Trust
Security & Disclosure
Last updated: 9 June 2026
Book Midas connects to your Amazon Advertising account and manages real spend, so security isn’t a feature — it’s the foundation. This page describes how we protect your data, how to report a security issue, and how we respond to incidents.
How we protect your data
- Secure connection. You connect through Amazon’s own sign-in (OAuth). We never see or store your Amazon password.
- Encrypted credentials. The access token that lets us manage your ads is encrypted at rest and isolated to your account.
- Never in logs. Access credentials are never written to application logs, error reports, or analytics.
- Least privilege. Internal access to systems and data is limited to what each function requires, and reviewed.
- Tenant isolation. Each publisher’s data is isolated; your data is never used to benefit another customer.
- Amazon Data Protection Policy. All Amazon-derived data is handled in line with Amazon’s Data Protection Policy.
Reporting a vulnerability
If you believe you’ve found a security vulnerability in Book Midas, please tell us. We welcome responsible disclosure and will not pursue or support legal action against researchers who act in good faith.
Please include: what you found, the steps to reproduce it, and the potential impact. Do not access or modify data that isn’t yours, and give us reasonable time to respond before any public disclosure.
How we respond
- Acknowledge — we confirm receipt of your report within 2 business days.
- Assess — we investigate, determine severity, and keep you updated on progress.
- Remediate — we fix confirmed issues as a priority, fastest for the most serious.
- Close the loop — we let you know when it’s resolved, and credit you if you’d like.
If an incident affects you
If a security incident affects your data, we will investigate promptly, contain it, and notify affected customers and relevant authorities as required by law and by Amazon’s policies, with a plain account of what happened and what we did about it.
Contact
Security reports: security@bookmidas.com. Privacy questions: see our Privacy Policy.