Skip to content

Terms and Conditions

General Terms and Conditions governing the use of Leadbase

Non-binding convenience translation: This English version is provided for convenience only. The German version remains authoritative and legally binding. In the event of any discrepancy, the German version prevails.

Contracting parties and scope

These General Terms and Conditions (these “Terms”) govern the contractual relationship between Workbase Platforms Sp. z o.o., a Polish company represented by its Managing Director Nils Kröger, EU branch at Franz-Joseph-Str. 11, 80801 München, Deutschland, which operates a B2B data enrichment platform under the brand "Leadbase" ("Leadbase", "provider", "we", "us"), and legal entities, companies, self-employed persons, or other commercial users ("customer", "client", "you") for the use of our cloud-based B2B lead-intelligence platform and all related services, APIs, software integrations, and other offerings.

Binding effect and order of precedence

By registering electronically, first accessing our platform, using an API, or otherwise using our services, you agree to be legally bound by these Terms in the version valid at the time of use. These Terms apply exclusively; deviating, conflicting, or supplementary terms and conditions of the customer do not become part of the contract, unless we have expressly and in writing agreed to their validity.

Business use and B2B focus

Leadbase is intended exclusively for business customers (B2B). Use by consumers within the meaning of § 13 BGB is excluded. The customer confirms that it acts as an entrepreneur within the meaning of § 14 BGB and uses the services exclusively for commercial or independent professional activities.

Duration and continuity

These Terms apply to all current and future business relationships between the parties, even if they are not explicitly referred to again in later contracts, orders or service extensions. These Terms remain effective until validly terminated or replaced by a new version.

Governing law and compliance

These Terms are governed by German law to the exclusion of the United Nations Convention on Contracts for the International Sale of Goods (CISG). The parties agree that Munich shall be the place of jurisdiction for all disputes. The services are provided in compliance with the EU General Data Protection Regulation (GDPR), the Federal Data Protection Act (BDSG) and all applicable German and European laws.

Language versions and interpretation

These Terms are written in German. If translations into other languages are provided, the German version shall prevail in the event of any discrepancy. In the event of doubts about interpretation, the principles of supplementary contractual interpretation under German law apply.

Comprehensive description of services and service portfolio

Core services of the Leadbase platform

Leadbase is a cloud-based, enterprise-grade B2B lead-intelligence platform that specializes in enriching, validating and managing business contact data. Our services include:

Lead data enrichment and intelligence

  • Contact data enrichment: email addresses, phone numbers (landline/mobile), social media profiles
  • Company profiles: company data, number of employees, turnover, industry, technology stack
  • Decision-maker identification:{" "} decision-makers, department heads, C-level executives
  • Hierarchy mapping: Organizational structures and reporting lines
  • Intent data: purchase intent and signals of interest
  • Technographic data: software usage, IT infrastructure, CRM systems

CRM integrations and system connectivity

  • Native integrations: HubSpot, Salesforce, Pipedrive, Close.com, Zoho CRM
  • Bidirectional synchronization: Real-time data matching between systems
  • Custom field mapping: Flexible mapping of customer-specific data fields
  • Workflow automation: Trigger-based data enrichment
  • API-first architecture: RESTful APIs and GraphQL endpoints
  • Webhook support: Event-based data transmission

Data quality and validation

  • Email verification: Syntax, domain and mailbox validation
  • Phone number validation: Format, provider and reachability checks
  • Duplicate detection: Intelligent identification and cleanup
  • Data quality scoring: Data reliability rating system
  • Continuous updates: Automatic update of outdated information

Analytics and business intelligence

  • Usage dashboard: credit usage, API calls, success rates
  • Data quality metrics: accuracy, completeness, and freshness scores
  • ROI tracking: Conversion rates and revenue attribution
  • Custom Reports: Custom analyses and KPI dashboards
  • Data lineage: Tracking of data origin and processing

Service level agreements (SLAs)

  • Availability: 99.9% uptime (measured monthly)
  • API response time: Average < 500ms for standard requests
  • Data freshness: Monthly updates for company and contact data
  • Support response: Business hours 4h, critical issues 1h
  • Batch processing: Processing of up to 100.000 records per day

Platform features and user interface

  • Web dashboard: Intuitive user interface for lead management
  • Bulk upload: CSV/Excel import for bulk data enrichment
  • Export functions: Multi-format export (CSV, JSON, Excel, PDF)
  • Search and filters: Advanced search functions and filter options
  • Team collaboration: Multi-user support with roles and permissions
  • Mobile responsiveness: Full functionality on all devices

Beta features and experimental functionality

We reserve the right to continuously expand, improve or modify our range of services. Beta features and experimental features are clearly marked as such and can be modified or removed without notice. Significant changes to core functionalities will be notified to customers at least 30 days in advance. New features may initially be made available to selected customers before they are generally released.

Service availability and maintenance windows

Scheduled maintenance work is announced at least 48 hours in advance and preferably carried out outside peak hours (CEST/CET). Emergency maintenance to resolve critical security issues can be done at any time without notice.

Registration, account creation and identity verification

Account registration and verification

Registration for Leadbase services takes place exclusively online via our website or API. Creating an account requires complete and truthful information about the company and the account manager:

  • Company data: Company name, legal form, commercial register entry
  • Contact information: Business address, telephone, email address
  • Responsible person: Name, position, contact details of the account manager
  • Tax identification: VAT ID for EU customers
  • Purpose of use: Description of the planned use of the Services

Know Your Customer (KYC) and Due Diligence

We reserve the right to carry out additional verifications, in particular:

  • Companies with high volumes or unusual usage patterns
  • Clients from high-risk jurisdictions or regulated industries
  • Suspicion of fraudulent activity or breaches of these Terms
  • Compliance requirements or regulatory requirements

Account activation and approval

After successful registration and verification, the account is activated within 24 hours. In the event of incomplete information or verification problems, the customer will be informed immediately. Until full activation, only limited access to demo functions is possible.

Multi-account management and corporate structures

Groups and corporate groups can apply for separate accounts for different business units or subsidiaries. Each account is managed and billed separately, unless a consolidated billing is expressly agreed.

Account security and credentials

Customers must use strong passwords and enable multi-factor authentication. Sharing credentials with third parties is prohibited. We must be notified immediately of any suspected unauthorized access. Account holders are liable for all activities performed using their credentials until a security incident is properly reported.

Comprehensive pricing, billing, and payment terms

Pricing models and plan structures

Leadbase offers different pricing models for different customer needs:

Credit-based system

  • Lead Credits: Consumption per enriched contact
  • API Credits: Billing per API request and data volume
  • Bulk Credits: Reduced prices for batch processing
  • Premium Credits: Surcharge for exclusive or time-critical data
  • Integration Credits: Additional costs for CRM synchronization

Subscription models

  • Starter: Monthly quota for small teams
  • Professional: Advanced functions and higher limits
  • Enterprise: Unlimited use with SLA guarantees
  • Custom: Individual agreements for large customers

Detailed billing arrangements

Billing cycles

  • Monthly billing: Standard cycle for subscriptions
  • Annual billing: Discounts from 10-20% with advance payment
  • Pay-as-you-go: Immediate billing for credit consumption
  • Quarterly billing: Available for medium-sized companies

Invoicing and payment deadlines

  • Invoice delivery: By email by the 5th day of the following month
  • Payment period: Net 14 days from invoice date
  • Payment methods: SEPA direct debit, credit card, bank transfer
  • Currency: EUR for EU customers, USD for international customers
  • Dunning procedure: 1st reminder after 7 days in default; fees may apply

Price adjustments and plan changes

Price increases are announced at least 60 days in advance. Customers have the right to extraordinary termination in the event of price increases of more than 10%. Plan changes are possible at any time and become effective at the next billing cycle. Downgrades may result in data loss for which we are not liable.

Taxes and duties

All prices are exclusive of the statutory VAT. Cross-border services may incur additional taxes. EU customers with valid VAT ID receive invoices without German VAT (reverse charge).

Late payments and measures

In the event of late payment, we reserve the right to restrict or suspend the service. Default interest is charged at 9 percentage points above the base interest rate. Dunning and debt-collection costs will be charged to the customer.

Refunds and credits

Credits already used and services already billed are generally non-refundable. Exceptions apply in the event of proven service outages or data quality problems on our part. Credits will be charged against future invoices or refunded at the end of the contract.

Comprehensive usage guidelines and compliance requirements

Permitted use and best practices

Leadbase services may only be used for lawful business purposes. Customers undertake to comply with all applicable laws and regulations:

Approved use cases

  • Lead generation: Identification of potential B2B customers
  • CRM data enrichment: Completion of existing customer data
  • Sales Intelligence: Research for sales activities
  • Market Research: market and competitive analysis
  • Account-based marketing: Target group identification
  • Data quality management: Cleanup and validation

GDPR-compliant use

  • Legal basis: Legitimate interest or consent required
  • Purpose limitation: Use only for specified business purposes
  • Data minimization: Retrieval of only the information actually required
  • Storage limitation: Regular review and deletion
  • Transparency: Information provided to data subjects

Absolutely prohibited types of use

The following activities are strictly prohibited and lead to immediate account suspension and possible legal consequences:

Unlawful activities

  • spam and unwanted advertising: Mass advertising without legal basis
  • Cold calling without authorization: Calls without legitimate interest
  • Data misuse: Transfer or sale of Leadbase data
  • Scraping and reverse engineering: Automated data extraction
  • Identity theft: Use of false identities
  • Discrimination: Exclusion due to protected characteristics

Abuse of the Platform

  • Service overload: Excessive API calls or bulk requests
  • Account sharing: Transfer of credentials to third parties
  • Competitive intelligence: Spying on Leadbase data
  • Resale: Commercial use of the data by third parties
  • Data mining: Systematic extraction for own databases

Industry-specific compliance requirements

Regulated sectors

  • Financial services: Compliance with MiFID II and KWG
  • Healthcare: HIPAA compliance with US customers
  • Insurance: VAG and compliance with Solvency II
  • Telecommunications: Compliance with the TKG and TTDSG
  • Energy and utilities: EnWG-compliant data use

International compliance and cross-border transfers

For cross-border use, additional compliance requirements must be observed. Customers are required to comply with the local laws applicable at their place of business. For data transfers outside the EU, the provisions of the GDPR on international transfers apply.

Monitoring and compliance oversight

We reserve the right to monitor the use of our Services and take action in the event of breaches of these policies. This includes warnings, usage restrictions, account suspensions and legal action.

Detailed data protection and security regulations

The protection of personal data is a top priority for Leadbase. Our data processing is carried out in strict compliance with the EU General Data Protection Regulation (GDPR), the Federal Data Protection Act (BDSG) and all applicable data protection laws.

Data processing roles and responsibilities

  • Leadbase as a processor: Processing exclusively on behalf of the customer
  • Customer as controller: Determination of purposes and means of processing
  • Joint controllership: For certain analytics and optimizations
  • Subprocessors: Limited to GDPR-compliant subprocessors
  • Contract performance (Art. 6 para. 1 lit. b GDPR):{" "} Provision of the Leadbase services
  • Legitimate interest (Art. 6 para. 1 lit. f GDPR):{" "} Service optimization and security
  • Consent (Art. 6 para. 1 lit. a GDPR):{" "} Marketing and optional features
  • Legal obligation (Art. 6 para. 1 lit. c GDPR):{" "} Compliance and storage obligations

Comprehensive technical and organisational measures (TOM)

Access controls and authentication

  • Multi-factor authentication: Mandatory 2FA for all admin accounts
  • Role-Based Access Control (RBAC): Granular access systems
  • Zero Trust Architecture: Continuous verification of all access attempts
  • Session Management: Automatic timeouts and secure tokens
  • Privileged Access Management: Monitoring of administrative accesses

Encryption and cryptography

  • Transport Layer Security: TLS 1.3 for all client-server communications
  • Database encryption: AES-256 encryption at rest
  • Application-level Encryption: Field-specific encryption of sensitive data
  • Key Management: Hardware Security Modules (HSM) for key protection
  • Perfect Forward Secrecy: Protection against subsequent decryption

Network and infrastructure security

  • Firewall systems: next-generation firewalls with deep packet inspection
  • Intrusion Detection: 24/7 network- and host-based IDS/IPS
  • DDoS protection: Cloud-based attack mitigation
  • Network segmentation: Microsegmentation of critical systems
  • VPN access: Encrypted connections for administrative access

Incident response and security monitoring

Security Operations Center (SOC)

  • 24/7 Monitoring: Continuous monitoring of all systems
  • SIEM Integration: Centralized log analysis and correlation
  • Threat Intelligence: Proactive threat detection
  • Automated Response: Immediate response to critical alerts
  • Forensic Capabilities: Detailed incident investigation

Incident response process

  • Detection: Automatic detection of security incidents
  • Assessment: Assessment of severity and impact
  • Containment: Immediate containment of the threat
  • Investigation: Forensic analysis and root cause determination
  • Recovery: Recovery of affected systems
  • Notification: Notification to customers and authorities in accordance with the GDPR

Data protection impact assessment and privacy by design

All new features and system changes undergo a systematic data protection impact assessment (DPIA). Data protection is integrated into the system design from the outset (privacy by design and privacy by default).

Service level agreements and performance guarantees

Availability guarantees and uptime monitoring

Leadbase is committed to the highest service standards and offers comprehensive service level agreements for various customer classes:

Service availability by plan

  • Starter plan: 99.5% monthly availability
  • Professional plan: 99.7% monthly availability
  • Enterprise plan: 99.9% monthly availability
  • Custom Enterprise: 99.95% with individual SLAs

Performance metrics and response times

  • API Response Time: Average < 500ms (95th Percentile < 2s)
  • Dashboard Load Time: Initial page views < 3s
  • Bulk Processing: Up to 10.000 Records/minute
  • Real-time enrichment: < 2s for standard data enrichment
  • Report generation: < 30s for standard reports

Support services and response times

Support channels and availability

  • email Support: 24/7 ticket system for all customers
  • Live Chat: Business hours (09:00-18:00 CEST) for Professional+
  • Phone Support: Only enterprise customers with dedicated hotlines
  • Customer Success Manager: Personal support for large customers

Support response times by priority

  • Critical (Service Down): 1h response, 4h resolution target
  • High (Major Functionality): 4h response, 24h resolution target
  • Medium (Minor Issues): 24h response, 72h resolution target
  • Low (General Questions): 48h response, 5 business days Resolution

Data quality guarantees and service credits

Data quality metrics

  • email-Accuracy: At least 95% valid email addresses
  • Phone number accuracy: At least 90% correct phone numbers
  • Company data freshness: Monthly updates for active companies
  • Contact data completeness: At least 80% complete profiles

Service credits for SLA breaches

  • Availability < 99.5%: 5% credit against the monthly fee
  • Availability < 99.0%: 10% credit against the monthly fee
  • Availability < 98.0%: 25% credit against the monthly fee
  • Critical outages > 8h: Full monthly fee refund

Escalation processes and service improvement

In the event of repeated SLA violations or critical service problems, automatic escalation processes take effect. Enterprise customers receive proactive service reviews and individual improvement plans.

Registration, account creation and verification

The use of Leadbase requires a complete registration with truthful, complete and up-to-date information. You undertake to provide the following data:

  • Complete company data (company, legal form, commercial register number)
  • Responsible contact person with full contact details
  • Valid business email address (no private email provider)
  • Phone number for support and security purposes
  • VAT No. for EU customers or corresponding tax number. We reserve the right to refuse registrations or require additional verification, particularly in cases of suspicious activity, incomplete information, or customers from high-risk countries. Accounts are activated after successful identity and email verification. Only one account is permitted per company. Multiple accounts and circumvention of account limits are prohibited. Accounts are non-transferable and may not be shared with third parties.

Access authorizations and security requirements

Access to Leadbase is exclusively via secure authentication procedures. Customers are obliged to keep their credentials (passwords, API keys, session tokens) secure and protect them from unauthorized access. Safety requirements:

  • Use of strong passwords (minimum 12 characters, upper/lower case, numbers, special characters)
  • Regular password updates (recommended: all 90 days)
  • Secure storage of API keys and authentication tokens
  • Immediate notification in case of suspected compromise of credentials
  • Use of 2-factor authentication (2FA) where available. In the event of suspected unauthorized access or a security breach, we may temporarily suspend accounts and require additional security measures. The customer is liable for all activities carried out through its account.

Comprehensive rights and restrictions of use

Leadbase grants the customer a non-exclusive, non-transferable, revocable right of use for the services and provided data for the term of the contract. This right is limited to the agreed use and the booked service level. Permitted use:

  • Lead generation and prospecting for own business purposes
  • CRM data enrichment for existing customer databases
  • Sales and marketing activities in the B2B area
  • Integration into own business processes and software tools
  • Forwarding enriched data to employees and authorized service providers. Prohibited use:
  • Resale, rental or commercial transfer of data to third parties
  • Reverse engineering, decompilation or replication of the platform
  • Automated mass queries outside the API limits
  • Use for spam, unwanted advertising or harassment
  • Data breaches or breaches of opt-out requests
  • Use for illegal, harmful or discriminatory purposes
  • Creation of competing products or services

Prices, payment terms, and billing arrangements

The billing is based on the prices valid at the time of the order and the selected billing model (monthly, annually, pay-per-use). All prices are net plus the statutory VAT. Payment arrangements:

  • Payment term: Net 14 days without deduction
  • Accepted payment methods: SEPA direct debit, credit card, bank transfer
  • Automatic renewal for subscription models, unless cancelled
  • Usage-based billing takes place monthly afterwards
  • Setup fees are due immediately upon conclusion of the contract. In the event of late payment, we may charge default interest at 9 percentage points above the base interest rate. After an unsuccessful reminder, we may suspend access and charge additional costs, including reminder fees and debt-collection costs. The service remains suspended until payment is made in full. Price adjustments will be announced at least 30 days in advance. Customers may terminate for cause if prices increase by more than 5%.

Termination provisions and term of contract

The minimum contract term is one month for monthly billing or twelve months for annual billing. The contract is automatically extended for the original term, unless terminated in time. Ordinary termination:

  • Monthly self-service contracts: at any time, effective at the end of the current paid billing period. If cancellation is received before the automatic renewal, it prevents the next billing period, including when received just one day before renewal. Access and services continue until the end of the current paid billing period.
  • Annual contracts: 3 months before the end of the contract
  • Pay-per-use: at any time without notice (no further use)
  • Enterprise contracts: By individual agreement Extraordinary termination: Both parties have the right to terminate without notice for material cause. Material causes include repeated breaches of contract, late payment despite a reminder, insolvency of the other party, or serious breaches of these Terms. Terminations must be in writing (email is sufficient) and addressed to support@leadbase.io. After termination, all data will be irrevocably deleted following a 30-day transition period.

Data protection, GDPR compliance and data processing

Leadbase processes personal data exclusively in accordance with the GDPR, the BDSG, and other applicable data protection laws. Detailed information about data processing is available in our privacy policy. Data processing agreement (AVV): To the extent that we process personal data on your behalf, we enter into a separate data processing agreement in accordance with Art. 28 GDPR. This agreement governs the details of data processing and the technical and organizational measures. Your responsibilities:

  • Lawful collection and processing of the data you provide
  • Compliance with GDPR when using our enriched data
  • Compliance with opt-out requests and objections
  • Informing data subjects about the processing
  • Secure storage and proper deletion of data

API use and technical integration terms

The Leadbase API is available to customers according to their booked plan. Use of the API is subject to specific limitations and quality requirements. API limitations:

  • Rate limits according to the booked plan (requests/minute, requests/month)
  • Maximum request size and timeout restrictions
  • Concurrent connection limits
  • Fair Use Policy to ensure system stability API versioning and changes: We reserve the right to update, extend, or modify the API. Breaking changes are announced with at least 90 days' notice. Older API versions are supported for at least 12 months after the announcement. Customers must manage API keys securely, implement appropriate error handling and retry mechanisms, and comply with the API documentation. Misuse of the API may result in suspension.

CRM integrations and third-party services

Leadbase offers integrations with various CRM and business tools. These integrations depend on the availability and functionality of the respective third-party APIs. Available integrations:

  • CRM Systems: HubSpot, Salesforce, Pipedrive, Close, Zoho CRM
  • Automation tools: Zapier, Make.com, n8n
  • Email marketing: Mailchimp, Mailgun and other providers
  • Further integrations depending on availability and demand. Disclaimer for third parties: We assume no liability for the availability, functionality, or data security of integrated third-party services. Third-party outages, API changes, and data loss are beyond our control. Customers should regularly back up important data. Customers are responsible for integration setup and configuration. Support for third-party integrations is subject to fees and available only within the scope of our expertise.

All rights to the Leadbase platform, software, algorithms, data structures, designs, trademarks and other intellectual property rights remain with Leadbase or our licensors. Customers only receive the rights of use defined in these Terms. Intellectual property rights of Leadbase:

  • Software code, algorithms and data processing logic
  • UI/UX design, user interfaces and workflows
  • Trademarks, logos and corporate identity
  • Documentation, API specifications and manuals
  • Data models, schema structures and taxonomies Prohibited actions: Reverse engineering, decompilation, disassembly or other attempts to determine the source code or the functioning of the platform are strictly prohibited. The use of our trademarks without express written permission is not permitted. In the event of copyright infringement or unauthorized use, we reserve the right to take legal action, including claiming damages and obtaining injunctions.

Account management and user management

Customers can create multiple user accounts within their company account. The management of user rights and access permissions is the responsibility of the account holder. Account hierarchy:

  • Master Account: Full access to all functions and billing
  • Admin user: user management and service configuration
  • Standard user: Access to lead data and CRM integrations
  • Read-only users: Read-only access to data and reports. The account holder is responsible for all activities of authorized users and is liable for violations of these Terms. Customers must notify us immediately of personnel changes or account transfers. Account security: The customer must regularly review active users, immediately deactivate departing employees, and securely manage access rights. Suspicious activity must be reported immediately.

Prohibited types of use and compliance requirements

The use of Leadbase for certain purposes is strictly prohibited. Violations can lead to immediate account suspension and legal consequences. Absolutely prohibited use:

  • Spam, unwanted mass advertising or cold email campaigns without legal basis
  • Sale, rental or other commercial transfer of data
  • Use for credit checks, background checks or other SCHUFA-like purposes
  • Discrimination based on sex, race, religion or other characteristics
  • Stalking, harassment or other unlawful contact
  • Generating fake identities or fake company profiles
  • Use for political campaigns without corresponding licensing
  • Breach of embargoes or trade restrictions Compliance requirements: Customers must comply with all applicable laws and regulations, in particular the GDPR, UWG, Telemedia Act, CAN-SPAM Act (for US activities), and industry-specific regulations. Additional compliance requirements apply to regulated industries such as financial services and healthcare.

Service availability and performance guarantees

Leadbase strives for high service availability, but cannot guarantee a 100% uptime. Our Service Level Agreements (SLA) define realistic availability targets and compensation arrangements. Availability goals:

  • Standard plan: 99.0% monthly uptime
  • Professional plan: 99.5% monthly uptime
  • Enterprise Plan: 99.9% monthly uptime with Priority Support Planned Maintenance Windows: Regular maintenance work takes place outside business hours (22:00-06:00 CET) if possible and is announced at least 24 hours in advance. Emergency maintenance can be performed without prior notice. Service Credits: If the SLA targets are not met, we grant service credits according to the downtime. Credits are automatically credited to the next invoice and are not payable.

Data quality, accuracy and warranty exclusion

Leadbase strives for the highest possible data quality, but cannot guarantee the accuracy, completeness or timeliness of all data provided. B2B data is subject to natural fluctuations and changes. Data quality metrics:

  • Email addresses: ~85-95% delivery rate (varies by industry)
  • Telephone numbers: ~80-90% current for regularly updated records
  • Company data: Update at least quarterly from public sources
  • Contact person: Continuous verification via multiple data sources Exclusion of warranty: We assume no liability for business decisions made on the basis of our data. Customers are required to verify critical data prior to important business activities. A guarantee for certain business successes or conversion rates is expressly excluded.

International use and cross-border data transmission

Leadbase can be used by customers in different countries. The respective local laws and regulations must be observed. The data processing takes place primarily in the EU, but can also include servers in other regions. Data transfer mechanisms:

  • EU adequacy decisions for third countries where available
  • Standard contractual clauses (SCC) for international data transmissions
  • BCR (Binding Corporate Rules) for enterprise customers
  • Additional safeguards for transfers to non-EU countries International Compliance: Customers are responsible for compliance with local laws in their countries of operation. This includes data protection laws (GDPR, CCPA, LGPD), marketing laws and import restrictions. In case of uncertainties, we recommend consulting local legal advice.

Detailed termination provisions and consequences

Upon termination of the contract, for whatever reason, special provisions apply for data return, account deactivation and subsequent liabilities. Specific termination of the contract:

  • 30-day transition period for data export and integration adjustments
  • Access to export functions for downloaded data
  • Cancellation of all recurring payments and subscriptions
  • Deactivation of API keys and Webhooks Data deletion and return: After the expiry of the 30-day transition period, all customer data will be irrevocably deleted from our systems. This includes account data, uploaded lists, search histories and personalized configurations. A recovery after deletion is technically not possible. Pending liabilities: Already incurred usage fees remain due after termination. Usage-based charges are calculated until the final day of use. Prepayments for unused periods shall be reimbursed pro rata.

Comprehensive limitations of liability

The liability of Leadbase is limited in a manner permitted by law. We are only liable for intent, gross negligence or breach of essential contractual obligations (cardinal obligations). Disclaimer:

  • Indirect damages, consequential damages and lost profit
  • Loss of data when the system is used properly
  • Business losses due to service interruptions
  • Damage caused by third-party services and integrations
  • Outages due to force majeure, cyberattacks or natural disasters Maximum liability: As far as liability cannot be excluded, this is limited in amount to the remuneration paid by the customer for the affected services in the last 12 months before the damage event, but a maximum of EUR 10.000 per damage event. This limitation of liability does not apply to damages resulting from injury to life, body or health as well as intentional or grossly negligent breaches of duty of our legal representatives or vicarious agents.

Dispute resolution and enforcement

In case of disputes, we first prefer a mutually agreed solution through direct communication between the parties. If this is not possible, various dispute-resolution mechanisms are available. Stages of escalation:

  • Direct negotiation between account management and customer
  • Mediation by neutral third party in case of major disputes
  • Arbitral Tribunal for amounts in dispute over EUR 25.000
  • Court proceedings as a last resort Court and applicable law: German law applies exclusively to all disputes arising from or in connection with this contract, to the exclusion of the United Nations Convention on Contracts for the International Sale of Goods (CISG). The place of jurisdiction is Leadbase's registered office where the customer is a merchant, a legal entity under public law, or a special fund under public law. Limitation periods: Claims under this contract become time-barred two years after the claimant becomes aware of the damage and the identity of the liable party, and no later than five years after the breach of duty.

Force majeure and exceptional circumstances

Leadbase is not liable for delays or failures caused by force majeure or other exceptional circumstances beyond our reasonable control. Force Majeure events include:

  • Natural disasters (earthquakes, floods, storms)
  • Wars, terrorist attacks, political unrest
  • Pandemics and officially ordered lockdowns
  • Cyberattacks on critical infrastructures
  • Strikes, industrial disputes at essential service providers
  • Failure of critical Internet infrastructure or data centers
  • Changes to the law that make our Services illegal Contract adjustment at Force Majeure: In the event of longer-lasting Force Majeure events (more than 30 days), both parties may terminate the contract for cause. Already paid fees for non-performed services will be refunded pro rata. Liability for lost business or other indirect damages is excluded.

Changes to these Terms and notification procedures

Leadbase reserves the right to amend or supplement these Terms at any time, in particular in the event of changes in the legal situation, new services or changed business practices. Amendment procedure:

  • Notification by email at least 30 days before entry into force
  • Publication on the website
  • Right to object within 30 days after notification
  • Automatic consent for continued use after expiry of the objection period Right to object: Customers can object in writing to changes within the objection period. In this case, the contract remains in place under the previous conditions, provided this is legally and technically possible. Otherwise, each party shall have the right to extraordinary termination. Notifications: All communications will be made by email to the address provided during registration. Customers are obliged to keep their contact details up-to-date. Notifications are considered received if they were sent to the last known email address.

Audit rights and compliance reviews

In the case of enterprise customers and in case of reasonable suspicion of breaches of contract, Leadbase reserves the right to verify the proper use of our services. Audit rights:

  • Review of agreed usage limits and user licenses
  • Compliance check for data protection inquiries
  • Security audits in case of suspected account compromise
  • License compliance in case of suspicion of breach of contract Audit procedures: Audits are carried out with reasonable prior notice (at least 14 days) and are limited to the necessary extent. Customers are obliged to cooperate and must provide necessary information and access. In the event of breaches of contract, the customer shall bear the audit costs. Otherwise, Leadbase will bear the costs of the verification.

Data retention and archiving policies

Leadbase follows structured data retention policies that take into account legal requirements, business purposes, and privacy policies. Retention periods:

  • Account data: Until 30 days after the end of the contract
  • Transaction data: 10 years (statutory commercial retention obligation)
  • Support communication: 3 years after last contact
  • Log data: 12 months for security and debugging
  • Enriched data: Deletion upon account termination. Secure deletion: Deleted data is irrevocably removed using secure deletion procedures. Backup systems are purged in accordance with the applicable retention periods. Recovery after proper deletion is technically impossible. Data-subject rights: Customers may request access to their stored data, correction of inaccurate data, or deletion of their data at any time, unless statutory retention obligations prevent deletion.

Support and service level agreements

Leadbase offers various support levels according to the booked service plan. Support services include technical assistance, account management and integration support. Support channels and response times:

  • Standard plan: email support, 48h response time (business days)
  • Professional plan: email + chat support, 24h response time
  • Enterprise Plan: Priority Support + Phone, 4h Response Time
  • Critical Issues: 2h Response Time for All Enterprise Customers Support Scope: Free support includes platform bugs, account issues, API documentation, and basic integration help. Individualized consulting, custom integration development and training are paid professional services. Escalation process: Unresolved tickets are automatically escalated. Critical issues (Platform down, data loss) are of the highest priority and are immediately forwarded to our engineering team. Status updates take place regularly until the solution.

These Terms constitute the full agreement between the parties and replace any previous oral or written agreements on the subject matter of the contract. Severability: If individual provisions of these Terms are or become ineffective or impracticable, this does not affect the effectiveness of the other provisions. Ineffective provisions shall be replaced by those which are closest to the intended economic purpose. Written form requirement: Changes and additions to these Terms require written form. This also applies to the condition of the written form requirement itself. Email shall be considered as written form within the meaning of this provision. Transfer and assignment: Customers cannot transfer their rights and obligations under this Agreement to third parties without our written consent. Leadbase may transfer rights and obligations in the context of corporate transactions or restructuring. Language version: These Terms are written in German. For translations into other languages, the German version shall prevail in the event of any discrepancy.

Enterprise compliance and audit regulations

Audit rights and compliance monitoring

Enterprise customers have extended audit rights to review compliance and data processing practices. These rights are necessary for compliance with regulatory requirements and internal governance structures.

Audit assessment and scope

  • Documentation audit: Insight into relevant compliance documentation
  • Process audit: Review of data processing processes
  • Security audit: Evaluation of technical security measures
  • SOC 2 Reports: Providing current SOC 2 Type II reports
  • Proof of certification: ISO 27001, ISO 27701, other relevant certificates

Audit procedures and coordination

  • Registration: Audit requests 30 days in advance with detailed scope
  • Frequency limits: Maximum 2 comprehensive audits per year
  • Cost allocation: Appropriate cost sharing for costly audits
  • NDA Requirement: Separate confidentiality agreement for audit activities
  • Remote/On-Site: Virtual audits are preferred, on-site by agreement

Regulatory compliance framework

Industry-specific compliance

  • Financial Services: PCI DSS, SOX, MiFID II, Basel III Alignment
  • Healthcare: HIPAA compliance support (US customers)
  • Government: FedRAMP preparation, C5 certification for authorities
  • Automotive: TISAX compliance for the automotive industry
  • Manufacturing: ITAR/EAR compliance for international manufacturers

Continuous compliance monitoring

  • Automated compliance monitoring: Continuous monitoring of critical controls
  • Quarterly Reviews: Quarterly compliance status updates
  • Incident Notifications: Immediate reporting of compliance-relevant incidents
  • Regulatory Change Management: Proactive adaptation to new regulations

Third-party risk management

Leadbase maintains a comprehensive vendor management program for all subcontractors and technology partners. Enterprise customers receive insight into relevant due diligence results and risk assessments upon request.

Business continuity and disaster recovery

Business continuity planning (BCP)

Leadbase maintains comprehensive business continuity plans to ensure service continuity even in exceptional events. These plans are regularly tested and updated.

Continuity scenarios and preparation

  • Natural disasters: Earthquakes, floods, extreme weather
  • Technical failures: data-center failures, network interruptions
  • Cyberattacks: DDoS, Ransomware, Advanced Persistent Threats
  • Pandemic scenarios: Remote work continuity, staff shortages
  • Geopolitical events: Trade restrictions, sanctions

Recovery time and recovery point objectives

  • RTO (Recovery Time Objective): 4 hours for critical services
  • RPO (Recovery Point Objective): Maximum 1 hour data loss
  • Service Priority Matrix: Phased recovery based on criticality
  • Communication Protocols: Defined lines of communication during outages

Disaster recovery infrastructure

Technical DR implementation

  • Multi-region deployment: Active services in several geographical regions
  • Real-time Replication: Continuous data replication between sites
  • Automated Failover: Automatic switching in case of critical failures
  • Backup Infrastructure: Multilayered backup strategies (3-2-1 Rule)
  • Cold/Warm/Hot Sites: Staggered DR Sites depending on service criticality

DR testing and validation

  • Quarterly DR Tests: Quarterly Disaster Recovery Exercises
  • Annual Full-Scale Tests: Annual Complete DR Simulation
  • Tabletop Exercises: Regular tabletop exercises with all stakeholders
  • Lessons Learned Process: Continuous improvement based on test results

Crisis communication and stakeholder management

In the event of a crisis, communication takes place via predefined channels and responsibilities. Enterprise customers receive priority information and direct access to our Crisis Management Team.

Performance benchmarking and service optimization

Performance monitoring and metrics

Leadbase continuously monitors the performance of all services and provides detailed metrics and benchmarks for enterprise customers. This transparency enables data-based optimizations and SLA compliance.

Key Performance Indicators (KPIs)

  • API Response Times: P50, P95, P99 percentiles for all endpoints
  • Throughput Metrics: requests per second, concurrent users
  • Error rates: 4xx/5xx error rates by service and endpoint
  • Data Freshness: Currency of data enrichment
  • Match Rates: Success rates for data enrichment by industry
  • User Experience Metrics: session duration, feature adoption

Benchmark transparency and reporting

  • Monthly Performance Reports: Detailed performance overviews
  • Real-time dashboards: Live monitoring for enterprise customers
  • Industry benchmarks: Comparison with industry standards
  • Custom Metrics: Custom KPIs by agreement
  • Trend Analysis: Long-term performance trends and forecasts

Continuous service optimization

Performance improvement processes

  • Automated Optimization: Machine Learning-based performance tuning
  • Capacity planning: Proactive scaling based on usage patterns
  • Code Optimization: Continuous algorithm improvements
  • Infrastructure Scaling: Dynamic Resource Allocation
  • Caching Strategies: Intelligent caching for frequently requested data

Customer-driven optimization

  • Feedback Integration: Incorporation of customer feedback in roadmap
  • A/B Testing: Feature testing with selected customers
  • Performance Workshops: Joint optimization with enterprise customers
  • Custom Integrations: Optimization for specific use cases

Service evolution and future-proofing

Leadbase continuously invests in new technologies and methodologies for performance improvement. Enterprise customers get early access to new performance features and can participate in beta programs.

Global services and multi-jurisdictional compliance

Global service availability

Leadbase already offers comprehensive B2B data services in numerous international markets. Our global database is continuously expanded and refined to ensure the highest quality standards in all regions. All services are carried out in strict compliance with local laws and regulations.

Current service regions

  • Global availability: Leadbase already offers comprehensive B2B data sets for Germany, Austria, Switzerland, USA, Canada, United Kingdom, France, Netherlands, Belgium, Italy, Nordic countries and other international markets
  • Data quality worldwide: High quality, verified contact and enterprise data with global coverage and regional compliance standards
  • Continuous expansion: Continuous expansion of data coverage in new and emerging markets
  • Regional adjustments: Localized data formats and compliance requirements depending on the target market (GDPR, CCPA, LGPD, etc.)

Localisation requirements

  • Data Residency: Local data storage according to country requirements
  • Language Localization: Multilingual UI and documentation
  • Currency Support: Local currencies and payment methods
  • Legal Entity Setup: Local business entities for compliance
  • Customer Support: Local support teams in local language

Cross-border compliance framework

  • GDPR (EU): Full compliance for all EU operations
  • CCPA/CPRA (California): Privacy rights for US customers
  • LGPD (Brazil): Data protection for Latin American expansion
  • PIPEDA (Canada): Privacy compliance for Canadian customers
  • Local B2B-Regulation: Country-specific business rules

International data transfer safeguards

  • Adequacy Decisions: Use of EU adequacy decisions
  • Standard Contractual Clauses: SCC for all international transfers
  • Binding Corporate Rules: BCR for intra-group transfers
  • Supplementary Measures: Additional protective measures according to Schrems II
  • Transfer Impact Assessments: Risk analysis for each new jurisdiction

Cultural and business practice adaptation

Leadbase considers cultural and business differences in international expansion. This includes adapted communication styles, local business practices and regional market specificities.

Future-oriented technology integration and innovation

Emerging technology roadmap

Leadbase continuously invests in innovative technologies to improve data quality, performance and usability. These future-oriented developments keep our platform at the forefront of B2B data intelligence.

AI and machine-learning evolution

  • Advanced NLP: Natural Language Processing for better data extraction
  • Predictive Analytics: ML-based predictions for lead quality
  • Neural Network Optimization: Deep Learning for Pattern Recognition
  • Automated Data Validation: AI-controlled quality control
  • Intent Prediction: Machine Learning for purchase-intent recognition
  • Conversational AI: Chatbot and Voice Interface Integration

Blockchain and distributed technologies

  • Data Provenance: Blockchain-based data source tracking
  • Smart Contracts: Automated compliance and SLA enforcement
  • Decentralized Identity: Self-Sovereign Identity for B2B contacts
  • Distributed Data Networks: Peer-to-Peer Data Exchange Protocols

Next-generation infrastructure

  • Edge computing: Decentralized data processing for lower latency
  • Quantum Ready Encryption: Post-Quantum Cryptography Preparation
  • 5G integration: optimization for mobile high-speed connectivity
  • IoT Data Integration: Industrial IoT and Smart Device Data
  • Serverless Architecture: Event-driven, highly scalable functions

Innovation partnership program

Enterprise innovation collaboration

  • Technology Preview Access: Early access to experimental features
  • Co-Development Opportunities: Joint development of customer-specific solutions
  • Research Partnerships: Academic and industrial research collaborations
  • Innovation Labs: Dedicated lab environment for enterprise experiments
  • Feedback-Driven Development: Direct influence on product roadmap

Open innovation ecosystem

  • API-First Innovation: Open APIs for third-party innovation
  • Developer Community: Active community for extensions and integrations
  • Hackathons and Events: Regular innovation events
  • Startup Incubation: Support for DataTech startups

Sustainability and green technology

Leadbase is committed to sustainable technologies and environmentally friendly practices. Our data centers use renewable energy and we continuously optimize for energy efficiency. Carbon-neutral operations are planned until 2026.

Ethical AI and responsible technology

All AI systems are developed according to ethical principles, with a focus on fairness, transparency and accountability. We implement bias detection, explainable AI and human-in-the-loop systems for critical decisions.