Privacy Policy
Last updated: May 2026
1. Who We Are
LeadOS ("we", "us", "our") is a lead intelligence platform operated at leados.net. We provide autonomous lead discovery, AI scoring, enrichment, and delivery services to business clients ("clients"). If you have questions about this policy, contact us at support@leados.net.
2. Information We Collect
2.1 Client account data
When you create an account, we collect: your name, email address, company name, and billing address. For payment processing, Stripe handles card data — we never see or store raw card numbers.
2.2 Usage data
We collect technical data about how you use our platform: API calls made, campaigns created, credits consumed, webhook delivery status, and page interactions. This is used for billing, product improvement, and fraud prevention.
2.3 Lead intelligence (pass-through)
LeadOS identifies publicly available signals about individuals who may have shown buying intent. This information is processed and delivered to clients. We do not retain the personal data of identified individuals — it passes through our system to you and is deleted after delivery (or after 30 days in your portal, whichever comes first).
Lead fingerprints (one-way SHA-256 hashes) are stored for 90 days in Redis solely to prevent duplicate deliveries. These hashes cannot be reversed to recover personal information.
3. How We Use Your Data
- To operate and improve our platform
- To process billing and issue invoices
- To send service emails (supply scan results, low credit alerts, delivery failures)
- To detect and prevent fraud and abuse
- To comply with legal obligations
We do not sell your data to third parties. We do not use your data for advertising.
4. Data Sharing
We share data with the following service providers to operate our platform:
- Stripe — payment processing
- Resend — transactional email delivery
- Neon — PostgreSQL database hosting (EU and US regions available)
- Upstash — Redis cache and queue
- Vercel — frontend hosting
- AWS — secrets management and file storage (invoices)
All providers are contractually bound to process data only as instructed by us and to implement appropriate security measures.
5. GDPR Compliance
LeadOS operates under a pass-through model for lead data. We identify publicly available signals — posts, discussions, job listings, press releases — made available on public platforms. We do not store personal data of identified individuals beyond the delivery window.
Clients who receive lead data via LeadOS are independent data controllers for their outreach activities. They are responsible for complying with GDPR, CCPA, and any applicable local data protection law in their outreach.
For EU clients, we offer Data Processing Agreements (DPA) on request. Contact us at support@leados.net.
6. CCPA Compliance
California residents may request access to personal information we hold about them, request deletion, or opt out of any sale of personal information (note: we do not sell personal information). To exercise these rights, email support@leados.net.
7. Data Retention
- Client account data: retained for the duration of your account and 30 days after closure
- Credit ledger and billing records: 7 years (legal requirement)
- Usage and audit logs: 2 years
- Lead delivery metadata (no PII): 1 year
- Lead fingerprints: 90 days (Redis, automatic expiry)
- Full lead payloads: 30 days (Redis, automatic expiry)
8. Security
We implement industry-standard security measures: TLS encryption in transit, AES-256 encryption at rest for sensitive fields, API keys stored as SHA-256 hashes (never in plain text), IP whitelisting for admin access, mandatory TOTP 2FA for all admin accounts, and regular security audits.
9. Cookies
Our public website (leados.net) uses minimal cookies. See our Cookie Policy for details. The client portal uses HTTP-only secure session cookies required for authentication — these are not optional.
10. Children's Privacy
LeadOS is a B2B platform intended for business users aged 18 and over. We do not knowingly collect data from children under 16.
11. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated by email to account holders. Continued use of the platform after notice constitutes acceptance.
12. Contact
Privacy questions or requests: support@leados.net