Privacy Policy
Last Updated: November 15, 2024
This Privacy Policy governs the processing of technical and licensing information by the IQ Leadbox standalone desktop software and iqleadbox.com, incorporating principles under the California Consumer Privacy Act (CCPA/CPRA), FTC regulations, and the CAN-SPAM Act.
1. Local-First Architecture & Zero Data Brokerage (CCPA/CPRA)
IQ Leadbox is distributed strictly as an on-premise desktop application. All gathered lead records, corporate domains, scraped email addresses, message drafts, and campaign telemetry reside solely within an isolated SQLite database on your personal storage drive. We are not a data broker and do not sell, rent, or trade prospect data. We maintain zero access to your client databases and never store them on external servers.
2. Cryptographic Hardware Identification (HWID) & DRM
To validate workstation seat allocations and prevent unauthorized software distribution, the application creates a non-reversible 64-character SHA-256 cryptographic hardware hash (HWID). This fingerprint is generated from local system components, contains no Personally Identifiable Information (PII), and cannot be used to track your physical location or network browsing activity.
3. Cloud Gateway Protocol & Zero-Persistence Relays
When operating in Managed Cloud mode, search queries to Google SERP clusters and text prompts for sequence generation are routed through encrypted server relays in a de-identified state. Our cloud infrastructure operates on a zero-persistence policy: we do not log, inspect, store, or sell user search keywords, prospect records, or generated email copy.
4. Mailbox Credentials & CAN-SPAM Compliance Guardrails
The desktop client establishes direct peer-to-host encrypted TLS/SSL connections with your email providers (Google Workspace, Microsoft 365, custom SMTP). Dedicated 16-digit App Passwords never leave local memory. While the engine includes deliverability guardrails (Circuit Breaker, randomized pacing, IMAP reply auto-pause), operators remain responsible for complying with CAN-SPAM and applicable outbound regulations.
5. User Privacy Rights & Inquiries
You retain complete sovereignty over your data and may permanently erase your local database at any time by removing the application data directory. You may also reset your hardware licensing allocation directly via our official Telegram bot. For privacy questions or license dissociation, contact our compliance team on Telegram: @OutreachSupport.