Skip to content
SELLIFY
PrivacyTermsAbout

On this page

Who we areInformation we collectChrome extension dataHow we use informationLegal bases for EU and UK usersHow we share informationChrome Web Store Limited UseInternational processingSecurityRetentionYour rightsCookies and local storageChildrenChangesContact

Privacy Policy

Effective: September 2, 2026 (version 2026-09-02)

This Privacy Policy explains how Sellify collects, uses, stores, and shares information when sellers use the Sellify web app, Chrome extension, and related services.

On this page
Who we areInformation we collectChrome extension dataHow we use informationLegal bases for EU and UK usersHow we share informationChrome Web Store Limited UseInternational processingSecurityRetentionYour rightsCookies and local storageChildrenChangesContact

Who we are

Sellify is seller operations software for importing supplier product information, managing draft listings, reviewing inventory, and preparing order workflows. For privacy questions or requests, contact us at support@itssellify.com.

Information we collect

We collect only the information needed to provide and secure Sellify. Depending on how you use the service, this may include:

  • Account information such as name, username, email address, role, authentication method, versioned Terms and Privacy acknowledgement, and revocable session data. Google sign up provides the verified email, display name, profile image when available, and immutable Google account identifier. Email sign up stores a password hash and a short-lived pending confirmation record; the raw confirmation token is not stored.
  • Workspace information such as drafts, imported supplier products, inventory records, order records, buyer message notes, settings, and connected marketplace status.
  • Chrome extension import and monitoring data from supported Amazon product, catalogue, search, deals, order-history, order-detail, and tracking pages. This can include product title, images, page URL, ASIN, price, availability, delivery estimate, brand, category, description, feature bullets, variation details, product specifications, linked Amazon order ID, shipment status, carrier, tracking number or link, delivery text, and capture time when visible. After a seller clicks Browse recent orders, the extension can also return visible recent order IDs, dates, total text, item title/image/ASIN/quantity, status, and order/tracking links transiently to the Sellify page; only the selected order is persisted. Periodic monitoring uses bounded, sequential, credentialed background requests with timeouts and does not open or close browser tabs.
  • Chrome extension supplier-session verification data only when a user clicks Verify session for an Amazon supplier profile, including the visible signed-in Amazon account email or phone number, display name when visible, source URL, and verification time. For a retained legacy browser-profile identity, that same action also receives the complete active linked-order target set directly from Sellify and reads fresh exact order ID, ASIN, purchased quantity, marketplace, order-link, capture-time, and account-identity evidence for every target. The identity upgrade and monitoring restart are committed atomically only if the entire server-selected set passes; the page cannot supply or omit proof. Saving a profile alone does not inspect Amazon or restore a removed identity. Disconnecting the browser session hides the identity until a fresh verification succeeds; permanently removing the profile deletes its supplier identity and session metadata.
  • Chrome extension supplier-monitoring reconnection evidence when a seller uses the per-order Connect Amazon order fallback includes the exact saved Amazon order ID, supported marketplace, visible account email or phone identity, order link, capture time, and any purchased-line ASIN and quantity Amazon exposes. Automatic recovery checks the exact saved order and can follow Amazon's own Next link across at most three order-history pages. A seller may instead paste an Amazon order-details or tracking URL as a navigation hint; the pasted URL does not count as evidence and is not persisted as proof. If Amazon's exact canonical Order Details page omits ASIN markup entirely, a non-legacy verified profile may reconnect from exact order access plus its installation-bound account identity; any visible different ASIN remains a hard rejection. Legacy identity upgrades retain exact ASIN and quantity proof. If the assigned supplier profile still exists, Sellify restricts the fallback to that profile and reconnects only the proven order. If it was permanently removed, the replacement must prove that its currently verified Amazon identity can access the same exact historical purchase. The extension re-reads and submits this evidence directly from the installation bound to the selected profile. A phone value is used transiently for server-side fingerprint comparison and is not persisted on the order.
  • Chrome extension checkout-assist and tracking-capture data only when a user sends a specific Sellify order to the extension, including order ID, Amazon URL or ASIN, buyer name, shipping address, quantity, listing ID, order pricing and currency, destination-check results, Amazon order ID, shipment status, carrier, tracking number/link, and delivery text needed to review fulfillment.
  • Marketplace connection information when you connect accounts such as eBay OAuth tokens, account identifiers, seller profile details, listing data, order data, and fulfillment-related records.
  • Technical and security information such as IP-derived request metadata, device/browser type, timestamps, logs, error reports, and actions needed to keep the service secure.
  • Support and contact information you choose to send us.

Chrome extension data

The Sellify Chrome extension runs only on supported Amazon pages and Sellify domains listed in the extension manifest. It adds import actions on Amazon product pages and product catalogue cards, then sends imported product data to the signed-in user's Sellify workspace. When a seller clicks Connect eBay or Reconnect, the extension requests temporary optional cookie access for supported eBay domains, keeps the existing eBay cookie session only in service-worker memory, and opens eBay's standard OAuth page through Chrome Identity. On success, cancellation, or error, it removes OAuth session cookies, restores and verifies the pre-authorization browser session, then removes the optional access. Cookie values never enter extension storage or leave Chrome. The eBay authorization code and tokens are processed by Sellify's registered server callback; the extension receives only an opaque authorization URL and a status-only completion URL and does not receive eBay credentials, authorization codes, OAuth tokens, or stored eBay cookies. It uses no Incognito access and injects nothing into eBay pages. When a user clicks Verify session, the extension performs a read-only check of the Amazon identity already signed in to that Chrome profile. If the retained profile uses a legacy browser identity, the extension obtains every active linked-order target through its authenticated server channel, proves each exact historical order sequentially in temporary inactive tabs, closes every tab on success or failure, and submits one atomic batch. Missing, extra, duplicate, stale, wrong-account, wrong-ASIN, wrong-quantity, wrong-marketplace, changed-target, or wrong-device evidence changes nothing. Modern profiles keep the identity-only verification path. Reconnect Amazon order remains a separate per-order fallback for a removed profile or one order needing repair; a different active profile is rejected unless the original was permanently removed and the replacement proves the same historical purchase. Neither flow starts checkout, places another order, increments supplier usage, or replays prior buyer messages. Five-minute periodic monitoring cycles use bounded, sequential, credentialed background requests with thirty-second timeouts for linked-order and product price/stock/delivery checks and open or close no browser tabs. Linked-order monitoring continues while Amazon is open so shipment problems are not starved; lower-priority product checks pause while the seller actively browses Amazon. Three consecutive order-extraction failures stop monitoring and surface the issue. Add and Edit do not inspect Amazon. Disconnecting keeps the supplier profile but pauses linked monitoring and requires a fresh verification; permanent removal deletes the active profile, identity metadata, and inventory preference. Send to Extension receives one selected order payload, opens the exact Amazon product, verifies destination-aware availability, reconciles the active cart to the exact ASIN and quantity, fills and verifies the visible buyer address, and can advance an already-selected standard delivery option and saved payment method only when no sensitive prompt is visible. At final review it requires exact item, quantity, address, order-total, and currency evidence. The user must review checkout and manually click the final Amazon place-order button. The extension does not read unrelated websites, collect general browsing history, log keystrokes, collect Amazon passwords, collect payment card details, or click the final purchase button.

How we use information

We use collected information to operate Sellify, authenticate users, import product data, store drafts, connect marketplace accounts, manage inventory and order workflows, provide support, prevent abuse, maintain security, improve reliability, and comply with legal obligations.

Legal bases for EU and UK users

Where GDPR or UK GDPR applies, we process personal data under one or more legal bases: performance of a contract when we provide the Sellify service; legitimate interests such as security, fraud prevention, debugging, and product improvement; consent where required; and legal obligations where we must keep or disclose information by law.

How we share information

We do not sell personal information and do not share it with advertising networks. We may share information only as needed with:

  • Service providers that host, secure, monitor, back up, or support Sellify, including DigitalOcean for Australian production compute and storage, Wasabi for encrypted Sydney-region backups, Cloudflare for DNS and edge security, Google for optional account authentication, and Google Workspace for requested email confirmations.
  • Marketplace and supplier platforms you choose to connect or use through Sellify, such as eBay APIs or Amazon pages used for product imports.
  • Professional advisers, authorities, or other parties where required by law, to protect rights and safety, or to investigate misuse.
  • A successor organization if Sellify is involved in a merger, acquisition, financing, or sale of assets, subject to appropriate confidentiality and privacy protections.

Chrome Web Store Limited Use

Sellify's use and transfer of information received from the Chrome extension is limited to providing and improving user-facing Amazon product import, draft intake, recent-order linking, supplier price/stock/delivery monitoring, linked-order shipment monitoring, supplier-session verification, human-reviewed checkout assist, tracking capture, and address-cleanup features. We do not sell extension user data, use it for advertising, use it for creditworthiness or lending decisions, or transfer it for purposes unrelated to Sellify's single purpose.

International processing

Sellify's primary production compute and database are hosted in Australia, and encrypted off-host backups are stored in Sydney. Some providers, including Google, Google Workspace, and Cloudflare, may process limited authentication, network, security, or email-delivery information in the United States or other countries where they operate. Privacy protections in those countries may differ from Australia. Where required, we use contractual, access, encryption, and data-minimization safeguards for cross-border processing.

Security

We use reasonable technical and organizational measures designed to protect information, including HTTPS transport, restricted access, session controls, hashed passwords, and operational monitoring. No internet service is completely secure, so users should keep passwords safe and tell us if they believe an account has been compromised.

Retention

We keep information for as long as needed to provide Sellify, meet legal or accounting obligations, resolve disputes, maintain security, and support legitimate business purposes. Workspace records such as drafts, inventory, and order data are kept until deleted by the user or no longer needed. Extension session tokens can be removed by logging out of the extension or uninstalling it.

Your rights

Depending on where you live, you may have rights to access, correct, delete, export, restrict, or object to the use of your personal information. Australian users may request access to or correction of personal information and may complain to us or the Office of the Australian Information Commissioner. EU and UK users may also have rights to portability, restriction, objection, withdrawal of consent, and complaint to a supervisory authority. Some US residents, including California residents where applicable, may have rights to know, access, correct, delete, and opt out of sale or sharing of personal information. Sellify does not sell personal information.

Cookies and local storage

Sellify may use browser storage, session tokens, and similar technologies to keep users logged in, remember workspace state, secure the service, and detect whether the Chrome extension is available. The Chrome extension also uses Chrome storage for the signed-in Sellify session.

Children

Sellify is intended for business users and is not directed to children. We do not knowingly collect personal information from children.

Changes

We may update this Privacy Policy as Sellify changes or legal requirements evolve. We will update the date above and, where appropriate, provide additional notice.

Contact

For privacy requests, complaints, or questions, contact Sellify at support@itssellify.com. Please include enough detail for us to identify the relevant account or workspace and respond to the request.

Developed by Nors Nusantara Teknologi Ltd

AboutPrivacyTermsContact