Privacy policy

Effective date: [DATE] · Last updated: [DATE]

Legal scaffold — counsel must draft the final text. The headings below define the required scope; the body text is placeholder structure, not a usable policy.

1. Who we are

[Legal entity name], operating as CCM ("we," "us"). Contact: [address, email].

2. Information we collect

Contact details, insurance-inquiry information you submit, call recordings, device and usage data, and consent records (including method, timestamp, and language shown).

3. How we use it

To connect you with the providers you asked to hear from, to verify consent and prevent fraud, to operate and improve the network, and to meet legal obligations.

4. Who we share it with

The advertiser(s) identified at the point of consent, service providers under contract, and authorities where legally required. We do not sell data outside the disclosed transaction. [Counsel: address CCPA "sale/share" definitions explicitly.]

5. Your rights

Access, deletion, correction, and opt-out rights per applicable state law. Submit requests via the contact page; identity verification applies. See also data & privacy practices.

6. Retention

[Retention schedule per record type — align with the schedule stated in consent practices.]

7. Security

[Summary of technical and organizational measures.]

8. Changes & contact

[Change-notification practice; DPO/privacy contact.]