Privacy Policy
Last updated: March 18, 2026
How we collect, use, disclose, and safeguard your information when you visit our website and use our platform.
Lead Prospecting AI, LLC ("LPAI," "we," "us," or "our") operates the website leadprospecting.ai, the application at app.leadprospecting.ai, and related services. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our platform.
1. Information We Collect
1.1 Information You Provide
- •Account Information: Name, email address, phone number, business name, and password when you create an account.
- •Payment Information: Credit card details, billing address, and transaction history. Payment processing is handled by Stripe — we do not store full card numbers on our servers.
- •Business Data: Contacts, leads, appointments, quotes, invoices, email content, and other business data you enter into the CRM.
- •Communications: Messages sent through our unified inbox (SMS, email, chat), support requests, and feedback.
- •Custom Quote Requests: Company name, project details, budget range, and service selections submitted via our quote request form.
1.2 Information Collected Automatically
- •Usage Data: Pages visited, features used, session duration, click patterns, and scroll depth.
- •Device Information: Browser type, operating system, screen resolution, and device identifiers.
- •Network Data: IP address, approximate geographic location, referring URL, and ISP.
- •Analytics: We use Google Analytics 4, Microsoft Clarity (heatmaps and session recordings), and our own self-hosted analytics to understand how visitors use our site.
1.3 Information from Third Parties
- •OAuth Providers: If you sign in with Google or Microsoft, we receive your name, email, and profile picture from the provider.
- •Lead Scraper Data: Business lead data is sourced from publicly available directories including Google Maps, Google Business Profiles, and public business registries.
2. How We Use Your Information
- •Provide Services: Operate the CRM, lead scraper, email warming, content engine, social scheduler, AI receptionist, email campaigns, SEO tracking, and website design services.
- •Process Payments: Bill subscriptions, one-time purchases, and usage-based charges through Stripe.
- •Improve the Platform: Analyze usage patterns to fix bugs, improve features, and develop new products.
- •Communications: Send transactional emails (receipts, password resets, account alerts), product updates, and marketing communications (with your consent).
- •Security: Detect fraud, prevent abuse, and protect our users and systems.
- •Legal Compliance: Comply with applicable laws, regulations, and legal processes.
- •AI Processing: Use AI models to generate content (blog posts, social posts, email campaigns) and provide AI receptionist services based on your configuration. We do not use your business data to train AI models.
3. Data Sharing
We do not sell your personal information. We share data only in these circumstances:
- •Service Providers: Stripe (payments), Google (OAuth, analytics), Microsoft (OAuth, Clarity), Resend (transactional email), Railway (hosting), Vercel (hosting), Cloudflare R2 (file storage), and DataForSEO (rank tracking).
- •Your Integrations: When you connect third-party services (Google Calendar, Microsoft Calendar, Google Analytics, Google Search Console), data flows to those services per their privacy policies.
- •Legal Requirements: When required by law, subpoena, or court order, or to protect our rights, property, or safety.
- •Business Transfer: In connection with a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity.
4. Lead Scraper Data
Our lead scraper collects business information from publicly available sources. This includes business names, addresses, phone numbers, email addresses, websites, reviews, and other publicly listed information. This data is not covered by this Privacy Policy as it is publicly available. Users of our scraper are responsible for complying with applicable laws (including CAN-SPAM, TCPA, and GDPR) when contacting scraped leads.
5. Email Warming
Our email warming service sends and receives emails on your behalf to build sender reputation. These warming emails are automated, use AI-generated content, and are automatically cleaned from your inbox. We do not read, store, or analyze the content of your regular (non-warming) emails.
6. AI Receptionist (Voice AI)
Our AI receptionist processes voice calls in real time to answer questions, qualify leads, and book appointments. Call audio is processed by our AI provider and is not stored permanently. Call summaries and transcriptions are stored in your CRM for your review. We do not use call recordings to train AI models.
7. Data Security
- •All data is encrypted in transit using TLS 1.2+.
- •Passwords are hashed using bcrypt with salt.
- •Payment processing is PCI DSS compliant via Stripe.
- •Database access is restricted and audited.
- •We perform regular security reviews and updates.
- •Files are stored in Cloudflare R2 with access controls.
8. Data Retention
- •Account Data: Retained while your account is active and for 90 days after deletion request.
- •Business Data (CRM): Retained while your account is active. Deleted within 90 days of account closure.
- •Analytics Data: Aggregated analytics retained indefinitely. Individual session data retained for 12 months.
- •Payment Records: Retained for 7 years per tax and accounting requirements.
- •Lead Scraper Cache: Cached lead data is retained for 30 days and then refreshed.
9. Your Rights
Depending on your jurisdiction, you may have the right to:
- •Access: Request a copy of the personal data we hold about you.
- •Correction: Request correction of inaccurate personal data.
- •Deletion: Request deletion of your personal data ("right to be forgotten").
- •Portability: Request your data in a machine-readable format.
- •Opt-Out: Unsubscribe from marketing emails at any time via the link in each email.
- •Restrict Processing: Request that we limit how we use your data.
To exercise any of these rights, contact us at info@leadprospecting.ai. We will respond within 30 days.
11. Children's Privacy
Our services are designed for businesses and are not directed at individuals under the age of 18. We do not knowingly collect personal information from children. If we discover we have collected data from a child, we will delete it promptly.
12. International Data Transfers
Our servers are located in the United States. If you access our services from outside the US, your data will be transferred to and processed in the US. By using our services, you consent to this transfer.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or by posting a notice on our website. Continued use of the service after changes constitutes acceptance of the updated policy.
14. Contact Us
If you have questions about this Privacy Policy or your data, contact us: