Security & privacy

Kamiflavr is built to hold as little of your data as possible, and to protect what it does.

We never see your card

Payments run through a hosted checkout provider. Card details are entered on their secure page, never on ours — so there is nothing here to leak.

We never store passwords

Login is handled by a specialist authentication provider. We store a reference to your account, never your password, and support two-factor authentication and Google sign-in.

Amazon connection: your choice, your control

By default, Kamiflavr only reads Amazon's public policy pages — nothing about your account. If you choose to connect your Amazon seller account from Settings, we use Amazon's own sign-in (OAuth) — we never see or store your Amazon password. That connection reads your order history and product names to score risk per product. See our Privacy Policy for exactly what's included and how to fully disconnect.

Encrypted in transit

The whole site is served over HTTPS with strict transport security, and secrets are stored in isolated, access-controlled storage — never in our code.

Hardened by default

We apply a content security policy, clickjacking and content-type protections, and rate-limited sign-in, and we monitor our own systems so a failure alerts us immediately.

Your data, your control

You can download everything we hold about you, and permanently delete your account and data, at any time from your account page.

Found a security issue? Please email seshukamini@gmail.com — we take reports seriously and will respond quickly.

Kamiflavr provides informational monitoring, not legal or professional advice. Summaries are original paraphrases generated by an AI model and may be incomplete or mistaken. Always verify against the official source before acting.