Privacy

Privacy policy

LEI.report does not use visitor-behavior analytics. Operational security logs are limited in size and retention and are used to keep the service reliable and defend it from abuse.

API accounts

Free API accounts store the email address, company name, and intended-use information provided at signup. Email confirmation and marketing email are not used. Passwords are stored only as salted, computationally expensive hashes. API key secrets are stored only as keyed hashes and the complete value is shown once.

Passkeys store a credential identifier, public key, counter, and device metadata needed for secure authentication. Session and one-time challenge records expire automatically. Account holders may permanently delete their account and associated credentials from the dashboard.

Request limits

API request and signup limits use a keyed one-way representation of the connecting IP address; raw IP addresses are not stored in the quota database. Daily usage rows are retained for 35 days and minimal authentication security events for 30 days.

Advertising

If advertising is enabled, fixed placements appear only after the primary lookup content. Contextual or non-personalized advertising is requested by default. Where consent is legally required, a Google-certified consent flow is used before eligible advertising technologies run. API documentation and account pages do not carry ads.

Public registry data

Legal Entity Identifier records describe organizations and are sourced from published GLEIF datasets. Search queries are processed to return registry results; they are not used to create visitor profiles.

External links

Links to official sources are governed by the destination’s privacy practices.

Last updated July 30, 2026.