Privacy Policy
Updated: February 18th, 2020
Welcome, and thank you for your interest in Finaeo Inc. (“Finaeo”, “we,” or “us”), our website at www.finaeo.com (the “Website”), and all related websites, downloadable software, software as a service, our insurance technology platform that facilitates individual life, disability, and critical illness insurance purchases, Financial Needs Analysis tool, mobile applications (including tablet applications), and other services provided by us and on which a link to this Privacy Policy is displayed, and all other communications with individuals through written form or oral means, such as email or phone (collectively, together with the Website, our “Service”).
Finaeo is an insurance technology marketplace platform that processes insurance transactions in the US and Canada. In providing our services, we store and transmit personal information. We recognize that protecting the rights and privacy of each and every individual whose personal information we handle is fundamental to trust in our business relationships. We have, therefore, committed to ensuring a high level of data protection and data security across our business. This commitment includes information relating to our customers, suppliers, vendors, insurance agents, and our employees.
This Privacy Policy (“Policy”) describes the information that we gather on or through the Service, how we use and disclose such information, and the steps we take to protect such information. By visiting the Website, or by purchasing or using the Service, you accept the privacy practices described in this Policy.
This Policy is incorporated into, and is subject to, our Terms of Service. Capitalized terms used but not defined in this Policy have the meaning given to them in our Terms of Service.
Our Commitment To Privacy
Finaeo is committed to the protection of any personal information collected by us or in our custody, including any information transferred to a third party to fulfill the purposes for which the information was collected.
Personal information includes any information, recorded or not, about an identifiable individual. Examples of personal information that are identifiable include names, age, sex, social insurance numbers, health status, health history, financial information, transaction data, etc. This also includes information which can be matched with other information in order to establish an individual’s identity.
Finaeo’s Privacy Code
Finaeo is committed to international compliance with data protection laws. The Data Privacy Policy ensures an adequate level of data protection prescribed by applicable laws.
Our privacy code outlines our policies and procedures on privacy and describes the ways we ensure that your privacy and the confidentiality of your personal information is protected. Our adoption of these principles sends a powerful message to the general public that we have policies and procedures in place that control the collection, use and disclosure of personal information; it also reinforces our existing commitment to customer service. The Data Privacy Policy applies to Finaeo Inc. and its wholly-owned subsidiary, Finaeo US, Inc. The Data Privacy Policy extends to all processing of personal information.
Our privacy code balances the privacy rights of both you and your clients to ensure we adhere to the highest standards based on the key principles set forth below:
The Information We Collect On The Service
We collect different types of information from or through the Service. The legal bases for our processing of personal data are primarily that the processing is necessary for providing the Service in accordance with our Terms of Service and that the processing is carried out in our legitimate interests, which are further explained in the section “How We Use the Information We Collect” of this Policy. We may also process data upon your consent, asking for it as appropriate.
User-provided Information. When you use the Service or the Website, you may provide, and we may collect Personal Data. Examples of Personal Data include name, email address, mailing address, mobile phone number, and credit card or other billing information. Personal Data also includes other information, such as geographic area or preferences, when any such information is linked to information that identifies a specific individual. You may provide us with Personal Data in various ways on the Service. For example, when you search for insurance products on our marketplace, or send us customer service related requests.
Information Collected by Customers. A Customer may store or upload data into the Service as Customer Data. Finaeo has no direct relationship with the individuals whose Personal Data it hosts as part of Customer Data. Each Customer is responsible for providing notice to its clients and third parties concerning the purpose for which Customer collects their Personal Data and how this Personal Data is processed in or through the Service as part of Customer Data.
“Automatically Collected” Information. When a user uses the Service, we may automatically record certain information from the user’s device by using various types of technology, including cookies, “clear gifs” or “web beacons.” This “automatically collected” information may include IP address or other device address or ID, web browser and/or device type, the web pages or sites visited just before or just after using the Service, the pages or other content the user views or interacts with on the Service, and the dates and times of the visit, access, or use of the Service. We also may use these technologies to collect information regarding a user’s interaction with email messages, such as whether the user opens, clicks on, or forwards a message. This information is gathered from all users.
Integrated Services. You may be given the option to access or register for the Service through the use of your user name and passwords for certain services provided by third parties (each, an “Integrated Service”), such as through the use of your Google account, or otherwise have the option to authorize an Integrated Service to provide Personal Data or other information to us. By authorizing us to connect with an Integrated Service, you authorize us to access and store your name, email address(es), date of birth, gender, current city, profile picture URL, and other information that the Integrated Service makes available to us, and to use and disclose it in accordance with this Policy. We encourage all customers to check their privacy settings on each Integrated Service to understand what information that Integrated Service makes available to us, and make changes as appropriate. Please review each Integrated Service’s terms of use and privacy policies carefully before using their services and connecting to our Service.
Information from Other Sources. We may obtain information, including Personal Data, from third parties and sources other than the Service, such as our partners, advertisers, credit rating agencies, and Integrated Services. If we combine or associate information from other sources with Personal Data that we collect through the Service, we will treat the combined information as Personal Data in accordance with this Policy.
How We Use the Information We Collect
We use the information that we collect in a variety of ways in providing the Service and operating our business, including the following:
Operations. We use the information – other than Customer Data – to operate, maintain, enhance and provide all features of the Service, to provide the services and information that you request, to respond to comments and questions and to provide support to users of the Service. We process Customer Data solely in accordance with the directions provided by the applicable Customer or User.
Improvements. We use the information to understand and analyze the usage trends and preferences of our users, to improve the Service, and to develop new products, services, features and functionality. Should this purpose require us to process Customer Data, then the data will only be used in anonymized or aggregated form.
Communications. We may use a user’s email address or other information – other than Customer Data – to contact that user (i) for administrative purposes such as customer service, to address intellectual property infringement, right of privacy violations or defamation issues related to the Customer Data or Personal Data posted on the Service or (ii) with updates on promotions and events, relating to products and services offered by us and by third parties we work with. You have the ability to opt-out of receiving any promotional communications as described below.
Cookies and Tracking Technologies. We use automatically-collected information and other information collected on the Service through cookies and similar technologies to: (i) personalize our Service, such as remembering a user’s information so that the user will not have to re-enter it during a visit or on subsequent visits; (ii) provide customized advertisements, content, and information; (iii) monitor and analyze the effectiveness of Service and third-party marketing activities; (iv) monitor aggregate site usage metrics such as total number of visitors and pages viewed; and (v) track your entries, submissions, and status in any promotions or other activities on the Service. You can obtain more information about cookies by visiting http://www.allaboutcookies.org.
Analytics. We use Google Analytics to measure and evaluate access to and traffic on the public areas of the Website, and create user navigation reports for our Website administrators. Google operates independently from us and has its own privacy policy, which we strongly suggest you review. Google may use the information collected through Google Analytics to evaluate users’ activity on our Website.
We take measures to protect the technical information collected by our use of Google Analytics. The data collected will only be used on a need to know basis to resolve technical issues, administer the Website and identify visitor preferences; but in this case, the data will be in non-identifiable form. We do not use any of this information to identify users.
Your personal information may be shared within Finaeo or any of our worldwide subsidiaries, joint-ventures or affiliated organizations for purposes of data processing, storage or delivery of services.
Your personal information may be shared with authorized third-party agents or contractors in order to provide a requested service or transaction. For example, if we need to ship something to you, we must share your name and address with a shipping company. We only provide third-party agents with the minimum amount of personal information necessary to complete the requested service or transaction.
To Whom We Disclose Information
Except as described in this Policy, we will not intentionally disclose the Personal Data or Customer Data that we collect or store on the Service to third parties without the consent of the applicable user or Customer. We may disclose information to third parties if you consent to us doing so, as well as in the following circumstances:
Unrestricted Information
Any information that you voluntarily choose to include in a public area of the Service, such as a public profile page, will be available to any user who has access to that content.
Other Users in Your Company Account
Certain information about your use of the Services is available to the administrator(s) of your account and, depending on the settings chosen by the users of the account, also to other users for the purposes of providing the Services.
Service Providers
We work with third-party service providers who provide insurance products, website development, application development, hosting, maintenance, and other services for us. These third parties may have access to, or process Personal Data or Customer Data as part of providing those services for us. We limit the information provided to these service providers to that which is reasonably necessary for them to perform their functions, and our contracts with them require them to maintain the confidentiality of such information.
Non-Personally Identifiable Information
We may make certain automatically-collected, aggregated, or otherwise non-personally identifiable information available to third parties for various purposes, including (i) compliance with various reporting obligations; (ii) for business or marketing purposes; or (iii) to assist such parties in understanding our Customers’ and users’ interests, habits, and usage patterns for certain programs, content, services, and/or functionality available through the Service.
Enforcement, Legal Process and Compliance
We may disclose Personal Data or other information if required to do so by law or in the good-faith belief that such action is necessary to comply with applicable laws, in response to a facially valid court order, judicial or other government subpoena or warrant, or to otherwise cooperate with law enforcement or other governmental agencies.
We also reserve the right to disclose Personal Data or other information that we believe, in good faith, is appropriate or necessary to (i) take precautions against liability, (ii) protect ourselves or others from fraudulent, abusive, or unlawful uses or activity, (iii) investigate and defend ourselves against any third-party claims or allegations, (iv) protect the security or integrity of the Service and any facilities or equipment used to make the Service available, or (v) protect our property or other legal rights, enforce our contracts, or protect the rights, property, or safety of others.
Change of Ownership
Information about users and Customers, including Personal Data, may be disclosed and otherwise transferred to an acquirer, successor or assignee as part of any merger, acquisition, debt financing, sale of assets, or similar transaction, as well as in the event of an insolvency, bankruptcy, or receivership in which information is transferred to one or more third parties as one of our business assets and only if the recipient of the data commits to a Privacy Policy that has terms substantially consistent with this Privacy Policy.
Customer Data may be physically or electronically transferred to an acquirer, or successor or assignee as part of any merger, acquisition, debt financing, sale of assets, or similar transaction, as well as in the event of an insolvency, bankruptcy, or receivership in which information is transferred to one or more third parties as one of our business assets, for the sole purpose of continuing the operation of the Service, and only if the recipient of the Customer Data commits to a Privacy Policy that has terms substantially consistent with this Privacy Policy.
Choices and Consent
We respect your privacy rights and provide you with reasonable access to the Personal Data that you may have provided through your use of the Services. If you wish to access or amend any other Personal Data we hold about you, or to request that we delete or transfer any information about you that we have obtained from an Integrated Service, you may contact us as set forth in the “How to Contact Us” section. At your request, we will remove applicable client data upon validation of your identity.
You may update, correct, or delete your account information and preferences at any time by accessing your account settings page on the Service. Please note that while any changes you make will be reflected in active user databases instantly or within a reasonable period of time, we may retain all information you submit for backups, archiving, prevention of fraud and abuse, analytics, satisfaction of legal obligations, or where we otherwise reasonably believe that we have a legitimate reason to do so.
You may decline to share certain Personal Data with us, in which case we may not be able to provide to you some of the features and functionality of the Service. At any time, you may object to the processing of your Personal Data, on legitimate grounds, except if otherwise permitted by applicable law. If you believe your right to privacy granted by applicable data protection laws has been infringed upon, please contact us as set forth in the “How to Contact Us” section. You also have a right to lodge a complaint with data protection authorities.
This provision does not apply to Personal Data that is part of Customer Data. In this case, the management of the Customer Data is subject to the Customer’s own Privacy Policy, and any request for access, correction or deletion should be made to the Customer responsible for the uploading and storage of such data into the Service.
Third-Party Services
The Service may contain features or links to web sites and services provided by third parties. Any information you provide on third-party sites or services is provided directly to the operators of such services and is subject to those operators’ policies, if any, governing privacy and security, even if accessed through the Service. We are not responsible for the content or privacy and security practices and policies of third-party sites or services to which links or access are provided through the Service. We encourage you to learn about third parties’ privacy and security policies before providing them with information.
Your Privacy Rights
We will not share any Personal Data with third parties for their direct marketing purposes to the extent prohibited by applicable state law. If our practices change, we will do so in accordance with applicable laws and will notify you in advance.
Do Not Track Policy
Certain state law requires that operators of websites and online services disclose how they respond to a Do Not Track signal. Some browsers have incorporated “Do Not Track” features. Most of these features, when turned on, send a signal or preference to the website or online service that a user visits, indicating that the user does not wish to be tracked. Because there is not yet a common understanding of how to interpret Do Not Track signals, we do not currently respond to Do Not Track signal. We continue to work with the online industry to define a common understanding of how to treat Do Not Track signals.
In the meantime, you may opt-out of receiving interest-based advertising from advertising networks that may be delivered on our platform and other websites by visiting the following websites. If you want to opt-out of this online behavioral advertising, visit the following sites: http://www.aboutads.info/consumers and http://www.networkadvertising.org.
This will opt you out of many – but not all – of the interest-based advertising activities in which we or third parties engage. Choices you make may be browser and device-specific. If you delete your cookies or use a different browser or a different computer or device, you may need to update your opt-out choices. Other third-party websites provide visitors with the ability to opt-out of receiving interest-based ads on their websites that you need to control through your settings on that website. For example, to opt-out of Google’s use of your online behavior for advertising purposes, visit Google’s Ad Settings page.
Third-Party Cookies
Certain state law requires that operators of websites and online services disclose whether other third parties may collect personally identifiable information about an individual’s online activities from their site or service. We allow third parties with which we have a separate agreement to use cookies and other technologies to collect information about your use of the Website. These third parties include (1) business partners, which collect information when you view or interact with one of their advertisements on the website; and (2) advertising networks, which collect information about your interests when you view or interact with one of their advertisements.
The information gathered by these third parties is used to make predictions about your interests or preferences so that they can display advertisements or promotional material on this Website and on other sites across the Internet tailored to your apparent interests
The business partners and advertising networks that serve interest-based advertisements on the Services have limited access to a small amount of information about your profile and your device, which is necessary to serve you advertisements that are tailored to your apparent interests. It is possible that they may reuse this small amount of information on other sites or services.
We do not share with these third parties any information that would readily identify you (such as email address); however, these third parties may have access to information about your device (such as IP or MAC address). We do not have access to, or control over, the technologies that these third parties may use to collect information about your interests, and the information practices of these third parties are not covered by this Privacy Policy. Other than as discussed in this document, we have no control over these third parties.
The following types of cookies are used in the Website:
- Strictly necessary/essential cookies – These cookies are essential in order to enable you to move around the Website and use its features, such as accessing secure areas of the Website. Without these cookies services you have asked for cannot be provided. These cookies don’t collect information that identifies a visitor.
- Performance cookies – These cookies collect information about how visitors use a website, for instance which pages visitors go to most often, and if they get error messages from web pages. These cookies don’t collect information that identifies a visitor. All information these cookies collect is aggregated and therefore anonymous. It is only used to improve how a website works.
- Functionality cookies – These cookies allow the website to remember choices you make (such as your user name, language or the region you are in) and provide enhanced, more personal features. For instance, a website may be able to provide you with local weather reports or traffic news by storing in a cookie the region in which you are currently located. These cookies can also be used to remember changes you have made to text size, fonts and other parts of web pages that you can customize. They may also be used to provide services you have asked for such as watching a video or commenting on a blog. The information these cookies collect may be anonymized and they cannot track your browsing activity on other websites.
- Behaviorally targeted advertising cookies – These cookies are used to deliver adverts more relevant to you and your interests. They are also used to limit the number of times you see an advertisement as well as help measure the effectiveness of the advertising campaigns. They are usually placed by advertising networks with the website operator’s permission. They remember that you have visited a website and this information is shared with other organizations such as advertisers. Quite often targeting or advertising cookies will be linked to site functionality provided by the other organization.
Minors and Children’s Privacy
Protecting the privacy of young children is especially important. Our Service is not directed to children under the age of 18, and we do not knowingly collect Personal Data from children under the age of 18 without obtaining parental consent. If you are under 18 years of age, then please do not use or access the Service at any time or in any manner. If we learn that Personal Data has been collected on the Service from persons under 18 years of age and without verifiable parental consent, then we will take the appropriate steps to delete this information. If you are a parent or guardian and discover that your child under 18 years of age has obtained an Account on the Service, then you may alert us as indicated in the “How to Contact Us” section and request that we delete that child’s Personal Data from our systems.
The Service is not intended to be used by minors, and is not intended to be used to post content to share publicly. To the extent that a minor has posted such content on the Service, the minor has the right to have this content deleted or removed using the deletion or removal options detailed in this Privacy Policy. If you have any questions regarding this topic, please contact us as indicated in the “How to Contact Us” section. Please be aware that, although we offer this deletion capability, the removal of content may not ensure complete or comprehensive removal of that content or information.
Data Security
We follow generally accepted industry standards to protect the information submitted to us, both during transmission and once we receive it. We maintain appropriate administrative, technical and physical safeguards to protect Personal Data against accidental or unlawful destruction, accidental loss, unauthorized alteration, unauthorized disclosure or access, misuse, and any other unlawful form of processing of the Personal Data in our possession. This includes, for example, firewalls, password protection and other access and authentication controls. We use TLS/SSL technology to encrypt data during transmission through public internet, and we also employ application-layer security features to further anonymize Personal Data.
However, no method of transmission over the Internet, or method of electronic storage, is 100% secure. We cannot ensure or warrant the security of any information you transmit to us or store on the Service, and you do so at your own risk. We also cannot guarantee that such information may not be accessed, disclosed, altered, or destroyed by breach of any of our physical, technical, or managerial safeguards. If you believe your Personal Data has been compromised, please contact us as set forth in the “How to Contact Us” section of our website:
https://www.finaeo.com/contact/
If we learn of a security systems breach, we will inform you and the authorities of the occurrence of the breach in accordance with applicable law.
Settings
Although we may allow you to adjust your privacy settings to limit access to certain Personal Data, please be aware that no security measures are perfect or impenetrable. We are not responsible for circumvention of any privacy settings or security measures on the Service. Additionally, we cannot control the actions of other users with whom you may choose to share your information. Further, even after information posted on the Service is removed, caching and archiving services may have saved that information, and other users or third parties may have copied or stored the information available on the Service. We cannot and do not guarantee that the information you post on or transmit to the Service will not be viewed by unauthorized persons.
Data Transfer
We may transfer, process and store Personal Data we collect through the Services in centralized databases and with service providers located in the U.S. and Canada. The U.S. or Canada may not have the same data protection framework as the country from which you may be using the Services. When we transfer Personal Data to the U.S. or Canada, we will protect it as described in this Privacy Policy.
Changes and Updates to This Policy
Please revisit this page periodically to stay aware of any changes to this Policy, which we may update from time to time. If we modify the Policy, we will make it available through the Service, and indicate the date of the latest revision, and will comply with applicable law. Your continued use of the Service after the revised Policy has become effective indicates that you have read, understood and agreed to the current version of the Policy.
How to Contact Us
Finaeo is committed to treating you with the greatest respect and consideration, and providing the highest level of service. If you have any concerns or questions about privacy and confidentiality – or any other concerns about the way a request for personal information was handled, you can contact our team directly:
[email protected]
Finaeo US, Inc. 3001 Red Hill Ave Building 5, Ste 208, Costa Mesa, CA 92626, USA
Finaeo Inc. 400-1087 Queen St. West, Toronto, ON Canada M6J 1H3
We will respond as soon as reasonably possible to let you know the problem has been resolved. In more complex cases, we will disclose any further steps that are being taken and when you may expect a resolution.