Your Privacy, Our Priority
We are committed to protecting your personal information and being fully transparent about how we collect, use, and safeguard your data on LeadCRM.
Overview
This Privacy Policy describes how Codeeyx ("we", "us") collects, uses, and protects information when you use LeadCRM at codeeyx.com/lead_crm.
By using LeadCRM, you agree to the practices described here. If you do not agree, please discontinue use and delete your account.
Data We Collect
Account & Identity
- Full name, email address, and hashed password
- Business name, job title, and phone number
- Billing name and address
Usage & Activity
- Pages visited, features used, and actions within the app
- Session duration and timestamps
- Error logs and crash reports
Device & Technical
- IP address and approximate geolocation (city/country)
- Browser type, version, and operating system
- Referral URLs and screen resolution
CRM Data You Enter
- Lead and contact records (names, emails, phone numbers)
- Deal and pipeline data, notes, and tasks
- Imported files and email templates
How We Use Your Data
| Purpose | Data Used | Basis |
|---|---|---|
| Provide & maintain the service | Account, CRM, usage data | Contract |
| Process payments | Billing information | Contract |
| Send transactional emails | Email, account info | Contract |
| Improve product features | Anonymised usage data | Legitimate interest |
| Prevent fraud & abuse | IP, device, account data | Legitimate interest |
| Comply with legal obligations | Any relevant data | Legal obligation |
| Marketing (opt-in only) | Email, account info | Consent |
We do not sell, rent, or trade your personal information to third-party advertisers.
Data Retention
We retain your data for as long as your account is active. After closure:
- Account and CRM data retained for 30 days then permanently deleted
- Billing records retained for 7 years to meet legal/tax obligations
- Anonymised analytics data may be retained indefinitely
- You may request immediate deletion at any time (subject to legal holds)
Your Rights
- Right to Access — request a copy of the data we hold about you
- Right to Rectification — correct inaccurate or incomplete data
- Right to Erasure — request deletion of your personal data
- Right to Portability — receive your data in a machine-readable format
- Right to Object — object to processing based on legitimate interests
- Right to Restrict Processing — limit how we use your data
- Right to Withdraw Consent — for any consent-based processing
Email us at privacy@codeeyx.com. We respond within 30 days (GDPR) or 45 days (CCPA).
Security
- AES-256 encryption for data at rest
- TLS 1.3 encryption for data in transit
- Regular security audits and penetration testing
- Role-based access controls and least-privilege principles
- Multi-factor authentication support for all accounts
Children's Privacy
LeadCRM is intended for users aged 18 and older. We do not knowingly collect data from children under 13 (or 16 in the EU). If you believe a child has provided us with data, contact privacy@codeeyx.com immediately.
Policy Changes
When we make material changes we will update the date above, send an email to all registered users, and display an in-app banner for 30 days. Continued use after the effective date constitutes acceptance.
Contact Us
- Privacy: privacy@codeeyx.com
- General support: support@codeeyx.com
- Website: codeeyx.com/lead_crm
- Response time: within 48 business hours
CRM App Overview
Codeeyx CRM ("we", "our", or "the app") is a sales lead management application developed by Codeeyx. This policy explains what data we collect, why we collect it, and how it is used. We request several device permissions to enable core CRM and call-tracking functionality — this policy discloses each one transparently.
Permissions & Why We Need Them
The following Android permissions are declared in the app. We only request what is necessary for CRM functionality.
| Permission | Purpose | Category |
|---|---|---|
| READ_PHONE_STATE | Detect call start/end events to automatically log call activity against CRM leads. | Call tracking |
| READ_CALL_LOG / WRITE_CALL_LOG | Read and record call duration, status (answered/missed), and timestamp to your CRM account. | Call tracking |
| CALL_PHONE | Allow one-tap calling of leads directly from the CRM interface. | Call tracking |
| POST_NOTIFICATIONS | Show follow-up reminders, new lead alerts, and background service notifications. | Notifications |
| INTERNET / ACCESS_NETWORK_STATE | Sync lead data, call logs, and notifications with the CRM server in real time. | Network |
| READ_MEDIA_IMAGES / READ_EXTERNAL_STORAGE | Let users attach photos or documents (e.g. WhatsApp campaign media) to lead records. | Media |
| WRITE_EXTERNAL_STORAGE | Save exported lead reports or downloaded files locally. Limited to Android 9 and below. | Storage |
| SYSTEM_ALERT_WINDOW | Display an incoming-call CRM popup overlay (showing lead info) when a known contact calls. | Overlay |
| FOREGROUND_SERVICE (phoneCall / dataSync) | Keep call tracking and data sync active while in use, with a visible notification as required by Android. | Background |
| REQUEST_IGNORE_BATTERY_OPTIMIZATIONS | Prevent Android from killing the background sync and call-tracking services during business hours. | Background |
| WAKE_LOCK | Hold a brief CPU wake lock during active call tracking to prevent data loss mid-call. | Background |
| USE_EXACT_ALARM / SCHEDULE_EXACT_ALARM | Trigger follow-up reminders at the exact time set by the user in the CRM calendar. | Alarms |
| RECEIVE_BOOT_COMPLETED | Restart the background sync service automatically after a device reboot so no lead updates are missed. | Boot |
| MANAGE_OWN_CALLS | Used alongside call state detection to improve accuracy of outgoing call lifecycle tracking. | Call tracking |
What Data Is Collected
- Call logs: phone number dialed/received, call duration, call status (answered, missed, not connected), and timestamp — synced to your company's CRM account on the server.
- Lead data you enter: names, contact numbers, notes, follow-up dates, and status updates.
- Media files you choose to attach to lead records (never accessed without user action).
- Device connectivity state: used only to decide when to retry a failed sync — not stored or shared.
What We Do Not Do
- We do not sell, rent, or share your personal data with any third party for advertising or marketing.
- We do not access your microphone or record audio during calls.
- We do not access your contacts list or SMS messages.
- We do not use your location in any form.
- We do not track usage for analytics beyond what is described above.
Data Storage & Security
All CRM data is stored on servers hosted by your organisation's CRM account (leadcrm.codeeyx.com). Data in transit is protected via HTTPS. Call logs stored locally in SharedPreferences are used only as a crash-recovery buffer and are cleared after successful server sync.
App Data Retention
Call logs and lead data are retained for as long as your company's CRM account is active. You may request deletion of your data by contacting your CRM administrator or reaching out to us directly.
App Policy Changes
We may update this policy when new features or permissions are added to the app. The updated date at the top of this page will reflect any changes. Continued use of the app after changes constitutes acceptance of the revised policy.
App Contact
If you have questions about this privacy policy or how your data is handled, please contact:
- Codeeyx
- App: Codeeyx CRM (com.codeeyx.leadcrm)
- Email: support@codeeyx.com
- Website: codeeyx.com