This Privacy Policy explains how D & F Research, LLC, a Florida limited liability company that operates FiduciarySignal (the “Service,” “we,” or “us”), handles your information. The Service is made available at www.fiduciarysignal.com.
We do not collect precise location, contacts, or advertising identifiers, and we do not use third-party advertising or cross-site tracking SDKs.
We do not sell, rent, or trade your information. We do not share it with advertisers or data brokers.
We set a single session cookie when you sign in. It is HttpOnly, Secure, and uses SameSite=Lax. The cookie expires after 30 days of inactivity or when you sign out. Our service worker may cache the application shell and public reference content on your device to enable offline use; this cache contains no personal information.
We retain your account information for as long as your account is active, and we retain billing records for as long as required for tax, accounting, and legal purposes. Password-reset links expire 30 minutes after they are issued and can be used only once. You may request deletion of your account at any time (see section 8).
The Service is intended for retirement plan professionals and is not directed to individuals under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with information, please contact us and we will delete it.
California residents (CCPA/CPRA). You have the right to know what personal information we have collected about you, to request its deletion, and to not be discriminated against for exercising these rights. We do not sell or share personal information for cross-context behavioral advertising.
EEA, UK, and Swiss residents (GDPR/UK GDPR). You have the right to access, correct, delete, restrict, or port your personal data, and to object to processing. The lawful bases for processing your information are performance of our contract with you (operating your account and any subscription), your consent where applicable, and our legitimate interest in securing and improving the Service.
To request access to or deletion of your data, or for any privacy question, email support@fiduciarysignal.com. We will respond within 30 days.
We use HTTPS for all traffic, hash and sign sign-in tokens with a server-side secret, and apply standard hardening to session cookies. No system is perfectly secure; if we become aware of a breach affecting your information, we will notify you in accordance with applicable law.
We may update this Privacy Policy from time to time. Material changes will be indicated by updating the “Last updated” date above. Continued use of the Service after a change indicates acceptance of the updated policy.