GDPR

At IGOTLeads.io, we are committed to protecting the privacy and personal data of our clients and customers. We have implemented a number of measures to ensure that we are compliant with the General Data Protection Regulation (GDPR).

Purpose of data collection:

We collect personal data for the purpose of conducting B2B sales and establishing legitimate interest. The data we collect includes contact information such as names, email addresses, and phone numbers. This data is necessary for us to communicate with potential clients and customers about our products and services.

Legal basis for data collection:

Our legal basis for collecting personal data is legitimate interest. This means that we have a legitimate reason for collecting and using the data, and that the interests of the individual are not outweighed by our interests.

Data minimization:

We only collect the personal data that is necessary for the purpose of conducting B2B sales and establishing legitimate interest. We do not collect any unnecessary or excessive data.

Data security:

We have implemented appropriate technical and organizational measures to protect the personal data we collect from unauthorized access, use, disclosure, or destruction. This includes encryption, access controls, and regular data backups.

Data subject rights:

Individuals have the right to access, rectify, erase, restrict, and object to the processing of their personal data. They also have the right to withdraw their consent at any time. We have procedures in place to ensure that these rights are respected and that individuals can easily exercise their rights.

Email us at [email protected] if you want ANY data removed.

Data retention:

We retain personal data for as long as it is necessary for the purpose for which it was collected. Once the data is no longer needed, we delete or anonymize it in accordance with GDPR requirements.

 

Making Sure You Comply

By accessing our website and utilizing our leads, you agree to take full responsibility for your actions and comply with all applicable laws and regulations. Our responsibility is limited to providing the leads, and what you choose to do with them is entirely at your own discretion. By signing up, you acknowledge and agree to these terms.

How We Are Complying With Terms & Conditions

We are well aware of recent Facebook lawsuits and cease and desist letters. So we will Layout how we scrape Facebook groups and Instagram #Hashtags and Keywords to prove we are following all terms and conditions.

 

We Don’t log into Instagram or Facebook to access data. One of the biggest problems companies have is asking their user for facebook or Instagram information, then using that profile in order scrape unauthorized resources on behalf-of them as well!

 

We take a different approach by strictly scraping Google SERPs. “Since information on Google SERPs is also publicly available and non-password protected, IGotLeads.io doesn’t break CFAA by scraping it”

Here is a example:

As you can see we do not log into facebook or instagram to scrape. We do not use ANY accounts to scrape or IP’s to try and get by blocked access. We are fully committed to complying with all terms and conditions.

 

Common Questions

Can you actually scrape Facebook Groups?

We never ask for Facebook links because thats clearly violating terms of use. To do what we do, simply input the group name into Google search and we will scrape any emails on the search results pages. We do not need to log into Facebook to do anything.

Are you scraping personal emails?

No

If a Facebook or Instagram profile has a public business email address and the business has posted the email address for customers to use, then it is not a violation of the website’s terms of service to scrape the email address. In this case, the business has made the email address publicly available and has given permission for it to be used by customers. Scraping the email address in this situation would not be considered violation of meta terms of us. We scrape 100% business pages since those are the ones publicly available google search.

CFAA Regulations

Web Scraping And CFAA

The Computer Fraud and Abuse Act (CFAA) was introduced back in 1986 as an anti-hacking measure that forbids unauthorized access to computers, which imposes a criminal penalty on “a party who intentionally accesses a computer without authorization or exceeds authorized access, and thereby obtains information from any protected computer. ” CFAA-based claims are popular among data hosts because they provide for pressing criminal charges against scrapers.

In 2016 LinkedIn started sending cease-and-decease letters to hiQ Labs, the startup that was relying on data scraped from the popular social network to provide analysis of publicly available user profiles. Letters contained warnings that unauthorized access to a LinkedIn website was the violation of CFAA. Instead of ceasing its operations, the team of hiQ took LinkedIn’s accusations directly to court, claiming that the automated access of publicly available data isn’t a violation of the CFAA, while also asking the court to prohibit LinkedIn from “preventing hiQ’s access, copying, or use of public profiles on LinkedIn’s website (i.e., information that LinkedIn members have designated public).”

The court decided in favor of hiQ, allowing the company to scrape LinkedIn’s public, non-password protected data. In this article we won’t dig deeply into the ruling – you can view the full text here. It’s sufficient to note that although scraping in many cases breaks ToS of the scraped website, it’s not necessarily the violation of the Computer Fraud and Abuse Act.

 

 

“Since information on Google SERPs is also publicly available and non-password protected, IGLeads does not break CFAA by scraping it”

 

 

Although scraping is legal by itself, it’s possible for data hosts to mount legal defenses against scrapers, including CFAA and DMCA violation claims.

 

On the other hand, the outcomes of recent lawsuits filed against scrapers prove that there are a lot of grey areas in current legislation on this matter, and courts may stand in favor of open access to publicly available information (see Sanding v. Sessions ruling). And even though data hosts may prevail against scrapers in courts, it’s often against their interest to sue. For example, if it weren’t for crawling public websites and scraping data from them, Google probably wouldn’t even exist.

 

After all, we don’t violate CFAA or DMCA when scraping publicly available information from Google SERPs. You can rest assured: using IGLeads services is legal, it’s not the violation of the law. By the same token, you can’t break Google ToS by simply getting data through our APIs.

 

Disclaimer: This article does not constitute legal advice. You should seek the counsel of an attorney on your specific matter to comply with the laws in your jurisdiction.

DMCA REGULATIONS

 Web Scraping and DMCA

Copyright claims are often brought by data hosts against scrapers. In the United States, copyrighted work is protected by the Digital Millennium Copyright Act (DMCA).

Nonetheless, it’s widely known that facts alone can’t be copyrighted, so DMCA and similar legislation won’t protect data hosts against scrapers unless they have full control over the copyright of the stored content. The point is that the transfer of copyright ownership generally requires a written agreement signed by the copyright owner. On the other hand, however, it’s true that “the creative selection, coordination and arrangement of information and materials forming a database or compilation may be protected by copyright.” – cendi.gov. However, this protection doesn’t extend to the facts stored in the database. Put simply, copyright is meant to protect originality and creativity, not facts.

Let’s take a Google results page as an example. Its design and layout may be regarded as creative work and hence can be copyrighted. At the same time, facts contained in a results page, including headlines and snippets, are not owned by Google; in fact, they are being pulled from other people’s websites without transferring copyright ownership.

 

“Given that results on Google SERPs are not protected by copyright, it’s only logical that IGOTLeads.io dosen’t violate DMCA by scraping them”

 

Although scraping is legal by itself, it’s possible for data hosts to mount legal defenses against scrapers, including CFAA and DMCA violation claims.

On the other hand, the outcomes of recent lawsuits filed against scrapers prove that there are a lot of grey areas in current legislation on this matter, and courts may stand in favor of open access to publicly available information (see Sanding v. Sessions ruling). And even though data hosts may prevail against scrapers in courts, it’s often against their interest to sue. For example, if it weren’t for crawling public websites and scraping data from them, Google probably wouldn’t even exist.

After all, we don’t violate CFAA or DMCA when scraping publicly available information from Google SERPs. You can rest assured: using IGLeads.io services is legal, it’s not the violation of the law. By the same token, you can’t break Google ToS by simply getting data through our APIs.

Disclaimer: This article does not constitute legal advice. You should seek the counsel of an attorney on your specific matter to comply with the laws in your jurisdiction.

Cookie Policy

Cookie Policy

Our Privacy Policy explains our principles when it comes to the collection, processing, and storage of your information. This policy specifically explains how we, our partners, and users of our services deploy cookies, as well as the options you have to control them.

What are cookies?

Cookies are small pieces of data, stored in text files, that are stored on your computer or other device when websites are loaded in a browser. They are widely used to “remember” you and your preferences, either for a single visit (through a “session cookie”) or for multiple repeat visits (using a “persistent cookie”). They ensure a consistent and efficient experience for visitors, and perform essential functions such as allowing users to register and remain logged in. Cookies may be set by the site that you are visiting (known as “first party cookies”), or by third parties, such as those who serve content or provide advertising or analytics services on the website (“third party cookies”).

Both websites and HTML emails may also contain other tracking technologies such as “web beacons” or “pixels.” These are typically small transparent images that provide us with statistics, for similar purposes as cookies. They are often used in conjunction with cookies, though they are not stored on your computer in the same way. As a result, if you disable cookies, web beacons may still load, but their functionality will be restricted.

How we use cookies

We use cookies for a number of different purposes. Some cookies are necessary for technical reasons; some enable a personalized experience for both visitors and registered users; and some allow the display of advertising from selected third party networks. Some of these cookies may be set when a page is loaded, or when a visitor takes a particular action (clicking the “like” or “follow” button on a post, for example).

Many of the cookies we use are only set if you are a registered WordPress.com user (so you don’t have to log in every time, for example), while others are set whenever you visit one of our websites, irrespective of whether you have an account.

For more information on the choices you have about the cookies we use, please see the Controlling Cookies section below.

Where we place cookies

We set cookies in a number of different locations across our services. These include:

  • On our websites (including automattic.com, wordpress.com, vip.wordpress.com, jetpack.com, woocommerce.com, crowdsignal.com, gravatar.com, intensedebate.com, vaultpress.com, akismet.com, simplenote.com, simperium.com, leandomainsearch.com, cloudup.com, longreads.com, and happy.tools).
  • In the administrative dashboards of our websites, such as Calypso and wp-admin.
  • On sites we host for our users.
  • On sites that use our plugins (e.g. Jetpack).
  • In the emails we send.

User Sites

In addition to the cookies set on our own sites, we utilize cookies for our Site Stats feature. This tallies the unique numbers of visitors to a site, as well as the number from specific geographic locations. A visitor is counted when we see a user or browser for the first time in a given period.

Examples

Below are examples of the cookies set by Automattic, with explanations of their purpose. Some of these cookies are set across our whole network, whereas some are specific to individual services (e.g. WordPress.com, Longreads, etc). Please note that this is not an exhaustive list, but rather aims to be representative. Information about cookies that may be set by third parties, such as our ads partners, is below. Additionally, we occasionally set referrer cookies on Jetpack connected sites, using WooCommerce.

In addition, people and companies that use our services to publish or host their own sites may place additional cookies. We provide more information on these cookies below.

Required

Cookie Purpose
__ssid For processing payment and to aid in fraud detection.
__stripe_sid / __stripe_mid For processing payment and to aid in fraud detection.
_longreads_prod_new Authentication for Longreads.com Member accounts. Only active when logged in, on *.longreads.com domains.
akm_mobile Stores whether a user has chosen to view the mobile version of a website.
botdlang Used to track the language a user has selected to view popular blogs in.
country_code Used in order to determine whether or not the cookie banner should be shown. Set immediately on page load and retained for 6 hours to remember the visitor’s country.
csrftoken Python/Ajax security cookie used on accounts.longreads.com.
forterToken For processing payment and to aid in fraud detection.
landingpage_currency Defines the currency displayed in WordPress.com landing pages.
pd_dashboard Records last used folder in Crowdsignal dashboard so it can be reopened upon user’s next visit.
PD_USER_AUTH Login cookie used to identify Crowdsignal user.
sensitive_pixel_option Remembers the state of visitor acceptance to the cookie banner. Only set when the visitor clicks Accept.
twostep_auth Set when the user is logged in using two factor authentication.
wordpress_logged_in* Checks whether or not the current visitor is a logged in WordPress.com user.
wordpress_test_cookie Checks if cookies are enabled to provide appropriate user experience.
wp-settings-{user_id} Persists a user’s wp-admin configuration.
wp_sharing_{id} Tracks whether or not a user has already performed an action.

Analytics and Performance

Cookie Purpose
__pdvt Used in log of Crowdsignal survey data to aid in debugging customer problems.
_hjIncludedInSample
mp_6d7c50ad560e01715a871a117a2fbd90_mixpanel
optimizelyBuckets
optimizelyEndUserId
__hstc
hubspotutk
optimizelySegments
Gathers information that helps us understand how visitors interact with our websites, which allows us to create a better visitor experience.
ab Used for “AB testing” of new features.
nux_flow_name Identifies which user signup flow was shown to the user.
tk_ni / tk_ai / tk_qs Gathers information for our own, first party analytics tool about how our services are used. A collection of internal metrics for user activity, used to improve user experience.
tk_*r Referral cookies used to analyse referrer behavior for Jetpack connected sites using WooCommerce.
wp-affiliate-tracker Remembers the ID of the affiliate that referred the current user to WordPress.com
utma / utmb / utmc / utmt / utmz / ga / gat / gid Google Analytics. Gathers information that helps us understand how visitors interact with our websites, which allow us to create a better experience for our visitors. Our users may also implement Google Analytics on their own websites.

Advertising

Cookie Purpose
ads Tracks if a visitor has clicked an ad before.
lr_nw Counts and tracks pageviews on Longreads.com. Used to determine whether or not to show our Membership popup message.
wordpress_eli Reduces the display of ads for repeat visitors.

Please also see the section below on third party advertisements that you may see on our sites or sites that use our services.

Advertisements from Third Parties Through Automattic’s Ads Program

Our mission is to democratize publishing. So that we can offer free access to create a website using WordPress.com, we show ads on some of our users’ sites. Our users may also choose to place ads on their site through our ads program. Additionally, we also show ads from our ads program on some of our own websites (e.g. longreads.com), and in emails.

We operate our ads program in partnership with third party vendors. As part of the operation of our ads program, we use cookies to collect certain information. Advertising cookies enable us and our partners to serve ads and to personalize those ads based on information like visits to our sites and other sites on the Internet.

Below is a representative list of our advertising program partners, along with information on the cookies that each partner sets. The partners we work with change from time to time, and this is not an exhaustive list. Your choices to control cookies related to our ads program are described below.

 

Partner Cookie Info
33across https://33across.com/privacy-policy/ and https://optout.33across.com
Admixer https://admixer.net/privacy
ADYOULIKE https://www.adyoulike.com/privacy_policy.php
Amazon https://www.amazon.co.uk/gp/help/customer/display.html/ref=footer_iba?ie=UTF8&nodeId=201909150
BidSwitch http://www.bidswitch.com/cookie-statement/
Criteo https://www.criteo.com/privacy/
Display IO https://www.display.io/privacy-policy/
EMX Digital https://enginemediaexchange.com/privacy/
Google (AdSense, DoubleClick Ad Exchange “AdX”) https://policies.google.com/technologies/ads
GumGum https://www.gumgum.com/terms-and-policies/privacy-policy
Index Exchange https://www.indexexchange.com/privacy/
Infolinks https://www.infolinks.com/privacy-policy/
InMobi https://www.inmobi.com/privacy-policy/
LKQD https://www.nexstardigital.com/privacy
Media.net https://www.media.net/privacy-policy
Ogury https://ogury.com/privacy-policy/
OpenX https://www.openx.com/legal/privacy-policy/
Pubmatic https://pubmatic.com/legal/website-cookie-policy/
Rubicon https://rubiconproject.com/privacy/consumer-online-profile-and-opt-out/
Skimlinks https://skimlinks.com/user-cookies and https://skimlinks.com/privacy-policy
SmartAdserver https://smartadserver.com/end-user-privacy-policy/
Sonobi https://sonobi.com/privacy-policy/
Teads https://www.teads.tv/privacy-policy/
TheMediaGrid https://www.iponweb.com/policies-legal/themediagrid-privacy-policy/
TripleLift https://triplelift.com/privacy/
Xandr https://www.xandr.com/privacy/
Yahoo https://legal.yahoo.com/us/en/yahoo/privacy/topics/cookies/index.html

Below is a representative list of the cookies that may be set by our ads partners in connection with ads that appear in emails.

Cookie Purpose
pi-userid Used to personalize email-based ads.
eid_ Used in email-based ads to track if a visitor has clicked an ad and report to advertisers how their ads performed.

Visitors to Sites with Parse.ly installed

Below are examples of the cookies set for visitors to sites with the Parse.ly plugin installed.

Cookie Purpose
test Used to discover cookie support.
_parsely_visitor JSON document uniquely identifying a browser and counting its sessions.
_parsely_tpa_blocked JSON document storing a flag indicating whether pixel.parsely.com is not accessible by the tracker.
_parsely_slot_click JSON document storing positional information about a clicked internal link.
_parsely_session JSON document storing information identifying a browsing session according to Parse.ly’s proprietary definition.

Visitors to Sites with Jetpack installed

Below are examples of the cookies set for visitors to sites with the Jetpack plugin installed. For more details on the cookies set for administrators, please see https://jetpack.com/support/cookies/.

Jetpack Comments

Cookie Name Purpose
comment_author_{HASH} Remembers the value entered into the comment form‘s name field. Specific to the site from which it is set. This cookie mirrors one set by the core WordPress software for commenting purposes.
comment_author_email_{HASH} Remembers the value entered into the comment form‘s email field. Specific to the site from which it is set. This cookie mirrors one set by the core WordPress software for commenting purposes.
comment_author_url_{HASH} Remembers the value entered into the comment form‘s URL field. Specific to the site from which it is set. This cookie mirrors one set by the core WordPress software for commenting purposes

Mobile Theme

Cookie Name Purpose
akm_mobile Remembers whether or not a user wishes to view the mobile version of a site.

Subscriptions

Cookie Name Purpose
jetpack_comments_subscribe_{HASH} Remembers the state of the post and comment subscription checkboxes.
jetpack_blog_subscribe_{HASH} Remembers the state of the post and comment subscription checkboxes.

Controlling Cookies

Visitors may wish to restrict the use of cookies or completely prevent them from being set. Most browsers provide for ways to control cookie behavior such as the length of time they are stored – either through built-in functionality or by utilizing third party plugins. If you disable cookies, please be aware that some of the features of our service may not function correctly.

To find out more on how to manage and delete cookies, visit aboutcookies.org. For more details on your choices regarding use of your web browsing activity for interest-based advertising you may visit the following sites:

On a mobile device, you may also be able to adjust your settings to limit tracking.

Some analytics services we use, which place their own cookies or web tags on your browser, offer their own opt out choices. For example, you can opt out of Google Analytics by installing Google’s opt-out browser add-on, from Hotjar by using the Do Not Track header, and from Nielsen by clicking the opt out link found within Nielsen’s Privacy Statement.

Our Internal Analytics Tool

In order to better understand how our services are used, we monitor certain user activities that take place within our products, including page views and clicks on any links used when managing a site via our dashboards.

We call each one of these actions an “event.” Analytics events are attached to your WordPress.com account and are handled via a first party system that Automattic owns and maintains. In general, we record the following data for each event: IP address, WordPress.com user ID and username, WordPress.com-connected site ID (for sites not hosted on WordPress.com), user agent, referring URL, timestamp of event, browser language, and country code.

We use this information to improve our products, make our marketing to you more relevant, personalize your experience, and for the other purposes described in our Privacy Policy.

You may opt out of our analytics program through your user settings. By doing so, you won’t share information with our analytics tool about events or actions that happen after the opt-out, while logged in to your WordPress.com account. Note that opting out does not disable the functionality of the actions we track – for example, if you publish a post, we will still have record of that (don’t worry!), but for an event or action after you opt out, we will not have other data associated with that action or event in the analytics tool.

For our Simplenote Users: We use our first party analytics tool in Simplenote to help us better understand how Simplenote is used and improve the app for our users. You may opt-out through your privacy settings in the app. By doing so, you won’t share information with our analytics tool about events or actions that happen after the opt-out. One more thing–For Simplenote users who log onto Simplenote using their WordPress.com login, if you’d like to opt-out of our analytics tool on Simplenote, you’ll also need to opt out on the Simplenote app–not on your WP.COM Account Privacy Settings.

Contact Us

If you have any questions about our use of cookies, you can find the most relevant contact details in our Privacy Policy.