Skip to content
MMHP Metrics Privacy contact

Data responsibility

Privacy Policy

This policy explains what MHP Metrics processes, why it is needed, how it is protected, and how an authorized seller can request access revocation or deletion.

Effective: August 26, 2026

MYHOME PREMIUM LIMITED operates MHP Metrics and is responsible for the processing described in this policy. This policy applies to the public website and to MHP Metrics services used by seller entities that have provided valid authorization.

1. Data we process

Website and contact information

  • Information a person sends to our support email, such as name, business contact details, company, request content, and related correspondence.
  • Basic technical request logs processed by our hosting provider for delivery, reliability, and security, such as IP address, request time, browser information, and requested page.

Seller-authorized business data

When a production connection is enabled after authorization, the service may process only the non-restricted business data needed for the selected functions, including:

  • Sales, order status, product, inventory, FBA, inbound shipment, settlement, and financial reporting data.
  • Advertising campaign, ad group, targeting, keyword, search term, placement, spend, and performance data.
  • Authorization identifiers, marketplace or advertising profile identifiers, service configuration, processing status, and security logs.

2. Buyer personally identifiable information

MHP Metrics does not request restricted roles for buyer information and does not collect or store buyer personally identifiable information through the marketplace APIs. The service is designed for operational analytics using non-restricted business data. If buyer PII is received unexpectedly, it will not be used for analytics and will be securely removed.

3. Why we use data

  • Provide authorized sales, advertising, inventory, and operational analytics.
  • Generate seller-reviewable summaries, alerts, and recommendations.
  • Maintain authorization, isolate seller workspaces, troubleshoot errors, and support users.
  • Protect the service, investigate misuse, meet legal obligations, and respond to privacy or security requests.

We do not use authorized marketplace data to build advertising audiences, sell data, or support unrelated third-party products.

4. Authorization and seller control

Marketplace data is accessed only after the relevant seller or advertiser grants authorization. Authorization is limited to the permissions required for the selected service functions. A seller may revoke authorization through the applicable account controls or contact us to stop processing and request deletion.

5. Security safeguards

The public website does not ingest or store marketplace API data. Production API access is not enabled until the applicable security controls are active. Those controls include:

  • TLS 1.2 or higher for data transmitted between supported systems.
  • AES-256 encryption for persistent application data at rest.
  • Separate authorization credentials and logical data boundaries for each seller workspace.
  • Least-privilege access, controlled secrets outside source code, security logging, and access review.
  • Revocation and incident-response procedures designed to stop affected access promptly.

6. Sharing and service providers

We do not sell authorized marketplace data. We may use infrastructure, hosting, monitoring, and enterprise email providers only to operate and protect the service. Access is limited to the service provided and subject to appropriate confidentiality and security obligations. We may disclose information when legally required or necessary to protect users, the service, or the public.

7. Retention and deletion

  • Authorized business data: retained only while authorization and the documented service purpose remain active. Following verified revocation or deletion request, active copies are deleted within 30 days unless a shorter period is required.
  • Backups: removed through the normal backup cycle within 90 days after deletion from active systems.
  • Security and processing logs: retained for up to 90 days unless needed longer for a documented investigation or legal obligation.
  • Support correspondence: retained for up to 24 months after the request is closed, unless a legal obligation requires a different period.

To request deletion, email support@mhpmetrics.com with the subject “Data deletion request.” We will verify authority, record the request, provide status updates, and confirm closure. Deletion requests do not affect records that must be retained by law.

8. Privacy, security, or suspected misuse reports

Send a privacy notice, vulnerability report, or suspected actual misuse of marketplace data to support@mhpmetrics.com. Include a description, affected account or page, time observed, and safe contact method. We log each report, assess severity, restrict affected access when appropriate, investigate, communicate material status changes, and document resolution. Do not include passwords, access tokens, buyer data, or other secrets in email.

9. International processing

Information may be processed where our contracted infrastructure providers operate. We apply contractual and technical safeguards appropriate to the information and applicable law.

10. Policy updates

We may update this policy when the service, legal requirements, or data practices change. The effective date will be revised, and material changes will be communicated through the service or the contact channel available to affected organizations.

11. Contact

Privacy and data requests may be sent to support@mhpmetrics.com.