Privacy Policy
This policy explains what data Leadgrabr collects, how we use it, where it's stored, and what your rights are. We've tried to write this in plain language. If anything is unclear, email us at akshay.kini@leadgrabr.com.
1. Who runs Leadgrabr
Leadgrabr is operated by Akshay Kini, an individual developer based in India. The product is a Chrome browser extension and a small backend that verifies paid plans. There is no parent company.
2. What data we collect
We split data into three buckets based on where it lives:
2.1 Data that touches our servers
- Your WhatsApp phone number — only the phone number associated with your active WhatsApp Web session. We use this to look up whether you have an active paid plan.
- Razorpay payment records — when you buy a plan, Razorpay sends us a webhook with your payment ID, amount, and the phone number you used at checkout. We store these in our database to activate your license. We never receive or store your card number, UPI ID, bank details, or CVV — those are handled entirely by Razorpay.
- Team member phone numbers — if you're on the Growth or Business plan and add team members, we store the phone numbers of the team members associated with your account.
2.2 Data stored locally on your machine (never sent to us)
- Your in-progress message draft (text, contacts, attachment, settings)
- Your campaign state (which contacts have been sent, sent/failed counters)
- Daily and lifetime sent-message counts
- CRM data: contact tags, comments, and reminders
- Lead-source configuration: Google Sheet URLs you've added, and a deduplication list of phone numbers you've already messaged
- Your preferences: send speed, theme, onboarding-seen flag, CRM panel toggle
All of the above is stored in chrome.storage.local, which is a per-browser storage area. We never read this data and it never leaves your machine. Uninstalling the extension permanently deletes it.
2.3 Data we do not collect at all
- Your WhatsApp messages — we do not read, log, or transmit any message content sent to or from you.
- Your contact list — we do not transmit your contacts to our servers. They live in your browser.
- Browsing history or activity on other websites — Leadgrabr only runs on web.whatsapp.com.
- Location data — we do not request or collect any location information.
- Personal identifiers beyond your phone number — we do not collect your name, email, address, IP, or device fingerprint on our backend (Razorpay separately collects these for payment processing — see Section 5).
3. How we use the data we do collect
Strictly limited to:
- License verification — checking whether the WhatsApp number signed into your browser matches an active paid plan.
- Payment activation — when Razorpay confirms a payment, we activate the matching plan against the phone number used at checkout.
- Team management — if you're on Growth or Business, we use team-member phone numbers to grant licensed-use rights to those numbers.
- Customer support — if you email us about a billing issue, we may look up your phone number to find your license record.
We do not use your data for marketing, advertising, profiling, machine-learning training, or sale to third parties. We do not send marketing emails because we do not collect email addresses.
4. Where it's stored
Backend data (phone numbers, license records, payment IDs) is stored in Supabase (PostgreSQL database hosted in AWS Asia-Pacific region). Our backend code runs on Cloudflare Workers. Both providers are GDPR-compliant and offer encryption in transit and at rest.
Local data lives in your Chrome browser's local storage area on your own device.
5. Third parties we use
Leadgrabr depends on the following third-party services. Each has its own privacy policy:
- Razorpay (payment processor) — handles all payment information including card numbers, UPI IDs, and bank details. We never see this data. Razorpay's privacy policy
- Supabase (database hosting) — stores license records. Supabase's privacy policy
- Cloudflare (backend hosting) — runs our license-verification backend. Cloudflare's privacy policy
- Netlify (this website) — hosts leadgrabr.com. Netlify's privacy policy
- Google Fonts (typography on this website) — when you visit leadgrabr.com, your browser fetches the Plus Jakarta Sans font from Google. Google's privacy policy
- Google Sheets (optional, user-initiated) — if you connect a Google Sheet as a lead source, the extension fetches the sheet's contents directly from Google's public CSV export endpoint. We do not proxy this through our servers.
Leadgrabr is not affiliated with WhatsApp LLC or Meta Platforms, Inc.
6. About your WhatsApp messages
This is the most important section. Leadgrabr does not have access to the content of your WhatsApp messages.
The extension sends messages by interacting with WhatsApp Web inside your own browser. Outgoing messages travel from your browser directly to WhatsApp's servers using WhatsApp's own end-to-end encryption. They never touch our infrastructure. We do not log message text, recipient lists, attachments, or delivery status on our servers.
The extension does locally store your composed message draft and a list of phone numbers you've sent to (for deduplication when fetching new leads), but this stays in your browser.
7. Your rights and how to delete data
You can:
- Delete all local data by uninstalling the extension. Right-click the Leadgrabr icon → Remove from Chrome.
- Request deletion of your backend records (license, phone number, payment IDs) by emailing akshay.kini@leadgrabr.com from any address you can prove ownership of. We'll process the deletion within 30 days.
- Request a copy of your data by emailing the same address. We'll send you the records associated with your phone number within 30 days.
- Cancel your subscription by going to your Razorpay payment confirmation email and following Razorpay's cancellation flow, or by emailing us.
If you're a resident of the EU, UK, or California, you have additional rights under GDPR/CCPA including the right to data portability and to lodge a complaint with your local data-protection authority. We honour these requests.
8. Cookies and tracking
This website (leadgrabr.com) does not set any tracking cookies. We do not use Google Analytics, Facebook Pixel, or any third-party analytics tool. The browser extension does not set cookies.
Your browser may be set cookies by third-party services we link to (e.g., Razorpay's checkout page). Those are governed by their respective privacy policies.
9. Children
Leadgrabr is a business tool intended for users aged 18 and over. We do not knowingly collect data from children under 13 (or under 16 in the EU/UK). If you believe a child has provided us with data, contact us and we'll delete it.
10. Changes to this policy
If we make material changes to this policy (e.g., starting to collect a new type of data), we will update the "Last updated" date at the top of this page. For paying customers, we will also send a notification through the extension popup before the change takes effect.
11. Contact
For any privacy-related question, email akshay.kini@leadgrabr.com. We aim to respond within 2 business days.