Privacy Policy for MongerLab Chrome Extension
1. Introduction
MongerLab (“we,” “our,” or “us”) operates the MongerLab Chrome Extension(the “Extension”). This Privacy Policy explains what information we collect, how we use it, how we store it, how we share it, and what choices you have.
The Extension is designed for a single purpose: to help Amazon sellers streamline workflows on Amazon retail and Amazon Seller Central when the user initiates an action (for example, business reports, brand approval, order sync, order callback, or inactive product cleanup).
By installing or using the Extension, you agree to this Privacy Policy. If you do not agree, please do not use the Extension.
2. Scope
This policy applies to:
- The MongerLab Chrome Extension
- Data processed locally in your browser
- Data sent to our backend at https://api.mongerlab.com to provide Extension features
This policy does not apply to third-party websites such as Amazon; those sites have their own privacy policies.
3. Information We Collect
We collect only information needed to operate the Extension. We do not collect your general browsing history across the web.
3.1 Information you provide
| Data | Purpose |
|---|---|
| Username / email and password | Used only when you log in through the Extension popup. Passwords are not stored locally in the Extension. |
| Seller Central email (optional) | Used when you enter an email for brand approval document flows on Amazon. |
| PDF documents (optional) | If you choose to upload a PDF for brand approval, the file is attached only to Amazon's approval form in your browser. We do not upload PDF files to our servers. |
| Preferences | Language, theme, and “remember me” settings. |
3.2 Authentication and account information
| Data | Purpose |
|---|---|
| Access token and refresh token | Stored locally to keep you signed in and to call our API securely. |
| User profile information | Decoded from the access token (for example, name, email, user ID) and stored locally to display account information. |
| Linked seller accounts | Seller/store identifiers linked to your MongerLab account (for example, seller ID, marketplace, store nickname, country) stored locally to match the correct Amazon account during workflows. |
3.3 Website content (Amazon pages only)
When you use Extension features, we read content only on Amazon and Seller Central pages allowed in our manifest (for example, business reports, inventory, fix your products, order history). This may include:
- ASINs and product/listing information
- Inventory and approval status
- Brand names shown on approval pages
- Business report metadata and report download URLs
- Order IDs, order status, delivery/tracking information visible on Amazon pages
- Seller account/marketplace context shown in Seller Central
We do not read page content on unrelated websites.
3.4 Technical and workflow data
| Data | Purpose |
|---|---|
| Device/browser technical data | Standard information sent with API requests (for example, Extension version). |
| Temporary workflow state | Short-lived local data for in-progress tasks (for example, business report request metadata). |
| Download metadata | Filename/URL of Amazon Business Report CSV downloads to avoid duplicate downloads. We do not read the contents of downloaded files from your device. |
3.5 What we do NOT collect
We do not intentionally collect:
- Your full web browsing history
- Keystrokes, mouse movements, scroll behavior, or general user activity logging
- Health information
- Payment card or bank account details
- Precise geolocation
- Personal communications unrelated to Extension features
4. How We Use Information
We use collected information only to:
- Authenticate you and maintain your session
- Provide Extension features you initiate, including:
- Business report request workflows
- Brand approval automation and result reporting
- Order status and tracking sync
- Order callback reporting
- Inactive product cleanup actions
- Match the correct seller account on Seller Central
- Improve reliability and support (for example, error handling, service continuity)
- Communicate with you when you contact support
We do not use your data for unrelated advertising, creditworthiness decisions, or lending purposes.
5. How We Store Information
5.1 Local storage in your browser
The Extension uses Chrome storage APIs:
| Storage | Examples | Retention |
|---|---|---|
| chrome.storage.local | Access/refresh tokens, user profile, linked seller accounts, temporary workflow state | Until you log out, uninstall the Extension, or clear Extension data |
| chrome.storage.sync | Language, theme, remember-me preference | Until you change/remove them or uninstall the Extension |
Passwords are never stored locally.
5.2 Storage on our servers
When you use features that sync with MongerLab, we store related workflow/account data on our servers at api.mongerlab.com (for example, brand approval results, business report requests, order updates).
We retain server-side data as long as needed to provide the service and comply with legal obligations. You may request deletion (see Section 9).
5.3 Security measures
We use reasonable technical and organizational measures to protect data, including HTTPS for API communication and token-based authentication. No method of transmission or storage is 100% secure.
6. How We Share Information
We do not sell your personal information.
We may share information only in these cases:
6.1 With MongerLab (our own service backend)
To provide the Extension, user-initiated data is sent to https://api.mongerlab.com, including examples such as:
| Feature | Data sent to our API |
|---|---|
| Brand approval reporting | Seller ID, country code, ASIN, brand, approval result |
| Business report workflow | Seller ID, country code, report date range, report file URL |
| Order sync | Amazon order IDs, status updates, tracking numbers |
| Order callback | Seller order ID, ASIN, order status, buyer order ID, total cost, currency |
| Inactive product cleanup | ASIN list, blocked-list preference |
This transfer is required to operate the Extension and is not a sale of personal data.
6.2 With Amazon (through your browser)
When you use automation features, the Extension interacts with Amazon pages in your browser (for example, submitting approval forms or reading order pages). That interaction happens directly between your browser and Amazonaccording to Amazon's terms and policies.
6.3 Service providers
We may use infrastructure providers (for example, cloud hosting) that process data on our behalf under contractual safeguards.
6.4 Legal requirements
We may disclose information if required by law, regulation, legal process, or to protect rights, safety, and security.
7. Permissions and Why We Need Them
The Extension requests Chrome permissions solely for its features:
| Permission | Why we need it |
|---|---|
| storage | Save tokens, preferences, linked seller accounts, and temporary workflow state |
| activeTab | Interact with the current Amazon/Seller Central tab during user-initiated actions |
| tabs | Open/focus Amazon pages and notify open Extension tabs on logout |
| webRequest | Detect Amazon Business Report CSV requests on S3/AWS URLs to trigger user-initiated sync (we do not read request bodies) |
| downloads | Detect and de-duplicate Business Report CSV downloads (metadata only) |
| alarms | Refresh auth tokens before expiry to prevent unexpected logout |
| Host permissions (Amazon/Seller Central/S3) | Operate only on Amazon-related domains required for seller workflows |
8. Cookies and Similar Technologies
The Extension itself does not use advertising cookies.
Amazon pages you visit may use their own cookies and tracking technologies under Amazon's policies. Our Extension may rely on your existing Amazon session cookies in the browser to perform user-initiated actions on Amazon pages.
We do not use cookies for cross-site tracking unrelated to Extension functionality.
9. Your Rights and Choices
Depending on your location, you may have rights to:
- Access personal data we hold about you
- Correct inaccurate data
- Delete your data
- Withdraw consent by uninstalling the Extension and requesting account/data deletion
- Object to certain processing, where applicable
To exercise these rights, contact us at [email protected].
You can also:
- Log out from the Extension popup
- Uninstall the Extension from Chrome
- Clear Extension storage via Chrome settings
10. Data from Minors
The Extension is not intended for individuals under 18. We do not knowingly collect personal information from children.
11. International Users
If you use the Extension outside the United States, your information may be processed in the United States and other countries where we or our service providers operate. By using the Extension, you understand that data may be transferred to jurisdictions with different data protection laws.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. Continued use of the Extension after changes means you accept the updated policy.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, contact:
MongerLab
Email: [email protected]
Address: 71970 Old Cuthbert Rd STE 250, Cherry Hill, NJ 08034, USA