Is my account data safe?
Each customer's data is isolated at the database level, not by application logic. Amazon refresh tokens are encrypted at rest, and no per-customer credential is ever placed in a configuration file or environment variable.
Report files and run artefacts live in private storage reachable only through short-lived, identity-bound links.
You authorised Amazon access through Amazon's own OAuth screen and can revoke it in Seller Central at any time, without asking us.