1. Scope and Who We Are
This Privacy Policy explains how DitLead ("DitLead", "we", "our", or "us") collects, uses, shares, stores, and protects personal data when you visit ditlead.com, create an account, use the DitLead application or related services, contact us, or purchase a subscription (collectively, the "Service").
DitLead is the controller of personal data we determine how and why to process. A third-party payment processor, authorized reseller, or Merchant of Record may separately control personal data it processes for checkout, payment, tax, fraud prevention, invoicing, refunds, and billing support under the privacy notice presented at checkout.
2. Personal Data We Collect
Account and profile data
We may collect your name, business email address, phone number, job title, organization, workspace details, login and authentication information, preferences, and information about authorized users.
Billing and transaction data
When a third-party provider processes a purchase, we may receive customer and transaction identifiers, contact and billing details, country, tax status, product and plan information, subscription status, renewal dates, payment status, and limited payment-method information such as card brand and last digits. DitLead does not receive or store your full payment-card number or card security code.
Customer Data and service content
We process data you or your authorized users upload, generate, connect, or otherwise submit to the Service, including contacts, prospect and company information, lists, campaign content, templates, communications, suppression records, call or message metadata, CRM data, integration settings, and instructions given to automation or AI features.
Usage, device, and log data
We may collect IP address, browser and device type, operating system, pages and features used, referring URL, timestamps, session identifiers, performance data, clicks, errors, approximate location derived from IP address, and other diagnostic or security logs.
Support and communications data
We collect information you provide in support requests, demos, surveys, feedback, emails, or other communications with us, including attachments and correspondence history.
Cookies and similar technologies
We and our service providers may use cookies, pixels, local storage, session-replay tools, and similar technologies for authentication, security, preferences, analytics, performance, and—where permitted—marketing. You can control cookies through available consent controls and browser settings, although blocking essential storage may affect the Service.
3. How We Collect Data
We collect data directly from you, automatically from your browser or use of the Service, from authorized users in your organization, from services you connect, from vendors that help us operate the Service, from payment providers in connection with transactions, and from lawful public or licensed business-data sources used to provide lead research and enrichment features.
4. How We Use Personal Data
- Provide, operate, personalize, and maintain the Service.
- Create accounts, authenticate users, and manage workspaces and permissions.
- Fulfill purchases and subscriptions and coordinate billing, tax, cancellation, and refund support with payment providers.
- Process Customer Data and carry out authorized campaign, integration, enrichment, and automation instructions.
- Provide support, onboarding, product notices, and transactional communications.
- Monitor performance, troubleshoot errors, prevent fraud and abuse, and protect users and the Service.
- Analyze and improve features, usability, marketing, and business operations.
- Send marketing communications where permitted and honor opt-out choices.
- Comply with law, enforce our agreements, and establish, exercise, or defend legal claims.
5. Legal Bases for Processing
Where laws such as the GDPR or UK GDPR apply, we process personal data as necessary to perform a contract or take steps at your request; for our legitimate interests in operating, securing, supporting, and improving the Service and conducting our business; to comply with legal obligations; and with consent where consent is required. We may also process data to protect vital interests or establish, exercise, or defend legal claims.
Where we rely on legitimate interests, we consider the impact on affected individuals and do not rely on that basis where those interests are overridden by applicable data-protection rights.
6. Checkout and Payment Providers
We use third-party payment processors and may use an authorized reseller or Merchant of Record. The provider shown at checkout may collect and use identity, payment, device, tax, fraud-prevention, and transaction information to process or sell the product, issue invoices, calculate and remit taxes, manage subscriptions, prevent fraud, and handle payment support and refunds.
The provider shares with us the information needed to provision and administer your DitLead account, confirm entitlements, provide support, reconcile transactions, and comply with law. Its processing is governed by the privacy notice and buyer terms presented at checkout. Payment and refund details are also explained in our Terms of Service and Refund Policy.
7. How We Share Personal Data
We may share personal data only as needed with:
- Payment processors, authorized resellers, and merchants of record for checkout, transactions, subscription management, tax, fraud prevention, invoices, cancellations, and refunds.
- Infrastructure and operations providers that provide hosting, storage, security, authentication, email delivery, telecommunications, monitoring, analytics, session replay, customer support, and other technical services.
- Integrations you authorize, such as email providers, CRMs, social networks, calendars, or automation tools, when you connect them or instruct the Service to exchange data.
- Professional advisers and authorities where reasonably necessary for audit, insurance, legal advice, compliance, safety, or valid legal process.
- Corporate transaction participants in connection with a merger, financing, acquisition, reorganization, or sale of assets, subject to appropriate confidentiality protections.
Service providers may use personal data only under our instructions and contractual restrictions, except where a payment provider or Merchant of Record acts as an independent controller for its own legally defined purposes.
8. International Data Transfers
We and our providers may process data in countries other than the country where you live. Where required, we use recognized safeguards such as adequacy decisions, standard contractual clauses, contractual protections, or another lawful transfer mechanism. You may contact us for information about safeguards relevant to your data.
9. Data Retention
We retain personal data only for as long as reasonably necessary for the purposes described in this policy, including while your account is active and as needed to provide the Service, maintain security and suppression records, comply with tax and accounting obligations, resolve disputes, and enforce agreements.
Retention periods depend on the type of data, the sensitivity and risk, your instructions, contractual requirements, and applicable law. When data is no longer needed, we delete or anonymize it, subject to backup cycles and legal holds.
10. Security
We use reasonable administrative, technical, and organizational measures designed to protect personal data, including access controls, encryption where appropriate, monitoring, and service-provider reviews. No online service or storage method is completely secure, so we cannot guarantee absolute security.
11. Your Privacy Rights
Depending on your location and relationship with us, you may have rights to access, correct, delete, restrict, or object to processing of personal data; receive a portable copy; withdraw consent; opt out of certain marketing or targeted advertising; limit certain uses or disclosures; or appeal a denied request. You may also have the right to complain to a data-protection authority.
To exercise a right, email support@ditlead.com. We may verify your identity and authority before acting. If DitLead processes your data only on behalf of a customer organization, we may direct your request to that organization.
12. California and Other U.S. State Disclosures
Residents of certain U.S. states may have rights concerning access, correction, deletion, portability, targeted advertising, sale or sharing, and certain profiling. We may disclose identifiers, commercial information, internet or device activity, approximate location, and professional information to the provider categories described in section 7 for business purposes.
You will not be discriminated against for exercising an applicable privacy right. An authorized agent may submit a request where permitted by law, subject to verification.
13. Marketing Choices
You can unsubscribe from marketing emails using the link in the message or by contacting us. We may still send account, security, billing, legal, or service messages. Cookie and advertising choices may also be available through our consent controls or your browser and device settings.
14. Children's Privacy
The Service is intended for business users aged 18 or older and is not directed to children. We do not knowingly collect personal data from children. Contact us if you believe a child has provided personal data to the Service.
15. Third-Party Sites and Services
The Service may link to or integrate with third-party services. Their privacy practices are governed by their own notices, and we are not responsible for services we do not control. Review their policies before providing data or enabling an integration.
16. Changes to This Policy
We may update this policy to reflect changes in the Service, our practices, or applicable law. We will post the revised policy and update the effective date. Where required, we will provide additional notice of material changes.
17. Contact Us
For privacy questions or requests, email support@ditlead.com. For questions about payment data, you may also contact the provider identified at checkout or on your receipt under its privacy notice.