BookBidder Privacy Policy

    Effective Date: February 17, 2026

    BookBidder, LLC ("BookBidder," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our BookBidder.ai services ("Services").

    1. INFORMATION WE COLLECT

    1.1 Information You Provide to Us

    We collect information that you provide directly to us, including:

    • Account Information: Name, email address, password, and billing information when you create an account
    • Amazon Account Data: Information from your Amazon Advertising account when you connect it to our Services, including campaign data, advertising spend, book metadata, and performance metrics
    • Communications: Information you provide when you contact us for support or communicate with us
    • Payment Information: Billing details and payment card information processed through our third-party payment processors

    1.2 Information We Collect Automatically

    When you access or use our Services, we automatically collect:

    • Usage Information: Information about your interactions with the Services, including features used, campaigns modified, and settings configured
    • Device Information: Information about the device you use to access the Services, including IP address, browser type, operating system, and device identifiers
    • Log Information: Server logs, including access times, pages viewed, and actions taken within the Services
    • Cookies and Similar Technologies: We use cookies, web beacons, and similar tracking technologies to collect information about your browsing activities

    1.3 Information from Third Parties

    We receive information from Amazon Services when you connect your Amazon Advertising account, including advertising campaign data, performance metrics, and book catalog information.

    2. HOW WE USE YOUR INFORMATION

    We use the information we collect to:

    • Provide the Services: Process your advertising campaigns, optimize bids, and deliver analytics and reporting
    • Account Management: Create and maintain your account, process payments, and communicate with you about your account
    • Service Improvement: Analyze usage patterns to improve our Services, develop new features, and enhance user experience
    • Customer Support: Respond to your inquiries, provide technical support, and resolve issues
    • Security: Detect, prevent, and address fraud, security issues, and technical problems
    • Compliance: Comply with legal obligations and enforce our Terms of Service
    • Communications: Send you service updates, security alerts, and administrative messages
    • Marketing: With your consent, send you promotional materials and information about new features (you may opt out at any time)

    3. HOW WE SHARE YOUR INFORMATION

    We may share your information in the following circumstances:

    3.1 Amazon Services

    We share necessary information with Amazon Services to perform bid optimizations and manage your advertising campaigns on your behalf.

    3.2 Service Providers

    We engage third-party service providers to perform functions on our behalf, including payment processing, data hosting, analytics, and customer support. These providers have access to your information only to perform specific tasks and are obligated to protect your information.

    3.3 Business Transfers

    If BookBidder is involved in a merger, acquisition, sale of assets, or bankruptcy, your information may be transferred as part of that transaction. We will notify you of any such change in ownership or control of your information.

    3.4 Legal Requirements

    We may disclose your information if required by law or in response to:

    • Valid legal processes (subpoenas, court orders)
    • Government or regulatory requests
    • Protection of our rights, property, or safety, or that of others
    • Prevention of fraud or illegal activities

    3.5 With Your Consent

    We may share your information with other parties when you have given us explicit consent to do so.

    4. DATA SECURITY

    We implement appropriate technical and organizational security measures to protect your information, including:

    • Encryption of data in transit and at rest
    • Regular security assessments and audits
    • Access controls and authentication mechanisms
    • Secure data centers with physical and network security
    • Employee training on data protection and privacy

    Amazon OAuth Credentials: When you connect your Amazon Advertising account, we securely store OAuth access tokens and refresh tokens using encryption at rest. Tokens are automatically rotated upon expiration and are never exposed to client-side applications. You may disconnect your Amazon account at any time through your account settings, which will revoke our access and delete stored tokens.

    However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

    5. AUTOMATED DECISION-MAKING

    Our Services include automated features that take actions on your Amazon Advertising campaigns based on predefined rules and performance thresholds:

    Smart Rules: Automatically pauses underperforming keywords and product targets, and negates wasteful search terms in auto campaigns, based on configurable performance criteria (e.g., click thresholds, ACOS limits, and lookback windows).

    Bid Optimization: Calculates and applies bid adjustments based on your selected strategy (Conservative, Moderate, Aggressive, etc.) and book-specific economics (royalty rates, conversion rates).

    These automated actions are:

    • Performed only on campaigns and targets where you have explicitly enabled them
    • Based on transparent, rule-based criteria (not opaque machine learning models)
    • Logged and visible in your dashboard notifications
    • Reversible — you can re-enable paused targets or remove negative keywords at any time

    You may disable Smart Rules on any individual campaign, ad group, or target at any time through the application interface. Under GDPR, you have the right to request human review of any automated decision that significantly affects you.

    6. DATA RETENTION

    We retain your information for as long as necessary to provide the Services and fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. When we no longer need your information, we will securely delete or anonymize it.

    Specific retention periods include:

    • Account Information: Retained while your account is active and for a reasonable period thereafter
    • Campaign Data: Retained for the duration of your subscription plus additional time for analytics and historical reporting
    • Financial Records: Retained as required by tax and accounting regulations (typically 7 years)
    • Support Communications: Retained for quality assurance and dispute resolution purposes

    Free Trial Data: If you do not convert to a paid subscription after your trial period, your account and associated campaign data will be retained for 30 days following trial expiration. After 30 days, your data will be permanently deleted unless you reactivate your subscription.

    7. YOUR RIGHTS AND CHOICES

    7.1 Access and Correction

    You can access and update your account information at any time through your account settings. If you need assistance, contact us at [email protected].

    7.2 Data Deletion

    You may request deletion of your account and associated data by contacting us. Upon request, we will:

    • Delete your account credentials and profile information within 30 days
    • Delete stored Amazon OAuth tokens immediately upon account disconnection
    • Delete campaign performance data, bid history, and search term data within 30 days
    • Retain anonymized, aggregated usage data that cannot be linked back to you
    • Retain financial records (invoices, payment history) as required by tax and accounting regulations (typically 7 years)

    To request deletion, contact us at [email protected].

    7.3 Data Portability

    You may request a copy of your data in a structured, commonly used, and machine-readable format by contacting us.

    7.4 Marketing Communications

    You may opt out of receiving promotional emails by clicking the "unsubscribe" link in any marketing email or by adjusting your account preferences. You cannot opt out of service-related communications.

    7.5 Cookies

    Most web browsers allow you to control cookies through their settings. However, disabling cookies may limit your ability to use certain features of the Services.

    7.6 Do Not Track

    Our Services do not currently respond to Do Not Track signals.

    8. INTERNATIONAL DATA TRANSFERS

    Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws different from those in your country. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.

    9. CHILDREN'S PRIVACY

    Our Services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we learn we have collected information from a child under 18, we will delete it promptly. If you believe we have collected information from a child, please contact us immediately.

    10. THIRD-PARTY LINKS

    The Services may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any information to them.

    11. CALIFORNIA PRIVACY RIGHTS

    If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

    • Right to Know: You can request information about the categories and specific pieces of personal information we have collected about you
    • Right to Delete: You can request deletion of your personal information
    • Right to Opt-Out: You can opt out of the sale of your personal information (note: we do not sell personal information)
    • Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights

    To exercise these rights, contact us at [email protected].

    12. GDPR RIGHTS (European Users)

    If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

    • Right to Access: Obtain confirmation of whether we process your personal data and access to such data
    • Right to Rectification: Correct inaccurate or incomplete personal data
    • Right to Erasure: Request deletion of your personal data in certain circumstances
    • Right to Restriction: Request restriction of processing in certain circumstances
    • Right to Data Portability: Receive your personal data in a structured, machine-readable format
    • Right to Object: Object to processing based on legitimate interests or direct marketing
    • Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent
    • Right to Lodge a Complaint: File a complaint with your local data protection authority

    13. CHANGES TO THIS PRIVACY POLICY

    We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new Privacy Policy on our website and updating the "Effective Date" above. We encourage you to review this Privacy Policy periodically. Your continued use of the Services after changes become effective constitutes acceptance of the updated Privacy Policy.

    14. CONTACT US

    If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us at:

    BookBidder, LLC

    Email: [email protected]

    We will respond to your inquiry within 30 days.