Trust and transparency

Security and Data Protection

PureLeads uses administrative, technical, and operational safeguards designed to protect account information, search activity, exported files, and platform services.

Last updated: August 11, 2026

Security principles

How PureLeads protects the platform

Our security program is based on layered safeguards, limited access, responsible data handling, and continuous improvement as the platform evolves.

01

Access control

Administrative and production access is limited to authorized personnel who need it to operate, support, maintain, or secure PureLeads.

02

Secure transmission

PureLeads uses HTTPS to help protect information while it travels between supported browsers and our web services.

03

Application safeguards

The platform uses protections such as input validation, parameterized database queries, session controls, and authorization checks where applicable.

04

Operational monitoring

Relevant system events and errors may be logged and reviewed to support troubleshooting, abuse prevention, service reliability, and security investigations.

Protective controls

Security across accounts, payments, and data

Account and password security

  • Passwords should be stored using a strong one-way password-hashing method.
  • Login sessions are used to keep authenticated areas separate from public pages.
  • Role-based authorization restricts customer and administrative functions.
  • Account status controls may be used to suspend access when fraud, abuse, or compromise is suspected.
  • Users should choose a unique password that is not used on another website.

Payment security

Payments may be processed by third-party payment providers such as Stripe or another provider displayed during checkout. PureLeads does not need to store a customer's complete payment-card number when payment details are submitted directly to the payment provider.

Payment providers maintain their own security, privacy, fraud-prevention, and compliance programs. Their terms and privacy notices apply to information they process.

Lead data and exports

Search requests, result records, job status information, and generated CSV files may be stored as needed to deliver the service, prevent duplicate processing, support account history, resolve disputes, and diagnose errors.

Download links and job records should be restricted to the customer who created the job or to authorized PureLeads personnel. Customers are responsible for protecting files after downloading or forwarding them.

Infrastructure and service providers

PureLeads may rely on hosting, database, email, analytics, payment, search, data, and security providers. Providers receive only the information reasonably needed to perform their services and are subject to their own safeguards and contractual obligations where applicable.

Data lifecycle

Collection, use, retention, and deletion

1

Collection

We collect information customers provide, service and transaction records, technical logs, and information needed to perform requested lead searches.

2

Use and storage

Information is used to operate accounts, process jobs, deliver results, manage credits and payments, provide support, improve reliability, and prevent misuse.

3

Retention and deletion

Records are retained only as reasonably needed for the service, legal obligations, security, fraud prevention, accounting, backups, or dispute resolution, then deleted or de-identified according to operational requirements.

Deletion requests: Account holders may contact support to request account review, correction, export, or deletion. Some records may be retained when required for legal, financial, security, or fraud-prevention purposes. See the Privacy Policy for additional details.
Incident response

Responding to suspected security events

When PureLeads becomes aware of a suspected security incident, we may investigate the scope, contain affected services, preserve relevant evidence, correct identified weaknesses, restore normal operations, and monitor for additional activity.

When legally required, PureLeads will provide appropriate notice to affected individuals, regulators, service providers, or law enforcement based on the circumstances.

Your role

Customer security responsibilities

  • Use a long, unique password and keep it confidential.
  • Do not share accounts or authentication credentials.
  • Keep your browser, operating system, and devices updated.
  • Confirm that you are using the official pureleads.us domain before signing in.
  • Secure downloaded CSV files and delete copies no longer needed.
  • Report suspicious logins, unexpected emails, or unauthorized jobs promptly.
  • Use lead information in accordance with applicable privacy, marketing, calling, and email laws.
Responsible disclosure

Report a suspected vulnerability

If you believe you found a security weakness affecting PureLeads, please report it privately and give us reasonable time to investigate before making it public.

Include the following information

  • A clear description of the suspected vulnerability
  • The affected page, URL, feature, or account workflow
  • Steps needed to reproduce the issue
  • The date and time the behavior was observed
  • Screenshots or logs with passwords, tokens, and personal data removed
  • Your preferred contact information for follow-up
Do not: access another person's account or data, disrupt service, run denial-of-service tests, install malware, use social engineering, alter or destroy records, download unnecessary data, or publicly disclose an issue before PureLeads has had a reasonable opportunity to respond.

Send security reports to support@pureleads.us. For ordinary account or billing questions, use the support center instead.

Security limitations

No website, network, storage system, transmission method, or security control can guarantee absolute protection. PureLeads works to use safeguards appropriate to the nature of the service and the information involved, but customers should maintain their own security controls and backups.

This page describes PureLeads' general security approach. It is not a certification, audit report, service-level agreement, warranty, or promise that every listed control applies in the same way to every provider, feature, or environment.

Questions about security?

Contact the PureLeads team

We can help with account access, suspicious activity, privacy requests, and security-related questions.