1. Executive Commitment to European Privacy
SalesFeeder, S.A. de C.V. and SalesFeeder LLC (collectively "SalesFeeder") are committed to upholding the highest standards of data governance, confidentiality, and fundamental privacy rights established by European Union law.
In the B2B demand generation sector, where low-quality brokers often trade unauthorized, scraped email databases, SalesFeeder leads the industry with an uncompromising 100% first-party, verified consent architecture. All lead generation, content syndication, and intent telemetries across the B2BInsightSignal.com publishing network are collected with explicit, documented consent or under documented legitimate interest assessments.
2. Statutory Role Determinations
Under GDPR Articles 4(7) and 4(8), SalesFeeder acts in two distinct capacities:
- Data Controller: For reader information gathered on our owned publishing platforms (including B2BInsightSignal.com and sales-feeder.mx), subscriber lists for our B2B technology newsletters, and operational client administrative contacts.
- Data Processor: When delivering contracted B2B content syndication and ABM campaigns for enterprise clients. In this capacity, the enterprise client acts as the Data Controller defining the ICP criteria, and SalesFeeder processes and delivers consensual business lead dossiers pursuant to a legally binding Data Processing Agreement (DPA).
3. Adherence to Core Data Protection Principles (Art. 5 GDPR)
All personal data processing within SalesFeeder is anchored upon the six fundamental pillars of Article 5:
| GDPR Principle | SalesFeeder Implementation Measure |
|---|---|
| 1. Lawfulness, Fairness & Transparency | Unambiguous opt-in checkboxes on all digital content download gates explicitly identifying the sponsoring brand. |
| 2. Purpose Limitation | Contact data captured for a specific whitepaper campaign is utilized solely for that engagement and not co-mingled or sold across unrelated databases. |
| 3. Data Minimization | We strictly collect professional B2B parameters (Name, Business Email, Corporate Phone, Job Title, Company Name) necessary for enterprise sales validation. |
| 4. Accuracy | Multi-point validation verification to filter bounced emails, invalid phone numbers, or outdated job functions prior to client delivery. |
| 5. Storage Limitation | Automated 24-month rolling retention schedule with permanent deletion protocols for non-active prospect records. |
| 6. Integrity & Confidentiality | End-to-end TLS 1.3 encryption in transit and AES-256 bit encryption at rest with strict role-based access control (RBAC). |
4. First-Party Opt-In Consent & Legitimate Interest
SalesFeeder ensures that B2B prospects originating in the EU/EEA and UK are engaged through lawful, verifiable grounds:
A. Express Content Syndication Consent (Art. 6(1)(a))
When a professional downloads a whitepaper, eBook, or benchmark report hosted across the B2BInsightSignal.com network, the registration form features an unticked, prominent consent disclosure:
B. B2B Legitimate Interest Assessment (Art. 6(1)(f))
Where contextual display advertising or organizational firmographic indexing is conducted, SalesFeeder executes formal three-part Legitimate Interest Assessments (Purpose Test, Necessity Test, and Balancing Test) ensuring that fundamental rights and freedoms of data subjects are not overridden.
5. Data Subject Rights & DSAR Execution Protocol
European and UK data subjects enjoy comprehensive statutory rights under Chapter III of the GDPR. SalesFeeder maintains dedicated technical workflows to honor all requests:
- Right of Access (Art. 15): Obtain confirmation as to whether your personal data is being processed and receive a copy of your records.
- Right to Rectification (Art. 16): Correct inaccurate or incomplete professional contact details.
- Right to Erasure / "To Be Forgotten" (Art. 17): Have your personal data permanently removed from our active syndication databases.
- Right to Restriction of Processing (Art. 18): Temporarily suspend processing while an accuracy dispute is evaluated.
- Right to Data Portability (Art. 20): Receive your personal data in a structured, commonly used, machine-readable CSV/JSON format.
- Right to Object (Art. 21): Object at any time to the processing of your professional data for direct marketing purposes.
SLA for DSAR Requests: All verified requests submitted to contact@sales-feeder.mx are acknowledged within 48 hours and fulfilled within thirty (30) calendar days free of charge.
6. International Transfers & Standard Contractual Clauses (SCCs)
For data transferred from the EU/EEA or UK to SalesFeeder operational facilities in Mexico or the United States, SalesFeeder incorporates the European Commission's approved Standard Contractual Clauses (Commission Implementing Decision (EU) 2021/914):
- Module 1: Controller-to-Controller transfers for direct publisher audience subscriptions.
- Module 2: Controller-to-Processor transfers for client-sponsored demand generation campaigns.
- Execution of Transfer Impact Assessments (TIAs) to verify that local legislation does not undermine European protective standards.
7. Technical & Organizational Measures (TOMs - Art. 32)
SalesFeeder maintains robust state-of-the-art security controls:
- Cryptographic Standards: TLS 1.3 encryption across all public endpoints and AES-256 for data stores.
- Pseudonymization & Anonymization: Prospect telemetry is pseudonymized during contextual programmatic matching.
- Access Restrictions: Zero-trust network architecture with mandatory Multi-Factor Authentication (MFA) and least-privilege role scoping.
- Audit Logging: Immutable system audit logs capturing data access, modifications, and exports.
8. Enterprise Data Processing Addendum (DPA)
SalesFeeder provides a standardized, pre-signed GDPR and UK DPA for all enterprise technology clients and advertising agencies. Our DPA incorporates mandatory statutory processor obligations, audit rights, sub-processor notification procedures, and EU SCCs.
9. Data Incident & Breach Notification SLA (Art. 33 & 34)
In the unlikely event of a confirmed personal data breach impacting European data subjects, SalesFeeder will notify the competent Lead Supervisory Authority and affected commercial Data Controllers without undue delay and, where feasible, not later than seventy-two (72) hours after becoming aware of the breach.
10. Data Protection Officer (DPO) & Regulatory Inquiries
For inquiries concerning our GDPR compliance framework, to execute a Data Processing Agreement, or to file a formal DSAR request, contact our Data Protection Officer:
Attn: Data Protection Officer / European Compliance Lead
Email: contact@sales-feeder.mx
Phone: +52 (333)-113 9614
Mexico HQ: Paseo de los Virreyes 45, Puerta de Hierro, Zapopan, Jalisco 45116, Mexico
US Office: 28 Geary St STE 650 Suite #623, San Francisco, CA 94108, United States