Source
Prospecting workflow & outreach rules — found from sitemap — Lead Forensics
Checked for Lead Forensics on 1 Oct 2026
- Page
- https://www.leadforensics.com/compliance/customer-faq/
- Checked
- 1 Oct 2026, 13:26 UTC
- How we may use it
- Public page, crawling permitted
Technical details
- type
- page
- http status
- 200
- content hash
- sha256:9504b7510cd666fd0220815b8166117b70bea5d8224c8d2b19daf1a726196656
- permission
- robots_ok
- screenshot
- Screenshot on file (internal exhibit, not published)
Cited by
Facts read from this source
-
Processor role Report an error
“When Lead Forensics processes customer personal data through the SaaS platform, we act as a data processor. The customer acts as the data controller”
-
Special category data Report an error
“No. Lead Forensics does not require or process special category personal data under Article 9 of the UK GDPR or EU GDPR to provide its services.”
-
GDPR DPA Report an error
“Lead Forensics supports customers by processing customer personal data under a GDPR-compliant Data Processing Agreement”
-
Review frequency Report an error
“Customer-facing privacy and security materials are reviewed at least annually and whenever there are significant changes to services, systems, sub-processors, legal requirements or security controls.”
-
Tracking code data Report an error
“the service receives the IP address and standard technical request data generated by visits to that website.”
-
Ip matching Report an error
“Lead Forensics uses this data to identify business-level website visits by matching IP addresses against its proprietary business database.”
-
No consumer data Report an error
“We do not collect or share consumer details such as home addresses, and sole traders are excluded.”
-
Displayed information Report an error
“The customer portal may display firmographic information about the matched business, such as the business name, address, and phone number.”
-
Cookie required Report an error
“It isn’t strictly required, but the Lead Forensics cookie can improve match rate.”
-
Security measures Report an error
“Controls may include role-based access, least privilege, authentication controls, encryption in transit, appropriate protection of data at rest, secure cloud infrastructure, logging, monitoring, vulnerability management, secure development practices, backup and recovery processes and incident response procedures.”
-
Toms available Report an error
“Lead Forensics publishes Technical and Organisational Measures covering key security, privacy and operational controls used to protect customer personal data when providing the SaaS services. They are available via our Trust Centre.”
-
ISMS Report an error
“Yes. Lead Forensics maintains an Information Security Management System (ISMS) to manage information security risks and protect confidentiality, integrity, and availability of customer data”
-
ISO 27001 Report an error
“Lead Forensics is certified to ISO/IEC 27001, the internationally recognised standard for information security management systems. Lead Forensics is not currently SOC 2 certified.”
-
SSO Report an error
“Yes. Lead Forensics can support Single Sign-On for customers using an identity provider.”
-
Security testing Report an error
“Yes. Lead Forensics conducts security testing and vulnerability management activities appropriate to the SaaS service.”
-
Breach notification Report an error
“it will notify affected customers without undue delay, in accordance with contractual and legal requirements.”
-
Backup retention Report an error
“Yes. Backup data may be retained for resilience, recovery, security and business continuity purposes.”
-
Used Report an error
“Yes. Lead Forensics may use sub-processors to support the services, including hosting, storage, authentication and B2B contact data services. The current sub-processor list is available in the Data Processing Agreement between the parties.”
-
Change notification Report an error
“Where required by contract, Lead Forensics will notify customers of material sub-processor changes and provide an opportunity to object on reasonable grounds of data protection.”
-
International transfers Report an error
“Where restricted international transfers occur, Lead Forensics uses appropriate safeguards required by applicable data protection laws, such as adequacy decisions, Standard Contractual Clauses, the UK International Data Transfer Agreement, the UK Addendum or other approved transfer mechanisms.”
-
Retention Report an error
“Lead Forensics retains customer personal data only for as long as necessary to provide the services, comply with customer instructions, meet contractual obligations, protect platform security, maintain backups, resolve disputes or satisfy legal requirements.”
-
Deletion on termination Report an error
“When the customer agreement ends, Lead Forensics will delete or return customer personal data in line with the applicable Data Processing Agreement and customer agreement”
-
Export Report an error
“Customers may have access to platform functionality for exporting relevant data, depending on configuration and contracted services.”
-
Rights requests assistance Report an error
“Lead Forensics provides reasonable assistance where required by law and contract, including for requests such as access, correction, deletion, restriction, portability, objection, suppression or opt-out.”
-
Audit rights Report an error
“Customer audit and information rights are handled in accordance with the applicable customer agreement and Data Processing Agreement.”
-
Security questionnaires Report an error
“Lead Forensics may respond to reasonable customer security, privacy, procurement and risk questionnaires where commercially appropriate.”
-
Trust centre materials Report an error
“Customers and prospects can request access to supporting documentation through the Lead Forensics Trust Centre. Additional materials may be made available under an NDA where appropriate”
-
ISO certificate available Report an error
“The Lead Forensics ISO 27001 certificate is available via the Trust Centre.”
-
Service improvement usage Report an error
“Lead Forensics may process usage data, logs, telemetry, diagnostics, and operational information to maintain, secure, support, troubleshoot, and improve services.”
-
CCPA Report an error
“For global privacy laws such as the CCPA/CPRA, Lead Forensics processes customer personal data in accordance with the customer agreement, the Data Processing Agreement, and documented customer instructions.”
-
Document priority Report an error
“If anything in this FAQ differs from the signed agreement or Data Processing Agreement, the signed agreement and Data Processing Agreement will take priority.”