LeadCRM | Privacy Policy

LeadCRM Privacy Policy

Effective Date: July 7, 2025

1. Introduction and Scope

LeadCRM (“we,” “us,” “our,” or “Company”) operates a professional networking overlay tool and data enrichment platform that helps users manage their business networking activities and enhance their contact data. This Privacy Policy explains how we collect, use, store, share, and protect your information when you use our website, browser extension, mobile application, desktop software, APIs, or any other technology we provide (collectively, the “Platform”).

By using our Platform, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with any part of this Privacy Policy, you must discontinue use of our Platform immediately.

This Privacy Policy applies to all users of our Platform, including free trial users, paid subscribers, and enterprise customers.

2. Definitions

For the purposes of this Privacy Policy:

  • “Personal Data” means any information relating to an identified or identifiable natural person
  • “Processing” means any operation performed on Personal Data, including collection, storage, use, disclosure, or deletion
  • “Data Controller” means the entity that determines the purposes and means of processing Personal Data
  • “Data Processor” means the entity that processes Personal Data on behalf of a Data Controller
  • “Third-Party Platforms” means external professional networking sites, CRM systems, and other business tools that users may integrate with our Platform

3. Browser Extension and Software Permissions

Our browser extension and desktop software require specific permissions to function properly. We request only the minimum permissions necessary for core functionality:

Required Permissions:

  • Background Processing (“background”): Enables the extension to run continuously in the background to provide seamless functionality and real-time data synchronization
  • Tab Access (“tabs”): Allows communication between different parts of the extension, provides activity logs, and enables cross-tab functionality
  • Local Storage (“storage”): Stores your progress data, preferences, cached data, and session information locally on your device
  • Notifications (“notifications”): Displays important alerts, system status updates, and ensures secure single-session login
  • Cookie Access (“cookies”): Enables background functionality, maintains session state, and provides seamless user experience without requiring constant user interaction
  • Active Tab (“activeTab”): Allows the extension to interact with the currently active browser tab when explicitly triggered by user action

Optional Permissions:

  • Web Request Monitoring: For advanced debugging and performance optimization (only when explicitly enabled by user)
  • Clipboard Access: For copy/paste functionality of enriched data (only when explicitly enabled by user)
Permission Transparency: We will always request explicit permission before accessing any additional browser capabilities beyond those listed above.

4. Information We Collect

4.1 Personal Information You Provide

We collect Personal Data that you voluntarily provide to us, including:

Account and Profile Information:

  • Identity Data: Full name, username, display name, profile picture
  • Contact Information: Email address, phone number, mailing address, alternative contact methods
  • Professional Information: Job title, company name, company address, department, seniority level, industry, work history
  • Account Credentials: Username, encrypted password (stored using industry-standard hashing), security questions, two-factor authentication settings
  • Payment Information: Billing name, billing address, payment method details (processed and stored by PCI-compliant third-party payment processors)
  • Communication Preferences: Email preferences, notification settings, marketing consent status

Platform Usage Data:

  • Configuration Settings: Custom fields, workflow preferences, integration settings, dashboard configurations
  • User-Generated Content: Notes, tags, custom data fields, saved searches, templates, and any other content you create within the Platform
  • Support Communications: Messages, emails, chat logs, and other communications with our support team

4.2 Data Enrichment Information

We obtain enriched data from third-party vendors to enhance your contact and company information:

Contact Enrichment Data:

  • Enhanced Contact Details: Verified email addresses, phone numbers, social media profiles, professional titles obtained from our data enrichment vendors
  • Company Information: Company size, revenue, industry classification, technology stack, funding information provided by third-party data providers
  • Professional Background: Work history, education, skills, certifications, professional associations sourced from external vendors
  • Social and Digital Presence: Professional social media profiles, company websites, blog posts, press mentions acquired through third-party enrichment services
Important Note: We do not create or generate enriched data ourselves. All enrichment data is obtained from licensed third-party vendors and data providers. We do not store any personally identifiable information directly from third-party platforms or CRM systems. We only store enrichment data received from our vendors and technical bridge data necessary for platform integration functionality.

4.3 Integration Bridge Data

To facilitate connections between professional networking platforms and CRM systems, we collect:

  • Technical Identifiers: Unique IDs, API keys, webhook URLs, synchronization tokens
  • Mapping Data: Field mappings, data transformation rules, synchronization preferences
  • Integration Logs: Connection status, sync history, error logs, performance metrics
  • Authentication Tokens: Encrypted access tokens for authorized integrations (stored securely and never shared)

4.4 Automatically Collected Information

We automatically collect certain information when you use our Platform:

Technical Information:

  • Device Data: Device type, operating system, browser type and version, screen resolution, device identifiers
  • Network Information: IP address, internet service provider, connection type, network performance metrics
  • Location Data: General geographic location based on IP address (city/region level, not precise location)
  • Browser Data: Browser settings, language preferences, time zone, installed plugins

Usage Analytics:

  • Platform Interactions: Pages visited, features used, buttons clicked, time spent on different sections
  • Performance Metrics: Page load times, error rates, feature adoption rates, user flow patterns
  • Session Data: Login/logout times, session duration, concurrent sessions, device switching patterns
  • Search and Filter Data: Search queries, filter preferences, sorting options, result interactions

5. How We Use Your Information

We process your Personal Data for the following purposes, based on legitimate business interests, contractual necessity, or your consent:

5.1 Service Delivery and Core Functionality

  • Platform Operation: Provide, maintain, and improve our core services and features
  • Data Enrichment: Provide enriched contact and company data obtained from our third-party vendors
  • Integration Management: Facilitate connections between third-party platforms and CRM systems
  • Account Management: Create and manage your account, process payments, handle subscriptions
  • Authentication: Verify your identity and maintain secure access to your account

5.2 Platform Improvement and Development

  • Feature Development: Develop new features and improve existing functionality based on usage patterns
  • Performance Optimization: Monitor and optimize platform performance, speed, and reliability
  • Bug Fixes: Identify, diagnose, and resolve technical issues and bugs
  • User Experience Enhancement: Improve user interface design and user experience based on feedback and analytics
  • AI and Machine Learning: Train and improve our AI models for better data processing and automation

5.3 Customer Support and Communication

  • Support Services: Provide technical support, troubleshooting, and customer service
  • Platform Updates: Notify you about important platform changes, new features, and updates
  • Educational Content: Send helpful tips, best practices, and educational materials
  • Marketing Communications: Send newsletters, promotional materials, and product announcements (with your consent)
  • Feedback Collection: Request and collect feedback about your experience with our Platform

5.4 Security and Compliance

  • Fraud Prevention: Detect and prevent fraudulent activities, unauthorized access, and security threats
  • Compliance Monitoring: Ensure compliance with applicable laws, regulations, and industry standards
  • Audit and Investigation: Conduct internal audits and investigate potential violations of our terms
  • Legal Requirements: Comply with legal obligations, court orders, and regulatory requests

6. Legal Basis for Processing

We process your Personal Data based on the following legal grounds:

  • Contract Performance: Processing necessary to perform our contract with you or take steps at your request prior to entering into a contract
  • Legitimate Interests: Processing necessary for our legitimate business interests, such as improving our services, ensuring security, and conducting analytics
  • Legal Compliance: Processing necessary to comply with applicable laws and regulations in India
  • Consent: Processing based on your explicit consent, which you can withdraw at any time

7. Your Rights and Choices

7.1 Data Access and Control Rights

You have the following rights regarding your Personal Data:

Access and Portability:

  • Right to Access: Request information about what Personal Data we hold about you
  • Data Portability: Request a copy of your Personal Data in a structured, machine-readable format
  • Account Dashboard: Access and view your Personal Data through your Platform dashboard

Correction and Updates:

  • Right to Rectification: Request correction of inaccurate or incomplete Personal Data
  • Profile Updates: Update your account information and preferences through your dashboard
  • Data Verification: Request verification of data accuracy and sources

Deletion and Restriction:

  • Right to Erasure: Request deletion of your Personal Data under certain circumstances
  • Right to Restriction: Request limitation of processing of your Personal Data
  • Account Deletion: Delete your account and associated data by contacting [email protected]

7.2 Communication and Marketing Preferences

Email Communications:

  • Marketing Opt-Out: Unsubscribe from marketing communications at any time using unsubscribe links
  • Selective Preferences: Choose which types of communications you want to receive
  • Transactional Emails: Note that certain service-related emails cannot be opted out of

Exercising Your Rights:

To exercise any of these rights:

  • Email: Contact us at [email protected] with your request
  • Account Settings: Use the privacy controls in your account dashboard
  • Response Time: We will respond to your requests within 30 days

8. Data Sharing and Disclosure

8.1 Third-Party Service Providers

We share your information with trusted third-party service providers who assist us in operating our Platform:

Infrastructure and Operations:

  • Cloud Storage Providers: For secure data storage and backup
  • Payment Processors: For processing payments and managing subscriptions (PCI-compliant)
  • Customer Support Tools: For providing customer service and technical support
  • Analytics Providers: For understanding platform usage and performance

Data Enrichment Vendors:

  • Third-Party Data Providers: Licensed vendors who provide enriched contact and company information
  • Verification Services: For validating email addresses and contact information

8.2 Data Protection Requirements

All third-party service providers and vendors are:

  • Contractually Bound: Required to protect your information and use it only for specified purposes
  • Security Compliant: Must meet our security standards and industry best practices
  • Privacy Compliant: Must comply with applicable privacy laws and regulations
  • Regularly Audited: Subject to regular security and privacy audits

8.3 Legal Disclosures

We may disclose your information when required by law or to protect our rights:

  • Legal Compliance: To comply with court orders, subpoenas, or regulatory requests under Indian law
  • Law Enforcement: To assist law enforcement investigations when legally required
  • Rights Protection: To protect our rights, property, or safety, or that of our users
  • Terms Enforcement: To enforce our Terms of Service or other agreements

8.4 What We Don’t Do

We DO NOT:

  • Sell your Personal Data to third parties for marketing purposes
  • Share your data with advertisers for targeted advertising
  • Provide your contact lists to other users or companies
  • Use your data for purposes unrelated to our Platform services

9. Data Security and Protection

9.1 Security Measures

We implement comprehensive security measures to protect your information:

Technical Safeguards:

  • Encryption: All data is encrypted in transit (TLS 1.3) and at rest (AES-256)
  • Access Controls: Multi-factor authentication and role-based access controls
  • Network Security: Firewalls, intrusion detection systems, and network monitoring
  • Secure Development: Secure coding practices and regular security code reviews

Administrative Safeguards:

  • Employee Training: Regular security awareness training for all employees
  • Background Checks: Security clearance for employees with data access
  • Incident Response: Comprehensive incident response and breach notification procedures
  • Regular Audits: Third-party security audits and penetration testing

9.2 Data Retention and Deletion

Retention Periods:

  • Active Accounts: Data retained while your account is active and for legitimate business purposes
  • Inactive Accounts: Data may be retained for up to 3 years after account closure for legal and business purposes
  • Legal Requirements: Some data may be retained longer to comply with legal obligations under Indian law
  • Backup Systems: Data in backup systems may be retained for up to 7 years for disaster recovery

10. International Data Transfers

10.1 Jurisdiction and Governing Law

  • Primary Jurisdiction: India – All data processing activities are governed by Indian law
  • Data Location: Primary servers are located in Europe and India
  • Cross-Border Transfers: Your information may be transferred to and processed in other countries where our service providers are located
  • Transfer Safeguards: We ensure appropriate contractual safeguards and industry-standard encryption for any international transfers

11. Cookies and Tracking Technologies

11.1 Types of Cookies We Use

Essential Cookies:

  • Authentication: Remember your login status and session information
  • Security: Protect against cross-site request forgery and other attacks
  • Functionality: Store your preferences and settings
  • Load Balancing: Ensure optimal performance and availability

Analytics Cookies:

  • Usage Analytics: Understand how you use our Platform and which features are most popular
  • Performance Monitoring: Track page load times and identify technical issues

11.2 Cookie Management

You can control cookie settings through your browser preferences, though disabling essential cookies may affect Platform functionality.

12. Age Restrictions

Our Platform is not intended for individuals under 18 years of age. We do not knowingly collect Personal Data from minors under 18. If you believe we have collected information from someone under 18, please contact us immediately for prompt deletion.

13. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of significant changes by:

  • Updating the effective date
  • Sending email notifications for material changes
  • Posting notices on our Platform

Continued use of our Platform after changes constitutes acceptance of the updated policy.

14. Contact Information

For questions about this Privacy Policy or your personal information, contact us at:

Email: [email protected]

Response Time: We aim to respond to all privacy-related inquiries within 30 days