Back to home

Privacy policy

Last updated: September 8, 2026

This policy explains what personal data RadarLeads processes about its registered users, for what purposes, under which legal bases and with whom it is shared. Important: the leads you obtain with RadarLeads are businesses, not private individuals; the processing of public commercial information is described in detail in our Public data policy. This policy applies from the moment you create an account until after you close it, for the periods described here.

1. Data controller and contact

The data controller for your personal data is RadarLeads; you can direct any privacy question to contacto@radarleads.com. We answer rights requests and privacy questions within a maximum of one business day and typically resolve them within ten days.

If you contact us from the European Union or the European Economic Area, this same channel serves as the contact point to exercise the rights the GDPR grants you; if you contact us from Mexico, the LFPDPPP rights apply through the same address.

2. Data we collect

Account data: name, email address, password (stored exclusively as a cryptographic hash) and, if you provide it, your company or country. These are the minimum required to create and operate your account.

Product usage data: searches performed (business type, city, date), saved searches, downloaded exports and credit consumption. They exist to show your history, enforce plan limits and improve the product.

Technical data: access logs (IP address, browser agent, dates and times) for security and diagnostics. Payment data: handled entirely by Stripe; we only keep customer and subscription identifiers, plan status and invoice history — never your full card number.

3. Purposes and legal bases

Providing the service: operating your account, running searches, storing history and exports, and enforcing plan limits. Basis: contract performance. Without this data we cannot give you access to the product.

Billing and legal defense: issuing charges, keeping vouchers and handling disputes. Basis: contract performance and legal or tax obligations. Operational communications: renewal notices, invoices and service incidents. Basis: contract performance and legitimate interest.

Product improvement and security: aggregated usage metrics, abuse prevention and fraud detection. Basis: legitimate interest, always weighed and documented; we do not use your data for third-party advertising and we do not sell it.

4. Providers and international transfers

We operate with specialized providers acting as data processors: Supabase (hosting, database and authentication), Stripe (payments), Apify (public data collection infrastructure), Vercel (application hosting) and transactional email providers. Each one accesses only the data necessary for its function and under a processor agreement.

Some providers are located outside your country, so international data transfers may occur. We carry them out with appropriate safeguards — standard contractual clauses or other recognized mechanisms — and limit access to what is strictly necessary. You can request the current list of processors by writing to contacto@radarleads.com.

5. Retention and deletion

We keep account data while the account is active so we can serve you. Searches and exports remain in your history while your account is active; you can request their deletion at any moment.

After account closure (by you or by us), we delete or anonymize personal data within a maximum of ninety (90) days, unless a legal or tax obligation requires keeping billing vouchers for the statutory periods (typically five years in Mexico and six in Spain). Technical security logs are kept for short periods and rotated.

6. Your rights

At any time, by writing to contacto@radarleads.com, you may exercise: access (know what data of yours we process), rectification (correct it), erasure (delete it), objection (stop certain processing), portability (receive it in a structured format) and withdrawal of consent where consent is the basis.

You can also download your exports at any time from the product history without filing a request. If you believe we have not honored a right properly, you may complain to your country’s data protection authority: in Spain, the Agencia Española de Protección de Datos; in Mexico, the INAI; elsewhere, the equivalent authority.

7. Cookies and local storage

RadarLeads uses strictly functional cookies and local storage only: keeping your session securely active and remembering your language preference. We use no advertising cookies, no profiling and no third-party commercial trackers.

You can clear or block these cookies from your browser; the only practical consequence is having to log in again. Since there is no advertising tracking, we do not show a consent banner: there is nothing to consent to.

8. Security

We apply proportionate technical and organizational measures: encryption in transit (HTTPS/TLS) and at rest in the database, hashed passwords, database-level row access control (Row Level Security) so each user only reaches their own data, and least-privilege principles for the team.

Internal access to personal data is limited to people who need it to operate the service, and that access is audited. Should any security incident affect your data, we will notify you without undue delay together with the measures taken, in accordance with applicable regulation.

9. Changes to this policy and contact

We may update this policy to reflect changes in the service or regulation; we will publish the current version on this page with its update date and, if the change is material, notify active account holders by email.

For any privacy matter — exercising rights, requesting the processor list, reporting an issue — write to contacto@radarleads.com. We read and answer every email; there are no ignored forms.