お問い合わせ
Privacy & Data Protection Policy

プライバシーポリシー・データ保護方針

ヤップ株式会社(以下「当社」)は、EC出品者向け業務SaaS「YAP EC経営OS」の提供にあたり、お客様の情報およびマーケットプレイスから取得するデータを、以下の方針に基づき厳重に取り扱います。

1. 基本方針

当社は、個人情報の保護に関する法律(個人情報保護法)その他の関係法令、および各マーケットプレイス(Amazon、楽天市場、Yahoo!ショッピング、Shopify等)が定めるデータ保護に関する規約・ポリシーを遵守し、取り扱うすべてのデータを適正に管理します。

特に、Amazon Selling Partner API(SP-API)を通じて取得するデータについては、Amazonの定めるデータ保護方針(Amazon Data Protection Policy)および利用規約(Acceptable Use Policy)に準拠して取り扱います。

2. 収集する情報

(1)お客様(契約事業者さま)に関する情報

(2)サービス提供のためにマーケットプレイスから取得するデータ

お客様ご自身の認可(API連携の許可)に基づき、お客様の店舗に関する以下のデータを取得します。

3. 利用目的

当社は、取得した情報を以下の目的にのみ利用します。

取得したデータを、上記以外の目的(第三者への販売、広告配信への転用等)に利用することはありません。

4. Amazonデータの取扱い(Amazon Data Protection Policy準拠)

Amazon SP-APIを通じて取得するデータ(以下「Amazonデータ」)については、上記に加え、以下のとおり取り扱います。

(1)収集の目的と範囲

(2)保管と暗号化

(3)アクセス制限

(4)第三者提供の禁止

(5)保持期間と削除の手順

(6)セキュリティインシデントへの対応

5. アクセス解析・Cookie

当サイトでは、サービス改善のためにアクセス解析ツールを利用する場合があります。アクセス解析で収集される情報は統計的に処理され、特定の個人を識別するものではありません。

6. 開示・訂正・利用停止の請求

お客様は、当社が保有するご自身の情報について、開示・訂正・利用停止・削除を請求できます。下記の窓口までご連絡ください。本人確認のうえ、法令に基づき速やかに対応します。

7. 本ポリシーの改定

本ポリシーは、法令やマーケットプレイスの規約の変更、サービス内容の変更に応じて改定することがあります。重要な変更を行う場合は、当サイト上でお知らせします。

8. お問い合わせ窓口

本ポリシーおよびデータの取扱いに関するお問い合わせは、以下までご連絡ください。

ヤップ株式会社 データ保護窓口
メール: info@yap-inc.jpお問い合わせページ

制定日: 2026年8月30日
ヤップ株式会社

English Summary

Privacy & Data Protection Policy

YAP Inc. ("we") operates YAP EC Management OS, a SaaS for e-commerce sellers. We handle all data in accordance with Japanese privacy law and the data protection policies of each marketplace. Data obtained via the Amazon Selling Partner API is handled in compliance with the Amazon Data Protection Policy and Acceptable Use Policy:

  • Collection & purpose: We collect only the data (orders, finances/fees, inventory) that each seller explicitly authorizes through Amazon's official authorization flow, solely to provide order management, inventory tracking, and profitability reporting to that authorizing seller.
  • Encryption: All data is encrypted in transit (TLS) and at rest, and stored on access-controlled servers managed by us. Credentials such as access tokens are never stored in plain text.
  • Access control: Access to Amazon data is restricted to the minimum personnel who need it for their job duties (principle of least privilege), with individual authentication and access logging.
  • No third-party sharing: We never sell, share, or disclose Amazon data to third parties, except where required by law.
  • Retention & deletion: Data is retained only as long as needed to provide the service. Upon contract termination or revocation of authorization, the seller's Amazon data is deleted within 30 days (including backups within a defined period). Sellers may request deletion at any time via info@yap-inc.jp.
  • Incident response: If a security incident involving Amazon data is detected, we will notify Amazon at security@amazon.com within 24 hours of detection, promptly inform affected sellers, and take containment and remediation measures.

Contact for privacy matters: info@yap-inc.jp (YAP Inc. Data Protection Desk). Effective date: August 30, 2026.