Legal / Data
Security and Anti Fraud
How we hold information, and how to spot someone pretending to be us.
Effective 11 August 2026
This category is full of fraud. People who have just lost an account are the single most targeted group there is, and impersonation of legitimate recovery services is the most common form it takes. This page is written so you can check us against it, and check anyone claiming to be us against it.
How we hold what you send
- Enquiries are stored in an access controlled database on our hosting provider's infrastructure, encrypted in transit and at rest.
- Only the people who need a file to work on it can see it.
- Where a matter can be worked without access to your account, we do not ask for any. Where a route does require access, we will ask either to be added as an authorised user on the account or business account, or, where the route leaves no alternative, for credentials.
- Credentials, where a route requires them, are requested only inside a matter already open with you, used only for that matter, never stored in the enquiry database, and revoked or changed at the close of the matter. We will tell you which access a route needs before you send anything, and you can decline and stop the matter at that point.
- Whenever we hold access to an account, you should change the password and review active sessions once the matter closes. We will remind you in writing when we do.
- We do not sell, rent or trade enquiry data, and we do not use it to market unrelated services to you.
- Identity documents, where a platform route genuinely requires them, are handled for the specific submission and are not retained beyond it any longer than we must.
How to know it is not us
- Anyone asking for access outside a matter you have already opened with the desk is not us. Some routes genuinely need access to an account, so we will not tell you that a request for it is always fraudulent. We will tell you that a real request from us only ever arrives inside a matter already running, by email from the desk address, after we have told you in writing which access the route needs and why.
- Anyone asking for access by direct message on a social platform, by phone, or in a first contact you did not initiate is not us, whatever they are asking for.
- Anyone asking you to pay an individual, a personal wallet or an account that is not on an invoice from the business is not us.
- Anyone guaranteeing recovery, guaranteeing verification, or offering to sell you a badge or a username is not us, and is not anyone you should pay.
- Anyone who contacts you first, unprompted, claiming to be from the desk about an account you did not tell us about, is not us.
- The only channel we use is email at sales@goldlabelmedia.net. Addresses that look similar are not us.
If you think you have been contacted by someone impersonating us, tell us. It costs you nothing and it helps us get the account reported.
Reporting a vulnerability
If you find a security issue in this site, tell us by email at sales@goldlabelmedia.net before disclosing it publicly. We will not pursue anyone who reports a genuine issue in good faith, does not access or alter other people's data, and gives us reasonable time to fix it.
The entity
Kickstart Labs LLC DBA Gold Label Media, a limited liability company registered in Florida, United States. 2041 NE 179th St, North Miami Beach, FL, 33162, United States
Also in Data
