Privacy Policy

Last Updated: November 29, 2025
Effective Date: November 29, 2025

Overview

Lead3r ("we", "our", or "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and protect information when you use the Lead3r platform, including our web application and Chrome extension.

By using Lead3r, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree, please do not use our services.

Information We Collect

1. Information You Provide

  • Account Information: Email address, password (hashed), first name (optional)
  • API Keys: Self-generated keys for Chrome extension authentication (stored as SHA-256 hashes)
  • Subscription Data: Billing information processed by Stripe (we do not store credit card details)
  • Lead Data: Information you extract from e-commerce platforms (shop names, URLs, contact info)
  • Project Settings: Custom scoring criteria and organization preferences
  • Referral Information: Referral codes you use or share

2. Information We Collect Automatically

  • Usage Data: Number of leads extracted, quota usage, feature usage patterns
  • Technical Data: Browser version, extension version, IP address (for fraud detection)
  • Error Logs: Crash reports and error messages (for debugging)
  • Analytics: Page views, session duration (via Google Analytics, can be opted out)

3. Information We Extract from Web Pages

  • Shop Data: Publicly available information from online shops (names, URLs, products, ratings, sales)
  • Contact Information: Email addresses, social media links (if publicly visible)
  • Business Metrics: Sales counts, review ratings, product categories

Important: We only extract publicly available information. We do NOT access your e-commerce accounts, private messages, browsing history, or any private data.

How We Use Your Information

  • Provide the Service: Extract and enrich leads, track quota usage, sync data across devices
  • AI Enrichment: Generate lead scores and personalized outreach messages using OpenAI
  • Account Management: Authenticate users, manage subscriptions, process payments
  • Quota Enforcement: Track usage against monthly limits, enable overage billing
  • Communication: Send transactional emails (quota alerts, payment receipts), marketing emails (with opt-in)
  • Improve the Service: Analyze usage patterns, debug errors, develop new features
  • Fraud Prevention: Detect and prevent abuse, referral fraud, account sharing
  • Legal Compliance: Comply with laws, enforce our Terms of Service, respond to legal requests

Data Storage and Security

Storage Location

  • API Keys (Extension): Stored locally in your browser (Chrome's encrypted storage)
  • Extracted Leads: Stored on our secure servers (Supabase/AWS, US region)
  • Account Data: Stored in our PostgreSQL database (Supabase)
  • Usage Records: Stored for billing and quota tracking

Security Measures

  • ✅ All data transmitted over HTTPS (TLS encryption)
  • ✅ Passwords hashed with bcrypt (never stored in plaintext)
  • ✅ API keys stored as SHA-256 hashes
  • ✅ Row-level security on database (users can only access their own data)
  • ✅ Regular security audits and updates
  • ✅ No plaintext storage of sensitive information

Data Retention

  • Account Data: Retained until you delete your account
  • Extracted Leads: Retained indefinitely unless you delete them
  • Usage Records: Retained for billing and analytics purposes
  • API Keys: Retained until revoked
  • Deleted Accounts: Data permanently deleted within 30 days

Data Sharing and Disclosure

We DO NOT:

  • ❌ Sell your data to third parties
  • ❌ Share your leads with anyone
  • ❌ Use your data for advertising
  • ❌ Track your browsing history
  • ❌ Access your e-commerce accounts or other personal accounts

We MAY share data with:

  • Supabase: Database hosting (subject to their privacy policy)
  • Vercel: Web hosting (subject to their privacy policy)
  • OpenAI: AI enrichment - Only anonymized shop data, no personal info
  • Stripe: Payment processing - Only billing information
  • Brevo: Email service - Only for transactional/marketing emails you opt into
  • Customerly: Support chat - Only when you initiate a conversation
  • Google Analytics: Anonymous usage analytics (can be opted out)
  • Legal Authorities: If required by law, court order, or to prevent fraud/harm

Your Rights

You have the right to:

  • Access: Request a copy of your data
  • Correction: Update incorrect information in your account settings
  • Deletion: Delete your account and all associated data (Settings → Account → Delete Account)
  • Portability: Export your leads as CSV
  • Opt-Out: Unsubscribe from marketing emails (link in every email)
  • Revoke: Revoke API keys at any time (Settings → Extension)
  • Object: Object to data processing (contact us at privacy@lead3r.net)

Cookies and Tracking

We use the following cookies:

  • Essential Cookies: For authentication and session management (required)
  • Analytics Cookies: Google Analytics for usage tracking (can be opted out)
  • Support Chat: Customerly widget (only loads if you interact with it)

You can disable analytics and chat in your dashboard settings. Essential cookies cannot be disabled as they are required for the service to function.

Children's Privacy

Lead3r is not intended for users under 13 years of age. We do not knowingly collect data from children. If you believe a child has provided us with personal data, please contact us at privacy@lead3r.net and we will delete it immediately.

International Users

Lead3r is operated from Canada. If you are located outside Canada, your data will be transferred to and processed in Canada and the United States. By using Lead3r, you consent to this transfer.

GDPR Compliance (EU Users)

  • We comply with GDPR requirements
  • You have the right to access, correct, delete, and port your data
  • We have a legal basis for processing (contract performance, legitimate interest, consent)
  • You can withdraw consent at any time
  • You have the right to lodge a complaint with your supervisory authority

CCPA Compliance (California Users)

  • We do not sell your personal information
  • You have the right to know what data we collect
  • You have the right to request deletion
  • You have the right to opt-out of data sales (we don't sell data)
  • We will not discriminate against you for exercising your rights

Changes to This Policy

We may update this privacy policy from time to time. We will notify you of significant changes by:

  • Posting the new policy on this page
  • Updating the "Last Updated" date
  • Emailing you (if you've opted into emails)
  • Displaying a notification in the dashboard

Your continued use of Lead3r after changes constitutes acceptance of the updated policy.

Contact Us

If you have questions, concerns, or requests regarding this privacy policy or your data:

Email: support@lead3r.net

Privacy Inquiries: support@lead3r.net

Website: https://lead3r.net

Mailing Address:
Lead3r
c/o Lead3r Support
Toronto, Ontario
Canada

Consent

By creating an account and using Lead3r, you acknowledge that you have read and understood this Privacy Policy and agree to its terms.