|

Privacy Policy

Last updated: February 1, 2025

1. Introduction

LeanSpotHub ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.

This Privacy Policy complies with the Israeli Protection of Privacy Law, 5741-1981, as amended by Amendment No. 13 (effective August 14, 2025), and related regulations.

2. Data Controller Identity

The data controller responsible for your personal information is:

  • Legal Name: קובי ניהול פרוייקטים (Kobi Projects Management)
  • Business Registration: ח.פ. 040047789
  • Address: Begin 13th St., Apartment 30, Israel
  • Email: kobi@leanspothub.com
  • Phone: +972-54-222-0972

3. Information We Collect

Personal Information You Provide

When you fill out our contact forms or book a consultation, we collect the following information:

  • Name (required for bookings)
  • Email address (required for communication)
  • Phone number (optional)
  • Company name (optional)
  • Project details and requirements you share with us (voluntary)

Collection basis: Your consent and contract performance. Providing this information is voluntary, but necessary to respond to your inquiries and provide our services. If you choose not to provide required information, we may be unable to fulfill your request.

Automatically Collected Information

When you visit our website, we automatically collect technical and usage data:

  • IP address (considered personal data under Israeli law)
  • Geolocation data (general location based on IP)
  • Online identifiers (device ID, browser fingerprint)
  • Browser type and version
  • Operating system and device information
  • Pages visited and time spent on pages
  • Referring website
  • Session recordings (via Microsoft Clarity, if you consent to analytics cookies)

Collection basis: Consent (via cookie banner) for analytics and advertising. Essential technical data may be collected based on legitimate interest for website functionality and security.

Information from Third Parties

We receive scheduling and calendar data from Calendly when you book a consultation (name, email, selected time slot, timezone).

4. How We Use Your Information

We use the information we collect to:

  • Respond to your inquiries and provide requested services
  • Schedule and conduct consultations
  • Send follow-up communications about our services
  • Improve our website and services
  • Analyze website usage and trends
  • Comply with legal obligations

5. Communications and Marketing

By submitting your contact information through our forms, you consent to receive communications from us regarding your inquiry and our services. This may include:

  • Email responses to your inquiries
  • Phone calls or WhatsApp messages to discuss your project
  • Follow-up emails about our services

You can opt out of marketing communications at any time by contacting us at kobi@leanspothub.com.

Anti-Spam Compliance: In accordance with Israeli Communications Law Section 30A, marketing emails will include the word "פרסומת" (advertisement) and a working unsubscribe link. Unsubscribe requests are honored promptly.

6. Data Sharing and Third-Party Recipients

We do not sell your personal information. We share your information only with trusted service providers who help us operate our website and provide services to you:

  • Google (USA): Analytics (Google Analytics 4) - if you consent to analytics cookies
  • Microsoft (USA): Session recordings and heatmaps (Microsoft Clarity) - if you consent to analytics cookies
  • Meta/Facebook (USA): Advertising measurement (Facebook Pixel) - if you consent to advertising cookies
  • Calendly (USA): Scheduling and calendar management
  • Google Firebase (USA): Database hosting and storage
  • Netlify/Hosting Provider: Website hosting
  • Legal requirements: When required by law, court order, or to protect our legal rights

These service providers process data on our behalf under contractual data processing agreements. They are prohibited from using your data for their own purposes.

7. Cross-Border Data Transfers

Your personal data may be transferred to and processed in countries outside Israel, primarily the United States of America, where our service providers (Google, Microsoft, Meta, Calendly, Firebase) operate their servers.

Legal Basis for Transfers:

  • Your explicit consent (via cookie consent for analytics and advertising)
  • Standard contractual clauses ensuring Israeli-level data protection
  • Necessity for contract performance (Calendly for booking fulfillment)

These transfers comply with the Protection of Privacy Regulations (Transfer of Data Abroad), 5761-2001.

8. Cookies and Tracking Technologies

We use cookies and similar technologies to analyze website traffic and improve user experience. You can control which cookies are placed through our cookie consent banner.

Types of Cookies We Use:

  • Essential Cookies: Required for website functionality (session management, security). These do not require consent.
  • Analytics Cookies: Google Analytics 4 (_ga, _gid, _gat) and Microsoft Clarity (_clck, _clsk) to understand visitor behavior. Requires your consent.
  • Advertising Cookies: Facebook Pixel (_fbp, _fbc) to measure advertising effectiveness. Requires your consent.

What These Tools Do:

  • Google Analytics 4: Tracks page views, user interactions, and website performance. IP addresses are anonymized.
  • Microsoft Clarity: Records user sessions (mouse movements, clicks, scrolling) and creates heatmaps to improve UX. Session recordings may capture on-screen content.
  • Facebook Pixel: Tracks conversions and measures ad campaign effectiveness.

Managing Cookies: You can manage your cookie preferences through our cookie consent banner or adjust settings via the "Cookie Settings" link in our footer. You can also control cookies through your browser settings.

For more details, see our Cookie Policy.

9. Data Security

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction, in compliance with the Protection of Privacy Regulations (Data Security), 5777-2017.

Our security measures include:

  • Encrypted data transmission (HTTPS/SSL)
  • Secure database storage with access controls
  • Regular security reviews and updates
  • Limited employee access to personal data on a need-to-know basis

Data Breach Notification: In the event of a severe security incident that may harm your rights, we will notify the Privacy Protection Authority (PPA) and affected individuals as required by law.

However, no method of transmission over the Internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

10. Data Retention

We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required by law. Lead information is typically retained for up to 3 years after your last interaction with us.

11. Your Data Subject Rights

Under Israeli law (Protection of Privacy Law and Amendment 13), you have the following rights regarding your personal information:

1. Right of Access

You have the right to request and receive a copy of the personal information we hold about you.

2. Right to Rectification

You can request that we correct inaccurate or incomplete personal information.

3. Right to Deletion (Right to be Forgotten)

You can request deletion of your personal information when:

  • It is no longer necessary for the purposes it was collected
  • You withdraw consent and there is no other legal basis for processing
  • You object to processing for direct marketing
  • The data was unlawfully processed

4. Right to Object

You can object to processing of your personal information, particularly for direct marketing purposes. We will cease processing unless we have compelling legitimate grounds.

5. Right to Restrict Processing

You can request that we limit how we use your data while we verify its accuracy or our legal basis for processing.

6. Right to Data Portability

You can request a copy of your data in a structured, commonly used, machine-readable format to transfer to another service provider.

7. Right to Withdraw Consent

Where processing is based on your consent (e.g., marketing communications, cookies), you can withdraw consent at any time. This does not affect the lawfulness of processing before withdrawal.

8. Right Not to Be Subject to Automated Decision-Making

You have the right not to be subject to decisions based solely on automated processing (including profiling) that produce legal or similarly significant effects. You can request human review of such decisions.

9. Right to Lodge a Complaint

You have the right to lodge a complaint with the Privacy Protection Authority (PPA)(רשות הגנת הפרטיות) if you believe your privacy rights have been violated.

How to Exercise Your Rights

To exercise any of these rights, please contact us:

Response Time: We will respond to your request within 30 days. If we need more time, we will inform you of the reason for the delay.

We may ask you to verify your identity before fulfilling your request to ensure data security.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.

13. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

    🍪 We Value Your Privacy

    We use cookies to improve your experience and analyze site traffic. You can choose which cookies to allow. Essential cookies are required for the site to function. Learn more