Privacy
Privacy policy
Plain language, on purpose. Last updated July 28, 2026.
What we collect
Account information: your name, email address, and workspace details when you sign up.
Lead data you process: the leads, contacts, and related records your workspace takes in. You control what fields exist and which are marked sensitive. We process this data on your behalf; it is yours.
Operational records: audit history of actions taken in your workspace, and the technical logs needed to run the service reliably.
Where it lives
In Canada. Your records and our backups are stored in the Montreal region, and the application that processes them runs in the Montreal region too. Sensitive fields are encrypted with AES-256-GCM before storage.
One path leaves the country, and we would rather name it than imply otherwise: email. The lead notifications and delivery emails we send on your behalf are processed by our email provider in the United States, so the contents of those messages cross the border. Everything else stays here.
What we never do
We do not sell personal information.
We do not use your leads or contacts for advertising.
We do not read your workspace data except to operate the service or when you ask us to help with a support issue.
Consent and CASL
Every lead can carry a consent snapshot: the consent text, timestamp, IP address, and source URL. Commercial email sent through RouteDeck includes unsubscribe handling, and opt-outs are honored automatically across sequences.
Meta (Facebook and Instagram) ads data
If a workspace owner connects a Meta ad account, RouteDeck imports ad performance data through Meta's Marketing API using read-only access (the ads_read permission): campaign, ad set, and ad names and statuses, creative text and thumbnails, and daily performance numbers such as spend, impressions, reach, clicks, and lead counts. RouteDeck never receives edit access to your ads, budgets, or audiences.
This data is used for one thing: showing your own ad performance inside your workspace, next to the leads those ads produce. It is stored with the same Canadian data residency as the rest of your workspace, and the access token that authorizes the connection is encrypted with AES-256-GCM before storage.
You can disconnect at any time from Settings, revoke RouteDeck from your Facebook settings, or delete every imported row with one action in the product. When Meta forwards a data deletion request, we delete the connection and all imported ad data, and confirm it at a status link.
Service providers
We use a small number of infrastructure providers to run RouteDeck: cloud hosting for the application and database, and an email delivery provider for transactional and workspace email. Each processes data only to provide its service to us.
Your rights
You can access, correct, or export your workspace data at any time from the product. You can ask us to delete your account and its data, and we will, subject to legal retention requirements. People whose data your workspace processes should contact you as the data controller; we assist you in meeting those requests.
Contact
Privacy questions reach the team fastest from inside your workspace. This policy is a working draft and will be refined with counsel; material changes will be announced in the product.