Privacy Policy
This Privacy Policy explains how QuickLead handles your information when you use QuickLead Casa (browser extension), the portfolio, the Decision Assistant (AI chat), billing, and related services.
1. Scope
This Policy applies to the QuickLead Casa browser extension (Chrome, Firefox, and Edge), the portfolio workspace, the Decision Assistant (AI chat), the website, billing, support, and related backend services.
The QuickContact Android app is a separate product with its own data flow (Google Sign-In, saved contacts). Where QuickContact is used to receive contacts from a QuickLead Casa portfolio, the relevant data shared between the two products is covered here.
2. Extension permissions by browser
Chrome and Edge: The extension installs with minimal permissions — only access to QuickLead's own servers (api.quicklead.tools). No permission to read website data is requested at install time. When you visit a property portal and click the capture button for the first time, the extension requests permission to access that specific site. You can revoke these permissions at any time in your browser settings.
Firefox: The extension requests access to all websites at install time ("Access your data for all websites"). This permission is required because Firefox does not support the same per-site optional permissions model available in Chrome and Edge. In practice, the extension only reads and transmits data from a page when you actively click the capture button — it does not run in the background or access other sites automatically.
3. What we collect when you capture a listing
When you click the QuickLead badge on a listing page, the extension extracts:
- Listing details: price, area, bedrooms, bathrooms, floor, year built, energy rating, features, description text
- Photos visible on the listing page
- Agent or agency name and phone number (if visible on the page)
- Page URL, title, and the portal name
This data is sent to our server, which passes the listing text (description, the page’s structured facts, and the text immediately around the agent’s contact details) to our AI provider to turn it into structured fields. The result is stored in your portfolio.
Reuse between wallets. We keep the structured result of each capture, matched to the listing’s address on the portal. If someone else later captures the exact same listing page, we may serve them that stored result instead of reading the page again. Only what was extracted from the public listing applies — your notes, favourites, buyer profile, conversations, name and email never cross between wallets, and nothing identifies which wallet a stored result came from.
4. What the Decision Assistant processes
When you use the AI chat in your portfolio, we send the following to our AI provider (Alibaba Cloud Model Studio / Qwen):
- The listing data from your portfolio (prices, areas, features, descriptions)
- Your buyer profile facts (family size, budget, priorities — as you share them in conversation)
- Notes you or the AI have added to specific properties
- Recent conversation history (the last 6 turns, taken from the conversation we store — see section 11), plus any earlier message of yours in that conversation the assistant searches for while answering
Alibaba Cloud does not use your data to train their models. Their policy explicitly states that customer data submitted through their API is not used for model training.
5. Account and billing data
- Email address (used for account creation and login)
- Name (optional, used in the portfolio)
- Plan type, credit balance, and usage history
- Payment metadata processed by Stripe (we do not store card numbers)
- Device install ID (anonymous) — used to keep you signed in on the devices you have registered, to enforce the limit on how many devices one account may use, and, as a SHA-256 hash, to count captures for abuse prevention
6. How we use your data
- To capture listings and generate AI second opinions
- To operate the portfolio, chat, family sharing, and phone delivery features
- To manage billing, credits, and subscriptions
- To reuse the structured result of a capture when the same public listing page is captured again, including by another wallet, so the page does not have to be read twice
- To prevent abuse and enforce usage limits
- To fix bugs, improve reliability, and understand how the product is used
- To comply with legal obligations
7. We do not sell your data
We do not sell personal data. We do not use your portfolio content or conversations to train AI models. We may use anonymous, aggregate statistics to improve the service.
8. Website analytics on the Free Tools pages
On our public Free Tools pages we count anonymous usage events so we can see which tools are actually useful: which tool was opened, whether someone began filling it in, whether they asked for a result, and whether that result succeeded or failed. Failures are recorded only as a broad category such as “timeout” or “rate limit”. We also record which language version of the page was used (for example English or Portuguese), from the site’s fixed list of supported languages — never your browser or device language.
These events contain nothing you type into a tool — no property details, prices, addresses, notes, household information or free text, and none of the AI’s answers. They use no cookies, no browser storage and no identifier of any kind, so they cannot be linked to you, to a session, or to each other. We store daily totals only, and those totals are deleted after 180 days.
If you arrive from a campaign link we also record the utm_source, utm_medium and utm_campaign values from that link, and the website you came from (the domain only, never the full address). No other part of the web address is recorded. The “Should I Visit This Home?” tool sends nothing at all — it runs entirely in your browser.
9. Service providers
We use the following services to operate QuickLead:
- Alibaba Cloud Model Studio (Qwen) — AI analysis and chat responses
- Railway — server hosting and backend
- Stripe — payment processing
- Resend — transactional emails (activation, invites)
- Cloudflare — website hosting and CDN
- Google — sign-in (Google Sign-In), Android purchases (Google Play), and spreadsheet export where you connect it
These providers process data on our behalf under their respective security and privacy commitments.
10. International transfers
Your data may be processed in different countries depending on the service provider. For example, AI processing may occur in Alibaba Cloud's international data centres. We use standard contractual and technical measures to support lawful data transfers.
11. How long we keep your data
- Portfolio and notes: kept while your account is active. Deleted immediately when you delete your account — the deletion runs during the request, not on a schedule.
- Chat history: Your conversation with the Decision Assistant is stored on our servers, so the same conversation is there whether you open it on your phone or on your computer. Each message is kept as one turn (clipped at 8,000 characters), and we keep the most recent 400 turns per conversation — older turns are deleted automatically. When you send a message, the last 6 turns are included in the request to the AI provider for context, and the assistant can search back through your own earlier messages in that conversation when it answers. Your conversation is yours alone: other people in the same wallet, including family members, cannot see it. Clearing the chat in your browser empties it on that device but does not currently delete the stored conversation from the server. Deleting your account deletes it immediately.
- Buyer profile facts: kept while your account is active. Deleted with your account.
- Billing records: retained for as long as applicable tax and accounting law requires. They are the only thing kept after an account deletion.
- Security and abuse counters: we count captures per wallet, per device and per IP address to detect abuse. The device identifier and the IP address are stored only as a SHA-256 hash, never in the clear. Daily counts are deleted after 90 days; the monthly totals derived from them are kept for 13 months. All of a wallet’s counters are deleted with the wallet.
12. Your rights
You can:
- Access your data — your portfolio shows all captured listings, notes, and profile facts.
- Correct your data — edit your name, notes, and profile directly in the portfolio.
- Delete your data — delete individual properties, clear the chat from your browser (see section 11 for what that does and does not remove), or request full account deletion.
- Delete your whole account — you can do this from the web, without the app installed: Delete your account. The deletion happens immediately; there is no waiting period and nothing is kept afterwards except billing records.
- Export your data — contact us and we will provide your data in a portable format.
For any privacy request, contact [email protected]. We respond within 30 days.
13. AI outputs are suggestions
The Decision Assistant provides suggestions based on listing data. These are not professional advice and do not replace property visits, technical inspections, legal counsel, or financial assessments. Always verify information independently before making decisions.
14. Changes to this Policy
We may update this Policy as the product evolves. Material changes will be posted on this page. We recommend checking periodically.