Legal
Security & Data
Your work is yours. How we protect it, and what you can expect from us.
Your work is yours
Comps, pipeline, and contacts you upload are visible only to you and the team you invite. We never reuse your data to build a shared database, never sell it, and never share it between firms. We do not pool your data with other customers, and we do not use your uploaded data to train general or cross-customer models. You own it, and you can export or delete it at any time.
How we protect it
Your data is encrypted in transit (TLS 1.2 or higher) and at rest (AES-256).
Access is limited to you and the team you invite. Internally, access follows least-privilege rules and our team uses multi-factor authentication.
We run on established cloud infrastructure and work with a small set of trusted service providers to operate the product. They are not permitted to use your data for their own purposes.
Your data, your control
Export your data at any time in a common format.
Delete your data at any time. When you delete data or close your account, we remove it within 30 days, aside from limited backups and security logs we keep briefly and then purge.
If something goes wrong
If we ever confirm a security incident affecting your data, we will notify you promptly, within 72 hours of confirming it, with what we know and what we are doing about it.
Certification
We are building BrokerHQ to SOC 2-aligned security standards. We are early and not yet certified, and we will be transparent about exactly where we stand as we grow.
Questions?
Questions about security or data handling? Talk to the founder.