Privacy Policy

Last Updated: July 19, 2025

Deal.ai Inc. ("LeadFalcon," "we," "our," and/or "us") values the privacy of individuals who use our website, https://leadfalcon.com, our application programming interfaces (APIs), and our marketing automation platform (collectively, "Service"). This privacy policy ("Privacy Policy") explains how we collect, use, and share Personal Information from or about our users, their contacts, or their devices. As used in this Privacy Policy, "Personal Information" means any information relating to an identified or identifiable individual. By using our Service, you agree to the collection, use, disclosure, sharing, and procedures this Privacy Policy describes. Beyond the Privacy Policy, your use of our Service is also subject to our Terms of Service.

INFORMATION WE COLLECT

We may collect a variety of Personal Information from or about you, your contacts, or your devices from various sources, as described below. Where applicable, we indicate whether and why you must provide us with your Personal Information, as well as the consequences of failing to do so. If you do not provide Personal Information when requested, you may not be able to benefit from our Service if that information is necessary to provide you with the Service or if we are legally required to collect it.

A. Information You Provide to Us

Account Creation and Organization Setup. When you sign up for an account on our Service, we collect your Personal Information, including your name, email address, password, organization name, and phone number. We also collect information about your role within your organization and your marketing preferences.

Contact Management. Our Service allows you to upload and manage contact lists. When you upload contacts, we collect the information you provide about those contacts, which may include names, email addresses, phone numbers, profile information, source information, and any custom fields you create. You represent and warrant that you have obtained all necessary consents to provide this information to us.

Campaign and Message Content. When you create email campaigns, SMS messages, or templates through our Service, we collect the content you create, including text, images, links, and personalization variables. We also collect information about your campaign settings, such as sender information, scheduling preferences, and targeting criteria.

Communications. If you contact us directly for support, feedback, or other inquiries, we may receive your name, email address, the contents of your message or attachments, and any other information you choose to provide. When we send you emails, we may track whether you open them to improve our Service and customer experience.

Calendar and Booking Information. If you use our calendar booking features, we collect your availability preferences, timezone settings, and booking rules. We also collect information about appointments scheduled through our Service.

Webhook Configurations. If you configure webhooks to integrate with third-party services, we collect the webhook URLs and any authentication credentials you provide for those integrations.

Payments and Billing. When you purchase credits or pay for our Service, your payment card information, billing address, and other payment details ("Payment Information") are processed by our third-party payment processor, Stripe. We receive limited information about your payments, such as the last four digits of your card, transaction amounts, and payment status.

B. Information We Collect When You Use Our Service

Usage Information. We automatically collect information about how you use our Service, including:

  • Features accessed and actions taken
  • Email and SMS campaign performance metrics (opens, clicks, bounces, unsubscribes)
  • API calls made and endpoints accessed
  • Credit usage and balance history
  • Login times and session duration

Device and Browser Information. We collect information about the device and software you use to access our Service, including:

  • IP address and approximate geographic location
  • Device type, operating system, and browser type
  • Screen resolution and browser settings
  • Language preferences
  • Referring website or application

Contact Engagement Data. We collect information about how your contacts interact with the messages you send through our Service, including:

  • Email opens, clicks, and bounce information
  • SMS delivery status and responses
  • Opt-out and unsubscribe actions
  • Link clicks and conversion tracking

Log Data. Our servers automatically record information about each request made to our Service, including IP addresses, request method, URL, response code, and timestamp.

Information from Cookies and Similar Technologies. We and our third-party partners use cookies, pixel tags, web beacons, and similar technologies (collectively "Cookies") to collect information about your browsing activities and distinguish you from other users. We use the following types of Cookies:

  • Strictly Necessary Cookies: Required for authentication, security, and core Service functionality
  • Functional Cookies: Remember your preferences and settings
  • Analytics Cookies: Help us understand Service usage and improve performance
  • Marketing Cookies: Track the effectiveness of our marketing campaigns

You can control Cookie settings through your browser. Note that disabling certain Cookies may limit your ability to use some features of our Service.

C. Information We Receive from Third Parties

OAuth Providers. If you choose to connect your Google account for calendar integration, we receive basic profile information and calendar access permissions as authorized by you.

Email Service Providers. When you send emails through our Service, we receive delivery status updates, bounce notifications, and spam complaints from email service providers like AWS SES and Mailgun.

SMS Gateway Providers. We receive delivery confirmations, error reports, and inbound message notifications from SMS providers like Twilio when you use our SMS features.

Payment Processors. We receive transaction confirmations and limited payment information from Stripe when you make purchases.

Analytics Partners. We may receive aggregated demographic information and usage insights from analytics services we use to improve our Service.

Partner Organizations. If you access our Service through a partner or reseller, we may receive your account information and usage data from that partner.

D. Information from Webhooks and APIs

When you configure webhooks or use our APIs, we may receive:

  • Event notifications from your integrated services
  • Data payloads you send through API calls
  • Authentication tokens and API keys for accessing your account
  • Error logs and debugging information

HOW WE USE THE INFORMATION WE COLLECT

We use the Personal Information we collect to:

Provide and Operate Our Service:

  • Process and deliver your email and SMS campaigns
  • Manage your contacts and lists
  • Track campaign performance and engagement
  • Process credit purchases and usage
  • Provide API access and webhook functionality

Improve and Develop Our Service:

  • Analyze usage patterns and user behavior
  • Develop new features and functionality
  • Optimize campaign delivery and performance
  • Enhance our AI personalization capabilities

Communicate with You:

  • Send service-related notifications and updates
  • Respond to support requests and inquiries
  • Provide onboarding and training materials
  • Send marketing communications (with your consent)
  • Alert you about account activity or security issues

Ensure Compliance and Security:

  • Detect and prevent fraud, spam, and abuse
  • Enforce our Terms of Service and Acceptable Use Policy
  • Comply with legal obligations and regulatory requirements
  • Maintain the security and integrity of our Service
  • Monitor for compliance with anti-spam laws

Personalization and AI Features:

  • Generate AI-powered email and SMS content
  • Provide personalized recommendations
  • Optimize send times and messaging
  • Analyze contact engagement patterns

Analytics and Business Intelligence:

  • Generate aggregated usage statistics
  • Create benchmarks and industry insights
  • Improve our business operations
  • Develop new products and services

LEGAL BASES FOR PROCESSING

If you are in the European Economic Area (EEA), United Kingdom (UK), or another jurisdiction with similar data protection laws, we process your Personal Information only when we have a valid legal basis:

Consent: For marketing communications and certain Cookie usage

Contract Performance: To provide the Service you've requested and process payments

Legal Obligations: To comply with laws, regulations, and legal processes

Legitimate Interests: For Service improvement, security, fraud prevention, and business operations, when these interests are not overridden by your rights

HOW WE SHARE INFORMATION

We may share your Personal Information in the following circumstances:

Service Providers: We share information with vendors who help us operate our Service, including:

  • Cloud hosting providers (AWS, Vercel)
  • Email delivery services (AWS SES, Mailgun)
  • SMS gateway providers (Twilio)
  • Payment processors (Stripe)
  • Analytics providers
  • Customer support tools

Email and SMS Recipients: When you send campaigns through our Service, recipient email addresses and phone numbers are shared with our delivery partners to complete the transmission.

Partner Organizations: If you're part of a partner or reseller program, we may share usage data and account information with your partner organization.

Legal Requirements: We may disclose information when required by law, court order, or legal process, or when we believe disclosure is necessary to:

  • Protect our rights, property, or safety
  • Investigate fraud or security issues
  • Enforce our Terms of Service
  • Respond to government requests

Business Transfers: If we're involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

Aggregated Data: We may share aggregated, anonymized data that doesn't identify you personally for research, marketing, or other purposes.

With Your Consent: We may share your information for other purposes when you give us explicit permission.

Important Note: We do not sell your Personal Information or your contacts' Personal Information to third parties for their marketing purposes. All SMS opt-in data and consent records are never shared with third parties except as required to deliver messages or comply with law.

YOUR RIGHTS AND CHOICES

Marketing Communications

  • Email: Unsubscribe using the link in our marketing emails
  • SMS: Text "STOP" to opt out of SMS marketing
  • Account Notifications: Manage preferences in your account settings

Your Privacy Rights

Depending on your location, you may have the following rights:

  • Access: Request a copy of your Personal Information
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your Personal Information
  • Portability: Receive your data in a portable format
  • Restriction: Limit how we process your information
  • Objection: Object to certain processing activities
  • Withdrawal of Consent: Withdraw previously given consent

To exercise these rights, contact us at legal@leadfalcon.com. We may verify your identity before processing your request.

Contact Rights

Your contacts who receive messages through our Service have the right to:

  • Opt out of future messages
  • Request their information be deleted from your lists
  • File complaints about unwanted messages

We provide automated opt-out mechanisms and honor all unsubscribe requests promptly.

Cookie Management

You can control Cookies through your browser settings. Disabling Cookies may limit some Service functionality.

Do Not Track

We do not currently respond to Do Not Track signals.

DATA RETENTION

We retain Personal Information for as long as necessary to:

  • Provide our Service to you
  • Comply with legal obligations
  • Resolve disputes and enforce agreements
  • Maintain business records

Specific retention periods:

  • Account Data: Retained while account is active plus 30 days
  • Campaign Data: Retained for 2 years for analytics and compliance
  • Contact Engagement Data: Retained for 1 year
  • Payment Records: Retained as required by tax and accounting laws
  • Opt-out Records: Retained indefinitely to honor preferences

SECURITY

We implement industry-standard security measures to protect your Personal Information, including:

  • Encryption in transit (TLS/SSL) and at rest
  • Access controls and authentication
  • Regular security assessments
  • Employee training on data protection
  • Incident response procedures

However, no method of transmission or storage is 100% secure. You are responsible for maintaining the security of your account credentials.

INTERNATIONAL DATA TRANSFERS

Our Service is operated from the United States. If you're located outside the U.S., your information will be transferred to, stored, and processed in the U.S. and other countries where our service providers operate.

We ensure appropriate safeguards for international transfers through:

  • Standard Contractual Clauses approved by the European Commission
  • Data processing agreements with our vendors
  • Compliance with applicable data protection laws

CHILDREN'S PRIVACY

Our Service is not intended for children under 16. We do not knowingly collect Personal Information from children. If you believe we've collected information from a child, please contact us immediately at legal@leadfalcon.com.

THIRD-PARTY SERVICES

Our Service may contain links to third-party websites or services. We're not responsible for their privacy practices. Please review their privacy policies before providing them with information.

COMPLIANCE WITH MARKETING LAWS

We provide tools to help you comply with marketing laws, but you are responsible for:

  • Obtaining proper consent before adding contacts
  • Honoring opt-out requests
  • Including required disclosures in your messages
  • Complying with CAN-SPAM, TCPA, GDPR, and other applicable laws

CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy periodically. We'll notify you of material changes by:

  • Posting the updated policy on our website
  • Sending an email to registered users
  • Displaying a notice in the Service

Your continued use after changes constitutes acceptance of the updated policy.

CONTACT INFORMATION

For privacy-related questions or requests, contact us at:

Deal.ai Inc.
Attn: Legal Department (Privacy)
2222 Ponce de Leon Blvd.
Miami, FL 33134
Email: legal@leadfalcon.com

Data Protection Officer: privacy@leadfalcon.com

If you're in the EEA or UK and are unsatisfied with our response, you have the right to lodge a complaint with your local supervisory authority.


LeadFalcon™
2025 All Rights Reserved.