SFMC API Connector – File Encryption Behavior

Overview
When using the Salesforce Marketing Cloud (SFMC) API connector, Amperity generates a CSV file that is transferred to SFMC as part of the orchestration process. Customers often ask whether this file is stored or transferred as a plain CSV and whether the plugin applies any additional encryption.

 

Encryption & Security Model

  • The CSV file is a standard file format, but it is always encrypted at rest and in transit while it resides within Amperity.

  • Encryption is applied by Amperity’s platform-level security layer, not by the SFMC plugin itself.

  • The plugin does not perform additional hashing or file-level encryption.

  • Once the file is successfully delivered to Salesforce Marketing Cloud, SFMC becomes responsible for protecting the file in their own environment.

  • Amperity performs security reviews of third-party vendors, including SFMC, before enabling integrations.

Summary
All orchestration files are protected by Amperity’s built-in security controls until delivery. After transfer, data protection is governed by Salesforce Marketing Cloud’s security policies.