01Who we are
LeanSupplAI (“we”, “us”, “the platform”) is the data controller for personal data collected through this website.
Data controller: LeanSupplAI. Contact: privacy@leansupplai.com
02What data we collect
When you register a supplier profile, we collect:
- Company details: company name, legal name, year established, size.
- Contact details: business email, phone number, website URL.
- Product/service information: category, products, services, certifications, strengths, description.
- Location: country, headquarters, region.
- Technical data: IP address at submission, timestamp of consent, email verification clicks.
03How we use your data
- Display your supplier listing in the public directory (after approval);
- Communicate with you about your listing (verification email, edit links, updates);
- Respond to buyer inquiries routed through the platform;
- Operate and improve the service (search quality, directory accuracy, anti-abuse);
- Comply with legal obligations.
04Legal basis (EEA / UK users)
- Contract (Art. 6(1)(b)): processing necessary to provide the directory service you signed up for.
- Consent (Art. 6(1)(a), Art. 7): when you tick the Terms of Service box at registration.
- Legitimate interests (Art. 6(1)(f)): for anti-abuse, security, and service improvement.
05Who sees your data
Your approved listing is visible to any user of the public supplier directory. We also share data with:
- Supabase (database and authentication hosting);
- Cloudflare (bot filtering via Turnstile at registration);
- SendGrid / Gmail API (transactional email delivery);
- OpenAI (content enrichment and search — no personal contact data sent).
We do not sell your data. We do not share it with advertisers.
06How long we keep it
Active listings are retained as long as your profile is active. Rejected or removed listings are retained for 12 months in case of reinstatement or dispute, then deleted.
07Your rights
- Access the data we hold about you;
- Correct inaccurate data (use the “edit link” we email you);
- Request deletion of your listing and associated data;
- Object to or restrict processing in certain circumstances;
- Port your data to another service;
- Withdraw consent for any processing based on consent.
08Security
We use industry-standard measures including TLS encryption in transit, Row-Level Security on our database, rate limiting, and bot filtering.
09Cookies and similar technologies
We use strictly necessary cookies to maintain your session, authentication state, and anti-CSRF tokens. We do not currently use advertising, analytics, or third-party tracking cookies.
10International transfers
Our service providers may process data outside your country. We rely on Standard Contractual Clauses and equivalent safeguards where required.
11Contact
For privacy questions, data requests, or complaints:
Email: privacy@leansupplai.com
Postal: LeanSupplAI, Munich, Germany
12Changes to this Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via the email address on file.