Privacy Policy for LeadsBoost
Effective Date: 1st January 2025
Last Updated: 1st January 2025
LeadsBoost (“we”, “our”, or “us”) is a customer relationship and lead management platform designed to help businesses capture, organize, and communicate with leads across multiple channels — including Facebook, Instagram, WhatsApp, and other supported integrations.
We value your privacy and are committed to handling your personal information transparently, securely, and in compliance with Meta’s Platform Terms and Developer Policies as well as applicable data protection laws including Malaysia’s Personal Data Protection Act (PDPA 2010) and, where applicable, the EU General Data Protection Regulation (GDPR).
1. Information We Collect
We collect and process information in the following categories:
1.1 Information You Provide Directly
- Account registration details (name, email, phone number, password, company name)
- Profile or team setup data
- Lead forms, contact lists, or custom fields manually entered by you
- Communications you send to us (support requests, feedback, inquiries)
1.2 Information Received from Meta APIs
When you connect your Facebook or Instagram account, we may receive:
- Your Page and Ad Account information (Page ID, name, access tokens)
- Leads from Facebook Lead Ads (including form responses such as name, email, phone, and custom questions)
- Insights, metrics, or messages from Page inboxes if integrated
- Permission data (scopes granted by your Facebook/Instagram login)
We only request the minimum required permissions needed for LeadsBoost to function, and we store or use that data strictly according to your authorization.
1.3 Automatically Collected Information
- IP address, browser type, operating system
- Device identifiers and access logs
- Cookies, session tokens, and analytics data (for service functionality and security)
2. How We Use Your Information
We use your personal and business data solely to:
- Provide, operate, and maintain the LeadsBoost platform
- Synchronize and manage lead data retrieved from connected Meta assets
- Enable communication workflows (e.g., CRM integrations, WhatsApp messages, email)
- Analyze engagement and conversion metrics for business insights
- Improve platform features, security, and performance
- Detect, prevent, and address fraud, abuse, or technical issues
- Comply with legal obligations or enforce our Terms of Service
We do not sell or rent any personal data to third parties.
3. Data Sharing and Disclosure
We may share information only under the following limited circumstances:
3.1 With Service Providers
We engage trusted third-party service providers to support our operations, such as:
- Cloud hosting and infrastructure
- Database, logging, and monitoring services
- Analytics and error-tracking tools
- Email or notification delivery providers
These providers are bound by strict confidentiality and data protection obligations and may only process data on our documented instructions.
3.2 With Meta Platforms
To provide our features, we interact with Meta’s APIs (e.g., Facebook and Instagram). This may include:
- Fetching lead data from your connected Pages and Ad Accounts
- Refreshing tokens and validating permissions
We do not sell, transfer, or disclose Meta-derived data to unrelated third parties. We use Meta data only as permitted by Meta’s policies and your explicit authorization.
3.3 For Legal Compliance and Protection
We may disclose information if required to:
- Comply with applicable law, regulation, legal process, or governmental request
- Enforce our terms and investigate potential violations
- Protect the rights, property, and safety of LeadsBoost, our users, or the public
3.4 Business Transfers
If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change and your options.
4. Data Retention
We retain data only as long as necessary for the purposes described in this policy or as required by law:
- Lead data retrieved from Meta is retained until you delete it or disconnect the relevant Page or account.
- Account-related data is retained while your account is active.
- If your account is inactive for more than 12 months, we may anonymize or delete your data, subject to legal obligations.
When you request account deletion, we will delete or anonymize your personal data within 30 days, except where retention is required for legal, security, or billing purposes. Backup copies may persist for a limited time (up to 90 days) for disaster recovery.
5. Data Security
We implement technical and organizational measures to protect your data, including:
- Encrypted transmission (HTTPS/TLS)
- Encryption at rest where applicable
- Role-based access controls and least-privilege principles
- Audit logs and monitoring of access where appropriate
- Regular updates and security patches
However, no method of transmission or storage is entirely secure. You are responsible for keeping your password and account credentials confidential.
6. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data, subject to legal retention obligations.
- Restriction: Request limitation of certain processing activities.
- Portability: Request your data in a structured, commonly used, machine-readable format where technically feasible.
- Objection: Object to processing carried out on the basis of legitimate interests or direct marketing.
You can also:
- Disconnect your Meta account at any time via your Facebook Settings.
- Delete leads and records from within the LeadsBoost interface.
To exercise these rights, contact us at it@tektician.com. We aim to respond within 30 days, subject to verification of your identity and applicable law.
7. International Data Transfers
Your data may be processed or stored in countries other than your own (for example, where our cloud providers operate). When we transfer data internationally, we take steps to ensure an adequate level of protection, such as:
- Using data centers in jurisdictions with appropriate protections, and/or
- Implementing standard contractual clauses or equivalent safeguards where required by law.
8. Children’s Privacy
LeadsBoost is intended for use by businesses and professionals, not children.
We do not knowingly collect personal data from children under 13 years of age (or under 16 where GDPR applies). If we become aware that we have collected such data, we will promptly delete it.
9. Third-Party Services and Integrations
LeadsBoost may integrate with third-party services such as:
- WhatsApp Business API or other messaging platforms
- Email providers
- Analytics platforms
- Payment gateways or billing platforms
- External CRMs or data warehouses
Your use of these services is subject to their own privacy policies. We are not responsible for how third-party providers handle data once transferred at your instruction or via an integration you configure.
We recommend reviewing the privacy policies of any third-party services you connect to LeadsBoost.
10. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Keep you logged in and manage sessions
- Remember your preferences
- Analyze usage and performance of our platform
- Improve features and detect issues
You can control cookies through your browser settings. Disabling certain cookies may affect the functionality of the platform.
11. Legal Basis for Processing (GDPR)
Where the GDPR applies, we process your personal data on the following legal bases:
- Contractual Necessity: To provide the services you have requested (e.g., creating and managing your LeadsBoost account, syncing leads).
- Consent: When you connect external platforms (such as Facebook or Instagram) or agree to optional features.
- Legitimate Interests: To improve our services, prevent abuse, secure our systems, and understand how our platform is used.
- Legal Obligations: To comply with applicable laws, regulations, and lawful requests.
You have the right to withdraw consent at any time where processing is based on consent, without affecting the lawfulness of processing prior to withdrawal.
12. Compliance with Meta Platform Terms
LeadsBoost complies with the Meta Platform Terms and related data protection requirements. In particular, we:
- Use Meta data only for the specific purposes you authorize.
- Do not sell, rent, or transfer Meta-derived data to third parties without permission.
- Implement appropriate safeguards to protect data obtained from Meta’s APIs.
- Respect user deletion requests and data subject rights.
- Periodically review and minimize the data and permissions we retain.
13. Facebook / Instagram Data Deletion Instructions
If you have used LeadsBoost in connection with your Facebook or Instagram account and wish to request deletion of data obtained via Meta:
You may:
- Disconnect LeadsBoost from your Facebook account via Facebook Settings, and/or
- Contact us at it@tektician.com with the subject line: “Facebook/Instagram Data Deletion Request”.
Please include:
- Your full name
- The email address associated with your LeadsBoost account
- The Facebook Page(s) or Instagram account(s) connected, if applicable
Upon receiving your request, we will delete associated Meta-derived data from our systems within 30 days, except where retention is required by law or for legitimate security, fraud prevention, or dispute resolution reasons.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will:
- Post the updated policy at:
https://leadsboost.net/privacy-policy, and - Update the “Last Updated” date at the top of this page.
Your continued use of LeadsBoost after changes take effect constitutes your acceptance of the updated policy.
15. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
LeadsBoost Privacy Office
Email: it@tektician.com
Address:
Attention: Data Protection Officer