Your Privacy Is Important to Us
We understand the importance of transparency and regulatory compliance in protecting our clients from potential litigation and targeting. Below is an overview of our data collection, usage, and protection practices, as outlined in our privacy policy.
See below for a short synopsis of our data and security policies and ISO certification details. Attached to this article you'll also find helpful PDFs with additional information on our Security Overview, Data Questionnaire, WISP, and more.
What Data We Collect
- Cookies, Analytics Tools, and Log Files — We use cookies and similar technologies to collect data on user interactions with your website, which may include browsing history, search history, and engagement with website content.
- Identifiers — We may collect online identifiers such as IP addresses, email addresses, and similar data.
- Internet or Other Network Activity — This includes data on visitor interactions with your website, such as browsing history and responses to advertisements.
- Geolocation Data — We collect data on the physical location or movement of your website visitors, whether through foreground or background access.
Why We Collect It and How It's Used
- To Provide Services — We use collected data to support and personalize the user experience and ensure effective delivery of our services.
- For Administrative Purposes — This includes internal quality control, establishing business relationships, and general service administration.
- To Market Services — We analyze user data to develop marketing strategies and communicate offers that may be relevant to users.
- For Security Purposes — Data helps us detect and prevent fraud, enforce our terms of use, and comply with legal obligations.
- De-identified and Aggregated Use — We may anonymize or aggregate data for internal purposes, such as service improvement or research.
Protection and Retention of Data
- Security Measures — We maintain reasonable technical, organizational, and security measures to protect collected data. That said, no system is completely secure, and we recommend dealerships take additional steps to protect their own and their users' information.
- Data Retention — Data is retained only as long as necessary for the purposes it was collected, in accordance with legal and regulatory requirements.
Disclosure of Data
We may share collected data with business partners, affiliated companies, and third-party service providers to deliver our services and support internal administration. All such disclosures comply with our privacy policy and applicable legal obligations.
We do not sell data to third parties for targeted advertising or any other purpose.
It's our priority to ensure all data collection and processing activities comply with applicable laws and regulations, including but not limited to the Gramm-Leach-Bliley Act, the Privacy Rule, and state-specific privacy laws. We're committed to transparency with our clients and to providing strong protections for the data we collect through our services.
For any further questions, please contact us at privacyofficer@fullpath.com.
ISO Certification
Fullpath (formerly AutoLeadStar) is proud to be one of the few companies in the automotive space to hold ISO 27001 certification — the leading international standard for information security. A copy of this certificate is attached to this article.
To read more about the FTC requirements for data collection, privacy, and usage and how Fullpath addresses them for your dealership, click here.