Security Policy
SalesOne · Last updated July 29, 2026
This page describes how SalesOne Inc. protects the information entrusted to us by clients and by people who contact us. It describes what we actually do today, not what we aspire to. Where a practice is set out in more detail in our Privacy Policy, this page points to it rather than repeating it.
Hosting and infrastructure
Our website is served through Cloudflare, which delivers and protects the site and processes limited technical information about visits and form submissions on our behalf. Inquiry forms are protected by an automated bot check performed by Cloudflare Turnstile. The technical signals we record alongside a submission, such as the IP address and the approximate region it resolves to, the network provider, the browser user agent and language, and the referring page, exist so that we can tell genuine inquiries from automated abuse. Inquiry notifications are delivered into our internal email and messaging systems. The full list of what we record is published in our Privacy Policy.
What client data is used for
Information a client gives us is used only to run that client's campaigns and the work we have been engaged to do: communication and correspondence, providing the services requested, responding to inquiries and support needs, and meeting our contractual and legal obligations. We do not use it for any other purpose unless the law requires it or we have prior consent. We do not use inquiry or campaign data for advertising, and we do not sell it.
Access control
Access to client data is limited to the SalesOne people operating that engagement. Our teams and operations sit across the United States, Japan, and India. Everyone who handles personal information works under internal management controls and receives regular training on how that information is to be handled. A person approves every send and a person reads every reply, so the same operating team accountable for a campaign is accountable for the data behind it.
Subcontractors and vendors
Where we need to disclose information to a subcontractor or service provider in order to perform services a client has requested, we require that party to maintain data protection and security standards equivalent to our own. That requirement is enforced through contractual obligations, confidentiality agreements, and ongoing supervision. Beyond that, we do not disclose personal information to third parties except in the narrow circumstances listed in our Privacy Policy, such as where the law requires it or where a court, law enforcement agency, or other competent public authority requests it.
Data retention and deletion
We keep records only for as long as we need them to do the work and to account for it. Inquiry records are retained only as long as needed to respond to and account for the inquiry. Any individual may ask us to access, correct, or delete the personal information we hold about them. We process those requests after verifying the requester's identity and in accordance with applicable law. Write to info@salesone.now and we will confirm what we hold and what we have removed.
Certifications
SalesOne holds no third-party security certification today. We will publish one here when we have it.
Reporting a security concern
If you believe you have found a vulnerability in our website or systems, or you think client or personal data has been exposed, email info@salesone.now with "security report" in the subject line. Tell us what you found and how to reproduce it. We read every report and we will acknowledge yours. We will not pursue anyone who reports an issue to us in good faith and who does not access, alter, or retain data beyond what is needed to demonstrate the problem.
July 29, 2026 · Noel Martin, Founder & CTO, SalesOne Inc.