Account & Security

Account Security Best Practices

Protect your LeadFinder Pro account with these security recommendations.

Digital fortress with shield icons, lock mechanisms, and two-factor authentication
2 min read2 views

Account Security Best Practices

Keep your LeadFinder Pro account and data secure with these recommendations.

Authentication

LeadFinder Pro uses secure OAuth authentication. Your password is never stored on our servers — authentication is handled through our secure identity provider.

Team Access

  • Owner: Full access to all features and billing
  • Manager: Can manage team members and view all data
  • Rep: Access to assigned leads, contacts, and sequences

API Key Security

If you use webhooks or API integrations:

  • Never share API keys in public repositories
  • Rotate keys periodically
  • Use HMAC signature verification for webhooks
  • Restrict webhook URLs to trusted endpoints

Data Protection

  • All data is encrypted in transit (TLS/SSL)
  • Database connections are encrypted
  • Regular automated backups
  • GDPR-compliant data handling

Recommendations

  1. Use a strong, unique password for your authentication provider
  2. Review team member access regularly
  3. Remove inactive team members promptly
  4. Monitor the webhook delivery log for suspicious activity
  5. Contact support immediately if you notice unauthorized access
Tags:securityaccountprivacy