1. Who we are
Rajesh Wadhwa is an independent Amazon consultant based in India, trading under the registered business name RV Enterprises. Where this policy says "we", it means that same business. We provide reporting, catalogue optimisation and operational support to Amazon selling partners who have authorised us to act on their behalf.
For anything in this policy, contact Rajesh Wadhwa at rajeshwadhwa28@gmail.com or +91 91159 12229.
2. What information we handle
Amazon Information
Where a selling partner authorises us, we access their Amazon account data through Amazon's Selling Partner API. This is what Amazon's Data Protection Policy calls Amazon Information, and for us it consists of:
- Brand Analytics reporting, including search query performance, search terms, search catalogue performance, market basket analysis and repeat purchase behaviour, where Amazon makes these available to that selling partner
- Product and catalogue data, including ASINs, product titles, listing attributes and catalogue performance
- Inventory levels, order status and fulfilment state
- Offer and pricing data across the seller's catalogue
- Settlement, fee and transaction data used for financial reconciliation
- Account and marketplace identifiers that tell us which account and period a figure belongs to
We do not access buyer personally identifiable information. We do not request, retrieve, process or store buyer names, shipping or billing addresses, email addresses, telephone numbers, payment details or any other information that identifies an individual shopper. Our work uses aggregated and product-level reporting only.
Business contact information
Separately from Amazon Information, we hold ordinary business contact details for the people we work with, such as a name, company name, email address and telephone number. This is used to deliver the service, answer enquiries and issue invoices, and for nothing else. We do not sell it and we do not use it for unrelated marketing.
3. How we obtain it, and on what authority
All Amazon Information is obtained directly from Amazon through the Selling Partner API, under an authorisation the selling partner grants themselves through their own Amazon account. The only other route is a report the selling partner sends us directly.
We do not obtain Amazon Information from any external or non-Amazon source. We do not buy data, we do not scrape it, and we do not receive it from other agencies, tools or data brokers.
We never ask for a seller's Seller Central login details, and will not accept them if offered. Authorisation runs through Amazon's own consent process, which means the seller can see exactly what was granted and withdraw it without going through us.
4. What we use it for
We use Amazon Information solely to provide the service the selling partner has engaged us for. In practice that means:
- Producing reports on search query performance, catalogue performance, traffic and conversion
- Auditing listings and recommending changes to titles, bullets and attributes
- Keyword and product opportunity analysis
- Measuring whether a change we recommended improved sessions or conversion
- Monitoring stock cover, order flow and fulfilment status
- Checking price consistency and reconciling settlements, fees and margin
One seller's data is never used to serve another. We do not pool, aggregate, benchmark or combine data across selling partners. We do not use Amazon Information to build products, models, datasets or market research for anyone other than the selling partner it belongs to.
5. Who we share it with
Nobody. We do not share Amazon Information with any outside party, external organisation, sub-contractor, reseller or data broker. It stays within RV Enterprises and is used solely to service the specific authorised selling partner it came from.
The only circumstances in which we would disclose it are where we are legally required to do so by a competent authority, or where Amazon requires it under our agreements with Amazon. If we are ever compelled to disclose, we will tell the affected selling partner unless we are prohibited by law from doing so.
6. How we store and protect it
Access control
Access to Amazon Information is restricted according to job duties, on a least-privilege basis. Only personnel whose work requires a particular seller's data can reach it. Every person uses individually issued credentials. Access is reviewed when someone's role changes and removed when they leave.
Authentication
Accounts that can reach Amazon Information require multi-factor authentication. Passwords must be at least twelve characters and include special characters, expire after 365 days, and are rotated annually.
Credential handling
Credentials, encryption keys, secret access keys and API tokens are held in a secured store. They are never committed to public repositories, never shared between individuals, and never hard coded into applications.
Encryption
Amazon Information is encrypted in transit whenever it moves between systems, including when it is retrieved from Amazon.
Network security
We operate firewalls, intrusion detection and prevention, anti-virus and anti-malware protection, and network segmentation that separates systems handling Amazon Information from those that do not.
7. How long we keep it, and how it is deleted
We keep Amazon Information only for as long as it is needed to deliver the service the selling partner engaged us for.
- While an engagement is active, we retain report data for the periods being analysed, so that trends and before-and-after comparisons remain possible.
- When a selling partner revokes authorisation, we stop retrieving their data immediately.
- When an engagement ends, Amazon Information held for that selling partner is deleted within 30 days, unless the selling partner asks us in writing to retain it for longer, or we are legally required to keep it.
- On request at any time, a selling partner can ask us to delete the Amazon Information we hold for them. We will do so within 30 days and confirm in writing once it is done.
Deletion covers working copies and backups. Business contact details are kept separately and are deleted on request.
8. Your control over access
Authorisation is granted by the selling partner and belongs to the selling partner. It can be withdrawn at any time, from their own Seller Central account, without contacting us first and without giving a reason. Once withdrawn, we can no longer retrieve any data from that account.
A selling partner can also ask us at any time what data we currently hold for them, and we will answer in writing.
9. Security incidents
We maintain a documented incident response plan with defined roles and responsibilities, which is reviewed every six months.
If we detect a security incident involving Amazon Information, we report it to Amazon at security@amazon.com within 24 hours of detection, and we notify the affected selling partner. We then investigate, contain the incident and document what happened and what changed as a result.
10. Compliance
We handle Amazon Information in line with the Amazon Services API Solution Provider Agreement, the Amazon Acceptable Use Policy and the Amazon Data Protection Policy, all of which we have agreed to. We also comply with applicable Indian data protection law.
11. Changes to this policy
If we change how we handle data, we will update this page and change the date at the top. Where a change materially affects how we handle a selling partner's Amazon Information, we will tell the affected selling partners directly rather than relying on them noticing this page.
12. Contact
Questions about this policy, requests to see what we hold, and deletion requests all go to the same place:
Rajesh Wadhwa, RV Enterprises
Email: rajeshwadhwa28@gmail.com
Telephone: +91 91159 12229
We reply to enquiries within two business days.