disconnect their Etsy shop at any time to revoke access. The term “Etsy” is a trademark of Etsy, Inc. This application uses the Etsy API but is not endorsed or certified by Etsy, Inc.
Data Source Separation
SellerBowl’s planned Amazon integration is designed to source protected Amazon seller account information only through the official Selling Partner API after approval, implementation, and seller OAuth authorization. Separate research tools may process user-provided inputs, licensed public-product observations, browser-visible product information, and SellerBowl calculations or estimates; these sources do not provide access to a connected seller account.
Transport and Account Controls
The public production website is served over HTTPS and uses account authentication and application access controls. Payment information is processed by Stripe rather than stored directly by SellerBowl.
Revocation and Deletion Requests
Sellers may revoke Amazon authorization through Amazon and request deletion of stored integration data by contacting help@sellerbowl.com. Requests are handled subject to applicable legal retention requirements.
Security and Incident Contact
Security concerns and suspected data incidents can be reported to help@sellerbowl.com. SellerBowl evaluates reports and provides notifications when required by applicable law or contractual obligations.
SellerBowl publishes only controls that can be tied to current implementation or operating procedures. Additional SP-API security controls remain subject to internal evidence review before they are represented as implemented.
Have security questions or need to report a concern?
help@sellerbowl.com