Privacy Policy

How we protect your information through zero-knowledge proof architecture

Last updated: October 10, 2025

Our Privacy Principles

Zero-Knowledge Architecture

We fundamentally cannot access your data or your clients' personal information. This isn't a policy—it's cryptographic impossibility built into our infrastructure.

Minimal Data Collection

We collect only what's necessary for platform operation. No behavioral tracking. No data selling. No third-party advertising networks.

Consent-First Design

Client contact information requires explicit verbal consent obtained through our partnered phone system. No exceptions.

Data Sovereignty

You own your business data. You can export it at any time and delete your account with complete data removal.

Information We Collect

Account Information

When you create an account, we collect: your name, email address, phone number, agency name, and license information. This data is encrypted and stored securely.

License Verification

We verify your insurance licenses through state databases and carrier systems. This verification data is used solely to confirm your eligibility and maintain platform integrity.

Performance Metrics

To calculate credits, we track call duration, response times, and close rates. These metrics are anonymized and aggregated for credit calculation purposes.

Technical Data

We collect minimal technical information necessary for platform operation: IP address (for security), device type (for optimization), and session data (for functionality). We do not use cookies for tracking or advertising.

Information We Do NOT Collect

We explicitly do not collect or store:

  • Client personal information before verified consent
  • Browsing history or behavioral tracking data
  • Social media profiles or third-party identity data
  • Financial information (credit cards, bank accounts)
  • Health information or medical records
  • Social security numbers or government IDs (beyond license verification)

How We Use Your Information

We use collected information exclusively to:

  • Provide and maintain the Platform
  • Verify your licensing and compliance status
  • Calculate performance-based credits
  • Send important account and compliance notifications
  • Improve platform security and functionality
  • Respond to your support requests

We will never sell, rent, or share your information with third parties for marketing purposes.

Phone Service and Consent Management

Our partnered phone providers facilitate compliant communication between agents and leads. All phone interactions are:

  • Recorded for quality assurance and compliance verification
  • Subject to consent verification before personal information release
  • Logged with timestamps and consent documentation
  • Encrypted during transmission and storage

These recordings are retained for regulatory compliance purposes and may be provided to authorities upon lawful request.

Data Security

We protect your information through:

  • AES-256 encryption for data at rest
  • TLS 1.3 encryption for data in transit
  • Regular third-party security audits
  • SOC 2 Type II compliance
  • Penetration testing and vulnerability assessments
  • Strict access controls and authentication requirements

Despite these measures, no system is 100% secure. However, our zero-knowledge architecture means that even in the event of a breach, personal client information cannot be accessed.

Your Rights

You have the right to:

  • Access all data we have about you
  • Request correction of inaccurate information
  • Export your data in portable formats
  • Delete your account and all associated data
  • Opt out of non-essential communications
  • Request detailed information about our security practices

To exercise these rights, contact us at privacy@producer.directory

Regulatory Compliance

Producer.Directory complies with GDPR (for European users), CCPA (for California users), and applicable federal privacy laws. We maintain documentation of our privacy practices and submit to regular audits by independent third parties.

Changes to This Policy

We will notify you of any material changes to this Privacy Policy via email and prominent in-app notification at least 30 days before changes take effect. Your continued use of the Platform after changes constitutes acceptance.

Contact Us

For privacy-related questions or concerns:

Email: privacy@producer.directory

Mail: Producer.Directory Privacy Team
[Address on file with regulatory authorities]

Online contact form