LEADER AD WEBSITE MANAGER Privacy Policy

Product Privacy Policy

This Policy covers connected-site inventory, health checks, updates, remote actions, licensing, and audit records used to manage authorized WordPress websites.

Effective dateAugust 29, 2026
Last updatedAugust 29, 2026
Applies toLEADER AD WEBSITE MANAGER
Authorized sites only

Connections and remote actions must be configured by a person authorized to manage the website.

Operational scope

The service focuses on software inventory, health, updates, status, and action history.

Auditable actions

Material remote actions may be logged for security, accountability, and support.

1. Scope and relationship to other policies

This Privacy Policy applies to the LEADER AD WEBSITE MANAGER plugin, dashboard, connected-site service, licensing and update systems, remote administration functions, diagnostics, and related support.

This Policy covers processing performed by or specifically through LEADER AD WEBSITE MANAGER. Website visits, Website accounts, checkout, product purchases, downloads, and communications made directly through LEADERAD.site remain subject to the LEADER AD Website Privacy Policy, unless this Policy expressly states otherwise.

2. Who is responsible and how to contact us

For processing under LEADER AD’s control and covered by this Policy, the responsible business is LEADER AD.

Privacy contact: [email protected]
Website: LEADERAD.site
Privacy Center: LEADERAD.site/privacy/

Where a customer uses the product to process information for its own website, business, personnel, learners, clients, visitors, or users, that customer may independently determine the purposes and means of that processing. In that context, the customer is responsible for its notices, instructions, permissions, and lawful basis, while LEADER AD acts only within the role required by the feature, agreement, and applicable law.

3. How WEBSITE MANAGER works

WEBSITE MANAGER connects an authorized WordPress installation to a management interface so an authorized administrator can review site status, installed software, compatibility, licenses, updates, and permitted remote actions. The connection may use installation identifiers, signed requests, authentication tokens, or equivalent credentials. The product is not intended to provide LEADER AD with unrestricted access to unrelated site content.

4. Information processed

The information processed depends on the features used, configuration, product version, and the actions requested.

CategoryExamplesHow it is handled
Site identitySite URL, site title, installation identifier, environment type, connection status and timestamps.Used to identify the authorized installation and route management requests.
Technical inventoryWordPress, PHP, server, plugin, theme and database versions; update availability; compatibility and health indicators.Used to display status, identify risks, and perform requested maintenance.
Remote action recordsRequested action, actor or administrator identifier, target site, time, result, error, affected component and audit metadata.Used for execution, accountability, troubleshooting, and security.
Authentication and connection materialConnection token, public key, signature metadata, nonce, authorization state or similar secrets.Protected and used only to authenticate authorized communication; secrets are not intended for public display or ordinary logs.
License and subscriptionCustomer or organization identifier, plan, entitlement, activation, site limit, renewal or expiry, product version and update status.Processed by licensing, billing, and update systems.
Support and diagnosticsError reports, connectivity tests, selected logs, configuration information and messages voluntarily provided.Used to investigate a problem or deliver support.

5. How information is obtained

Information may be obtained through the following sources:

  • from the administrator when a site is connected, named, organized, or configured;
  • automatically from the connected WordPress installation and its environment;
  • from management actions requested by an authorized user;
  • from licensing, subscription, update, and support systems.

We do not infer that optional information is present merely because the product can technically support a related feature.

6. Purposes and legal bases

Information may be processed only as reasonably related to the following purposes:

  • authenticate and maintain an authorized connection;
  • display site inventory, software versions, updates, health, and connectivity status;
  • perform and verify remote actions expressly requested by authorized administrators;
  • maintain audit records and detect unauthorized, duplicated, altered, or abusive requests;
  • manage licenses, site limits, subscriptions, updates, and entitlements;
  • diagnose failures, restore service, and provide support;
  • protect LEADER AD, customers, connected sites, and users.

Where applicable law requires a legal basis, processing may rely on one or more of the following, depending on the activity:

  • performance of a contract or steps requested before entering into a contract;
  • LEADER AD’s legitimate interests in operating, securing, supporting, improving, and protecting the product, provided those interests are not overridden by applicable rights;
  • compliance with legal, accounting, tax, security, or regulatory obligations;
  • consent, where consent is required or selected by the user; and
  • protection of users, systems, property, or legal rights where permitted by law.

The legal basis depends on the specific feature, context, jurisdiction, and information involved. Consent may be withdrawn for future processing without affecting processing already lawfully performed.

7. Information and access not intentionally required

The ordinary operation of this product is not intended to require unnecessary personal or sensitive information.

  • WEBSITE MANAGER is not intended to routinely collect the body of posts, private messages, customer databases, payment-card data, or passwords from connected sites;
  • a WordPress administrator password should not be transmitted to LEADER AD when a signed connection mechanism is available;
  • camera, microphone, contacts, precise location, and advertising identifiers are not required;
  • site information is not sold or used to build unrelated advertising profiles.

Do not submit passwords, secret keys, payment-card numbers, government identifiers, health data, or other sensitive information through ordinary support or description fields unless LEADER AD has specifically requested it through an appropriate secure process and it is genuinely necessary.

8. Remote actions and authorization

Remote updates, activation changes, maintenance operations, or other actions must be initiated by an authorized administrator or by an automation the customer has knowingly enabled. LEADER AD may refuse, delay, rate-limit, or require reauthentication for an action that appears unauthorized, unsafe, incompatible, or likely to cause material harm.

The customer is responsible for having an appropriate maintenance process, testing high-risk changes, protecting recovery access, and ensuring that its actions comply with contracts and law.

9. Connected-site personal information

A connected website may contain personal information controlled by the customer. WEBSITE MANAGER should access only the minimum information needed for the requested management operation. If support requires a diagnostic package or temporary access that could expose site content, the customer should remove unnecessary personal information, limit the access window, and provide lawful instructions.

Sharing, service providers, and disclosures

LEADER AD does not sell personal information processed under this Policy. Information may be disclosed only as reasonably necessary for the relevant purpose, subject to suitable safeguards and applicable law.

  • hosting, database, authentication, licensing, update, monitoring, and email providers acting for LEADER AD;
  • authorized administrators and organizations managing the connected site;
  • the site’s hosting provider or relevant software vendor when needed to complete a requested operation or resolve a fault;
  • professional incident-response or support providers under appropriate duties of confidentiality.

Information may also be disclosed when reasonably necessary to comply with law or a valid legal process; protect users, systems, property, safety, or rights; investigate misuse or fraud; enforce applicable terms; or support a merger, financing, acquisition, reorganization, or sale of assets. Any business successor would remain subject to applicable privacy obligations for the information it receives.

International processing and transfers

Service providers, infrastructure, app stores, cloud platforms, or authorized recipients may operate in countries other than the user’s country. Where personal information is transferred internationally, LEADER AD will use the mechanism, authorization, contractual protection, or other safeguard required by the law applicable to that transfer.

A reference to an international provider does not by itself mean that every user’s information is transferred to every location in which that provider operates.

Retention

Information is retained only for as long as reasonably necessary for the purpose for which it was processed, including to provide the product, maintain security and transaction records, resolve disputes, enforce agreements, comply with legal or accounting requirements, and establish or defend legal claims.

  • connection and inventory data are kept while a site remains connected and for a limited period afterward for security and support;
  • remote action and audit records may be kept longer to investigate incidents, verify authorization, and resolve disputes;
  • revoked tokens should be disabled promptly, while security evidence about the revocation may be retained;
  • billing, license, and subscription records follow applicable accounting, fraud-prevention, and legal periods.

Retention can vary because local information is controlled by the user or operating system, server logs rotate on different schedules, backup copies expire according to configured cycles, and legal duties may require certain records to be held longer. Information may be deleted, anonymized, aggregated, or isolated when it is no longer required.

Security

LEADER AD uses administrative, technical, and organizational measures selected according to the nature of the product and information involved. Measures may include access controls, separation of duties, authentication, encryption in transit where supported, secure coding and update practices, logging, monitoring, rate limits, integrity checks, and restricted administrative access.

No product, transmission, device, storage system, or security measure can be guaranteed to be completely secure. Users and customer administrators must protect accounts, devices, recovery material, API keys, hosting access, and other credentials under their control; apply updates; limit privileges; review activity; and report suspected compromise promptly.

User and administrator controls

Customer administrators can manage sites, users, connections, and permissions through available controls.

  • disconnect or remove a site;
  • revoke or rotate connection credentials;
  • limit which administrators may issue remote actions;
  • review recent action and connection history;
  • disable optional monitoring, notifications, or automatic actions;
  • request deletion of centrally held site-management data, subject to security, transaction, and legal exceptions.

Removing a local app, disconnecting an integration, or deleting an account does not necessarily erase records that another controller, app store, payment provider, backup destination, or legal obligation independently requires that party to keep.

Privacy rights and requests

Depending on where you live and the law that applies, you may have rights to request access to personal information, obtain a copy, correct inaccurate or incomplete information, object to or restrict certain processing, request deletion where the legal conditions are met, withdraw consent for future processing, and receive certain information in a portable format.

These rights are not absolute. A request may be limited where information must be retained to complete a transaction, protect security, establish or defend legal claims, comply with law, preserve the rights of others, or where another lawful exception applies. We may ask for information reasonably necessary to verify the requester and prevent unauthorized disclosure.

Requests may be sent to [email protected] or through the LEADER AD contact page. We will respond through the appropriate channel and within the period required by applicable law.

Children

WEBSITE MANAGER is an administrative product for authorized site operators and is not directed to children. Connected sites remain responsible for their own audiences and privacy duties.

If LEADER AD learns that information was collected from a child in circumstances requiring parental authorization and that authorization was not validly obtained, we may delete or restrict the information as required by law. A parent or guardian may contact [email protected].

Automated decisions

Configured automations may check status, detect missing updates, or carry out an action selected by the administrator. They are operational website-management decisions and are not intended to make decisions about an individual with legal or similarly significant effects.

Security, fraud, spam, licensing, integrity, or quality systems may automatically flag, limit, queue, or block an event. Where required by law, a person may contact LEADER AD to request appropriate review of a decision producing legal or similarly significant effects.

Changes to this Policy and product evolution

LEADER AD may update this Policy to reflect product changes, new optional features, security improvements, provider changes, or legal requirements. The “Last Updated” date will identify the current published version. Where required, material changes will be communicated through an appropriate product, account, website, store-listing, or direct notice before they take effect.

A future feature is not treated as active processing solely because this Policy explains how it would be handled if offered. If a new feature materially changes data practices, LEADER AD will update the applicable notice and obtain consent where the law requires it.

Contact and interpretation

LEADER AD Privacy
Email: [email protected]
Contact form: https://leaderad.site/contact-us/
Privacy Center: https://leaderad.site/privacy/