Security

Built to keep your account safe

Straight answers about how leadspine.io handles your CRM connection, what stays private, and the controls you have at every step.

Before you connect

  1. We never see your CRM password.
  2. Your AI can only act in the sub-accounts you paired.
  3. Disconnect in one click and syncing stops.
  4. Sensitive connection data is encrypted at rest (AES-256).
  5. Details in the Privacy Policy.

What we access

Only what's needed to run the connection between your AI assistant and your CRM account, plus a pairing key that ties your connection to your leadspine.io account.

What we never touch

We never see or store your CRM login. We don't read anything outside your CRM. Your credentials stay with you.

Where your data lives

Everything is transmitted over HTTPS to your own leadspine.io endpoint. Nothing is shared with third parties, and we keep your authorized connection working while it stays paired.

Encrypted at rest

All sensitive values are encrypted at rest with industry-standard AES-256. They're used only to fulfill the requests you or your connected AI initiate.

You're in control

Disconnect any time from your leadspine.io dashboard. The moment you do, syncing stops and the connection is removed from our systems.

Never sold, never shared

Your data isn't a product. It's used purely to power the connection between your AI client and your CRM account.

Sub-account isolation

Each connection is locked to the exact your CRM sub-account you pick. One connection can never reach another.