Skip to content
Scalable OS

Privacy Policy

Effective July 19, 2026

Scalable OS is operated by SignalLab LLC, an Arizona limited liability company doing business as Signal. This policy describes what we collect when you use scalable-os.com, why we collect it, and who else touches it. It is written to match what the software actually does.

What we collect

When you sign up for a lead hopper we collect exactly what the form asks for:

  • What you sell.
  • Who you sell it to (the industry you are targeting).
  • A target state, if you choose one. This field is optional.
  • Your email address.
  • Your company name and website, if you provide them. Neither is required.

We then keep the operating record of your account: whether your email has been confirmed, whether the account is active, the leads allocated to you, any outcome you report back on a lead (for example won, lost, or bad fit), and the events that changed how many leads you can hold at once. We do not ask for or store a password.

Sign in with Google

Signing in with Google is optional. You can use an email address instead and never touch it.

If you do use it, we request only the openid, email, and profile scopes. What we receive is your email address and Google's assertion that Google has verified it. That is the entire purpose: it proves the address is yours so we do not have to email you a link.

Specifically, and by design:

  • We do not request, receive, or have any access to your Gmail, Drive, Calendar, Contacts, Google Ads, Google Analytics, or any other Google service data.
  • We do not store a Google access token or refresh token. The sign-in produces a single identity assertion, which our server verifies against Google's published signing keys and then discards. Nothing about your Google account remains readable to us afterwards.
  • Signing in grants identity only. It does not connect any of your systems to us. Connecting a data source, if you ever choose to, is a separate and explicit step with its own consent screen.

Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. You can review or revoke this app's access at any time at myaccount.google.com/permissions.

How we use it

We use what you give us to create and run your account, to select leads that match the target you described, to send you the transactional email that keeps the account working, and to answer you when you write to us. We do not sell your personal information, and we do not share it for anyone else's advertising.

Email we send you

If you sign up with an email address rather than Google, we send one message asking you to confirm that the address is yours. It arrives from a Signal mailbox (adam_caccamise@signal-rev.com). Opening the link in it also signs you in, so you can pick your account up on another device without a password. Treat that link like a password.

Analytics, cookies, and browser storage

This site runs Google Analytics 4, which sets cookies and records standard web analytics (pages viewed, referrer, approximate location, device and browser). We enable IP anonymization. If you arrive on a link that carries a campaign identifier in the URL, we keep that identifier in your browser's session storage so that a click later in the same visit still attributes correctly.

Your hopper session is held in your browser's local storage as a bearer token. Only a hash of that token is ever stored on our side, so the raw token exists in your browser and nowhere else. Clearing your browser storage signs you out.

Payments

Paid products are billed through Stripe. Checkout happens on a page hosted by Stripe, so your card number is never sent to us and we never store it. We receive the record of the payment.

Who else touches it

We use a small number of service providers, all in the United States, and only to run the service:

  • Microsoft Azure: hosting for this site, our API, and our database.
  • Google: optional sign-in, analytics, and the mailbox that sends our transactional email.
  • Stripe: payment processing.
  • Cloudflare: DNS and content delivery.

We may also disclose information if the law requires it, or to protect our rights or someone's safety.

Security and retention

Traffic to this site and to our API is served over HTTPS. Session tokens are stored only as hashes. We keep your account record for as long as your account exists, and afterwards only as long as we need it for legal, accounting, or dispute-resolution reasons.

Your choices

Write to us at system-admin@signal-rev.com and we will tell you what we hold about you, correct it, or delete it and close your account. We do this for anyone who asks, wherever you are. If you signed in with Google, you can also revoke our access directly in your Google account at any time.

Children

This is a tool for businesses. It is not directed to children, and we do not knowingly collect information from anyone under 16.

Changes

If we change this policy we will update the effective date above. Material changes will be announced on this page.

Contact

SignalLab LLC, Arizona, United States.
system-admin@signal-rev.com

Terms of Service · Back to Scalable OS