Privacy Policy
How LEADO collects, uses, stores and protects personal data across the LEADO public website, the LEADO customer platform and the LEADO Control Center.
Effective date: [To be confirmed before commercial launch]
Pre-launch notice
LEADO is in pre-launch. The contracting company name, commercial registration number, registered address, contact addresses and the effective date of these documents are still being finalised and are shown below as pending. They will be published before any paid subscription begins. Payment processing is currently in test mode only; live billing will be verified to match the terms described here before commercial launch.
1. Who we are
LEADO is a customer relationship and operations platform for fitness and wellness businesses. The intended contracting entity is a company registered in Qatar.
- Company name: [To be confirmed before commercial launch]
- Commercial registration (CR) number: [To be confirmed before commercial launch]
- Registered address: [To be confirmed before commercial launch]
- Privacy contact: [To be confirmed before commercial launch]
Effective date: [To be confirmed before commercial launch]
2. Scope of this policy
This policy covers the LEADO public website, the LEADO customer platform used by subscribing businesses and their staff, and the LEADO Control Center used by LEADO personnel.
Where a fitness business uses LEADO to manage its own leads, clients and members, that business decides what data it records and why. LEADO processes that data on its behalf and under its instructions.
3. Data we collect
Account data provided when a person creates a LEADO account:
- Full name
- Work email address
- Mobile or WhatsApp number
- Password (stored only as a secure hash)
Business data entered by a subscribing business inside its own workspace, which may include lead and client contact details, bookings and attendance, memberships and session balances, sales, payments recorded by the business, notes, tasks and staff records.
Technical data generated automatically when the services are used, such as IP address, browser and device information, and security and audit records of significant actions taken inside the platform.
Information you submit through the public contact or demo request form on our website, including your name, work email address, mobile or WhatsApp number, business name, country, city and the message you send us, which we use to respond to your enquiry and to manage it as a sales enquiry record.
LEADO does not use analytics, advertising or profiling technologies on any of its surfaces.
4. Why we use personal data
- To create and operate accounts and workspaces
- To provide the platform features the business has chosen to use
- To authenticate users and keep accounts and data secure
- To maintain audit records of sensitive actions
- To provide support requested by a customer
- To administer subscriptions and billing
- To comply with legal and regulatory obligations
We do not sell personal data and we do not use customer business data to build advertising or marketing profiles.
5. Basis for processing
We process personal data to perform the agreement with the account holder or their organisation, to meet our legal obligations, and for our legitimate interest in keeping the platform secure and reliable. Where local law requires consent for a specific activity, we ask for that consent before carrying it out.
7. Retention
Account and workspace data is retained while the account is active and for as long as needed afterwards to meet legal, accounting and dispute-resolution obligations. Financial and audit records are kept in a form that cannot be silently altered or deleted, because their integrity is the point of keeping them.
8. Security
Access to data is restricted per organisation and per role, and enforced in the database rather than only in the interface. Sensitive credentials stored for integrations are encrypted. Administrative and support access to a customer workspace is explicit, permissioned, reasoned, time-bounded and recorded in an audit log. Multi-factor authentication protects privileged internal access.
9. Your rights
Subject to applicable law, you may request access to your personal data, correction of inaccurate data, deletion where we are not required to keep it, a copy of data you provided, or that we restrict or stop a particular use.
If your data was entered into a workspace by a fitness business, contact that business first, as it controls that record. You can also reach us at [To be confirmed before commercial launch].
10. International transfers
Our infrastructure providers may process data outside Qatar. Where that happens, we rely on providers that offer appropriate contractual and technical safeguards for the data they handle on our behalf.
11. Children
LEADO is a business tool and is not directed at children. Where a fitness business records a minor as a client, that business is responsible for obtaining any consent required by local law.
12. Changes to this policy
We may update this policy as the service and the contracting entity details are finalised. Material changes will be communicated to account holders, and the effective date above will be updated.
13. Contact
- Privacy enquiries: [To be confirmed before commercial launch]
- General enquiries: [To be confirmed before commercial launch]
- Registered address: [To be confirmed before commercial launch]