Privacy Policy

1. Data Controller

The data controller for RetainVault is:

Entity: Martin Vasko

Address: Ulica Jozefa Adamca 9983/24, 917 01 Trnava, Slovakia

IČO: 56440553

Contact: [email protected]

2. Data We Process As a provider of an insurance CRM, we process data in two capacities:

Account Data: Information you provide to create your account (name, email, agency branding).

Agency Data: Information you upload about your clients and policies. In this capacity, we act as a Data Processor, while you (the agency) remain the Data Controller.

Sub-Processing: We utilize GoHighLevel (HighLevel, Inc.) as our primary CRM infrastructure provider to host, store, and

manage the data you upload.

3. Zero-Access Intent We do not sell, rent, or share your agency's "Book of Business" with third-party carriers, lead aggregators, or competitors. Your data remains your property.

4. AI and Data Processing RetainVault uses Artificial Intelligence to analyze policy data and generate insights.

We use industry-standard providers (Google Gemini, Alibaba DashScope).

Your data is sent to these providers only for the duration of the request and is not used to train global models that could expose your business secrets.

5. GDPR Rights Under the General Data Protection Regulation (GDPR), you have the right to access, rectify, or erase your personal data, as well as the right to data portability. To exercise these rights, please contact us at [email protected].

6. Data Retention

We retain your Account Data for as long as your account is active.

If you delete your account, all associated Agency Data (policies, client records) is permanently decommissioned from our primary databases within 30 days.

7. Security Measures We implement enterprise-grade security including TLS encryption for data in transit and AES-256 encryption for data at rest. Our infrastructure, supported by our sub-processor GoHighLevel, is hosted on secure cloud providers in the EU/US regions.