Data Security

Data Privacy & Security

Your data security is our priority. Here's how we protect the Amazon, Noon, and marketplace account data we operate on your behalf.

Our Commitment

Our Commitment

Saddl is built with enterprise-grade security and privacy controls. As your embedded operating team, we are entrusted with access to your marketplace, advertising, and settlement data which is business-critical and sensitive. Our systems and processes are designed to ensure that data remains secure, private, and under your control at all times.

SOC 2 Security Principles
256-bit Encryption
GDPR & CCPA Compliant
What Data We Access

What Data We Access

To operate your accounts, Saddl is granted operator-level access to your Seller Central, marketplace, and advertising accounts via the Amazon Selling Partner API (SP-API), the Amazon Advertising API, and equivalent interfaces on Noon and other marketplaces. This includes:

  • * Advertising Data: Campaign performance, search terms, targeting, bids, and campaign structure
  • * Inventory & Catalogue Data: SKUs, stock levels, listing content, and fulfilment status
  • * Order & Settlement Data: Order, fee, and settlement reports used to reconcile contribution margin and P&L
  • * Pricing & Performance Data: Pricing, Buy Box, returns, and account-health metrics

Important: We access this data solely to operate your accounts on your behalf. Where our work involves Amazon order or settlement data, any personally identifiable information (PII) is handled strictly in accordance with the Amazon Acceptable Use Policy and Data Protection Policy used only as required to operate the account, never sold, and never used to train third-party or competitor models.

How We Use Your Data

How We Use Your Data

Your account data is used exclusively to operate your business, for:

  • Advertising, inventory, pricing, and listing decisions
  • Contribution margin and P&L reconciliation
  • Forecasting and reorder planning
  • Reporting to you

We do NOT:

* Sell your data to third parties
* Use data to train competitor models
* Share metrics with competitors
* Access data for unauthorized purposes
Security Infrastructure

Security Infrastructure

Data Encryption

All data is encrypted both in transit and at rest using industry-standard AES-256 encryption. API connections use TLS 1.3 for secure data transmission.

Access Controls

  • Access restricted to authorized team members
  • Role-based access controls (RBAC)
  • Multi-factor authentication (MFA)
  • Automatic session timeout

Infrastructure Security

  • Secure cloud infrastructure via MSPs
  • Continuous monitoring & assessments
  • Automated vulnerability scanning
Security Incident Response

Security Incident Response

We maintain internal procedures to detect, investigate, and respond to security incidents. In the event of a confirmed incident involving Amazon Information, we will notify Amazon at [email protected] within 24 hours of detection and take immediate corrective action.

Regulatory Compliance

Regulatory Compliance

GDPR (EU Users)

Right to access, data portability, erasure. DPAs available upon request.

CCPA (California)

Transparent disclosure, right to delete, no sale of personal info.

Questions or Concerns?

Questions or Concerns?

If you have any questions about our data privacy practices, please contact us.

Email [email protected]

Last updated: July 2026