ACQRO LLC ("Acqro," "we," "us," or "our"), a Delaware limited liability company with offices at 8 The Green, #4362, Dover, DE 19901, operates the website acqro.com and the Acqro platform (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard personal information.
This policy covers two distinct groups: (a) our users — visitors, waitlist registrants, and customers; and (b) outreach recipients — the business contacts our customers research and email through the Service. Section 3 is specifically about recipient data, because that processing is what makes a B2B outreach platform meaningful — and we want to be transparent about exactly what we do and do not do.
What we do not do. Acqro does not build psychological or psychometric profiles of individuals. We do not infer personality traits, mental or emotional states, or any "special category" / sensitive data about a person. The Service personalizes outreach using publicly available business and organizational context only.
1. Information You Provide (Users)
- Waitlist & Account Registration: Email address, name, company name, job title.
- Contact Inquiries: Name, email, and message content when you contact us.
- Payment Information: Billing address and payment method. Card processing is handled by our third-party processor; we do not store complete card numbers.
- Campaign Inputs: Target company names, contact lists, and email content you provide or generate through the platform.
2. Information Collected Automatically (Users)
- Device Information: Browser type, OS, device identifiers, screen resolution.
- Usage Data: Pages visited, time on page, click patterns, referring URLs.
- IP Address: Used to approximate general (city/region) location.
- Log Data: Server logs including timestamps and response codes.
3. Information We Process About Outreach Recipients
When a customer uses Acqro to research and contact business prospects, the Service processes limited personal data about those recipients. We want to be explicit about this.
3.1 What we process
Business-context information that is publicly available or supplied by compliant data providers: name, professional role/title, business email, employer, company size and industry, public company news, and publicly published professional content.
3.2 What we derive
We characterize the organization (for example, its stated values, tone, and growth signals, using established organizational frameworks) to inform the relevance and tone of outreach. We do not generate individual psychological, psychometric, or behavioral-trait profiles, and we do not infer special category data (health, religion, political opinion, sexual orientation, or similar).
3.3 Where it comes from
Public business sources (such as a company's own website and official channels, news, and public business records) and third-party enrichment providers who represent that their data is lawfully collected. We do not scrape data from behind logins or from sources whose terms prohibit it.
3.4 Roles
For recipient data processed in a customer's campaign, the customer is the data controller and Acqro acts as a data processor on the customer's documented instructions. For our own website and account data, Acqro is the controller.
3.5 Legal basis (EU/UK)
Where GDPR/UK GDPR applies, processing of recipient business data for B2B outreach relies on legitimate interests (Article 6(1)(f)) — direct marketing to a relevant professional contact (Recital 47) — balanced against the recipient's rights. Our customers are responsible for maintaining their own Legitimate Interest Assessment. We do not process recipient data on the basis of consent for profiling, because we do not profile individuals.
3.6 Recipient rights
Any recipient may request access to, correction of, objection to, or deletion of the data we process about them by emailing hello@acqro.com. We honor verified requests promptly (and within the timeframe required by applicable law), and we maintain global suppression lists so that opt-outs are respected across the platform.
4. Cookies and Tracking Technologies
We use cookies and similar technologies for analytics and functionality. Providers include PostHog (product analytics), Google Analytics / Tag Manager / Ads, Meta Pixel (advertising), Intercom (support chat), and Firebase (form/database). Note that transferring data to advertising platforms may be treated as "sharing" under some U.S. state laws; where required, we honor opt-out preference signals such as Global Privacy Control (GPC).
You can control cookies through your browser settings. You may opt out of Google Analytics via the Google Analytics Opt-Out Add-On and adjust Meta ad preferences in your Facebook Ad Settings. PostHog respects "Do Not Track."
5. How We Use Information
To provide and operate the Service; process registrations and payments; respond to inquiries; send marketing communications (with consent where required); analyze and improve the Service; detect and prevent fraud and abuse; and comply with legal obligations.
6. How We Share Information
We do not sell personal information. We share only with: service providers (hosting, payment, analytics, support) under contract; for legal compliance; in a business transfer; or with your consent.
7. Data Security
We use industry-standard safeguards including encryption in transit (TLS/SSL), access controls, per-tenant isolation of customer campaign data, and regular security assessments. No method of transmission or storage is fully secure, and we cannot guarantee absolute security.
8. Data Retention
- Account Data: Duration of your account plus up to 30 days after deletion.
- Waitlist Data: Until onboarding or removal request.
- Recipient / Campaign Data: Retained only as long as needed for the customer's active campaign; raw enrichment data is expired on a short cycle. Suppression-list entries are retained as needed to honor opt-outs.
- Analytics Data: Retained in aggregated, anonymized form.
- Communication Records: Up to 2 years for support and legal purposes.
9. International Transfers
We process and store information primarily in the United States. Where we process personal data of individuals in the EU, UK, or other regions with transfer restrictions, we rely on an appropriate transfer mechanism such as the EU Standard Contractual Clauses (and the UK Addendum), available on request.
10. Your Privacy Rights
Depending on your jurisdiction you may have rights to access, correct, delete, port, and opt out, and to object to or opt out of profiling. To exercise any right, contact hello@acqro.com.
U.S. State Residents (California and other states). You have the right to know, delete, correct, and opt out of "sale"/"sharing" and of targeted advertising and certain profiling. We do not sell personal information. Acqro does not use sensitive personal information to infer characteristics about individuals.
EU/UK Residents. In addition to the above, you may object to processing based on legitimate interests and lodge a complaint with your supervisory authority.
11. Children's Privacy
The Service is not intended for anyone under 18, and the Service may not be used to target or process data about minors. We do not knowingly collect data from children. Contact hello@acqro.com if you believe we have.
12. Third-Party Links
We are not responsible for the privacy practices of third-party sites linked from the Service.
13. Changes to This Policy
We may update this policy and will revise the "Last updated" date. Material changes will be posted on this page.
14. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
ACQRO LLC
8 The Green, #4362
Dover, DE 19901, United States
Email: hello@acqro.com