amzn / selling-partner-api-models

This repository contains OpenAPI models for developers to use when developing software to call Selling Partner APIs.
Apache License 2.0
580 stars 730 forks source link

We have blocked the ability of your MWS & SP-API account from accepting new seller authorizations #2254

Closed moltar closed 1 year ago

moltar commented 2 years ago

Context: we have developed a private application for a client (an agency that works with sellers).

They have received the following email:

You have indicated that your application is used internally only and not intended to be used by other Amazon Sellers and you haven't showed any desire to list your application in the Amazon Seller Central Partner Network and, we have blocked the ability of your MWS & SP-API account (Merchant ID: ....) from accepting new seller authorizations.

This makes no sense.

Why would an agency need to list their private application in a public app store?

If anything, this would have the opposite effect. If a random seller gets confused and authorizes their seller account, our client would accidentally get the data from some random seller, who isn't their client.

And don't tell me this doesn't happen, because I know for a fact that it does by someone elses' account.

Your policies are backwards and need to be revised ASAP.

uk-2 commented 2 years ago

Internal apps have different set of rules to adhere to .

Your agency app is public facing therefore you need to specifically how you will protect other sellers data and potentially 10's of customers order data .

I understand what you want to achieve but you have told amazon the app is for your own seller account.

You can still block third party signs by disable signs up i guess.

moltar commented 2 years ago

Internal apps have different set of rules to adhere to .

There is no such thing as an "internal app".

The two options when signing up for SP API are:

So neither applies for a private app that can auth other sellers.

We did not select "Option 2", because we do not want to list the app.

uk-2 commented 2 years ago

Option 1 implies internal business usage only Option 2 implies - we would like to offer a multi tenant environment

Going with option 1 risks your clients because amazon could assume they are linked accounts because you have stated option 1. I would reapply and go with option 2 and disable public sign ups your to app.

moltar commented 2 years ago

@uk-2 Do you work for Amazon? Is this an official guideline?

uk-2 commented 2 years ago

@uk-2 Do you work for Amazon? Is this an official guideline?

No i don't work for Amazon but i am a Amazon seller based on experience of 7 years.

Anywhere good luck!

github-actions[bot] commented 1 year ago

This is a very old issue that is probably not getting as much attention as it deserves. We encourage you to check if this is still an issue after the latest release and if you find that this is still a problem, please feel free to open a new issue and make a reference to this one.

moltar commented 1 year ago

Not stale.

GitHub stale bot considered harmful

github-actions[bot] commented 1 year ago

This is a very old issue that is probably not getting as much attention as it deserves. We encourage you to check if this is still an issue after the latest release and if you find that this is still a problem, please feel free to open a new issue and make a reference to this one.

github-actions[bot] commented 1 year ago

closed for inactivity