Privacy Policy

How we protect your data and respect your privacy.

Last updated: December 26, 2024

Introduction

At AgncKit, we take privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform designed specifically for insurance agencies.

We are committed to protecting your data with the same care you extend to your clients. This policy applies to all users of AgncKit services, including agency owners, team members, and administrators.

Information We Collect

Account Information

When you create an AgncKit account, we collect:

  • Name and email address
  • Agency name and location
  • Phone number (optional)
  • Role within the agency
  • Authentication credentials (stored securely, never in plaintext)

Usage Data

We automatically collect certain information when you use our platform:

  • Device and browser information
  • IP address and approximate location
  • Pages visited and features used
  • Time spent on the platform
  • Error logs and performance data

Workspace Data

Data you input into AgncKit workspaces (such as training materials, hiring assessments, message templates, and team member information) is stored within your workspace. This data belongs to you and your agency.

How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our services
  • Process transactions and send related information
  • Send technical notices, updates, and support messages
  • Respond to your comments, questions, and requests
  • Monitor and analyze trends, usage, and activities
  • Detect, investigate, and prevent fraudulent transactions and abuse
  • Personalize and improve your experience

We never sell your personal information. We do not share your workspace data with third parties for their marketing purposes.

Zero-Access Architecture

We Never See Your Customer Data

AgncKit employs a zero-access encryption architecture. This means that sensitive data stored in your workspace is encrypted in a way that even we cannot access it. Your encryption keys are derived from credentials only you control.

Our zero-access architecture includes:

  • Client-side encryption: Sensitive data is encrypted in your browser before transmission
  • Server-blind storage: We store encrypted data without the ability to decrypt it
  • User-controlled keys: Encryption keys are derived from your credentials and never stored on our servers
  • PDF processing in browser: Documents like coverage snapshots are processed entirely in your browser and never uploaded to our servers

This architecture means that in the unlikely event of a data breach, your sensitive workspace data would remain encrypted and inaccessible.

Third Parties

We may share information with third parties in the following circumstances:

Service Providers

We work with trusted service providers who assist us in operating our platform. These providers are contractually obligated to protect your information and may only use it to provide services to us. They include:

  • Cloud infrastructure providers (for hosting and data storage)
  • Analytics services (to understand how our platform is used)
  • Customer support tools
  • Payment processors

Legal Requirements

We may disclose information if required by law, court order, or governmental authority, or when we believe disclosure is necessary to:

  • Comply with applicable laws or regulations
  • Protect the rights, property, or safety of AgncKit, our users, or others
  • Detect, prevent, or address fraud, security, or technical issues

Business Transfers

If AgncKit is involved in a merger, acquisition, or sale of assets, your information may be transferred. We will provide notice before your information becomes subject to a different privacy policy.

Security

We implement industry-standard security measures to protect your information:

Encryption

AES-256 encryption at rest and TLS 1.3 in transit

Access Controls

Role-based access and multi-factor authentication

Infrastructure

SOC2-compliant cloud infrastructure with redundancy

Monitoring

24/7 security monitoring and incident response

While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we are committed to promptly notifying affected users in the event of a breach.

Your Rights

Depending on your location, you may have certain rights regarding your personal information:

Access and Portability

You can access and export your workspace data at any time through your account settings. We provide data in standard, portable formats.

Correction

You can update your account information directly in your profile settings. If you need assistance correcting other information, contact us.

Deletion

You can request deletion of your account and associated data. Upon request, we will delete your personal information, except where we are required to retain it for legal or legitimate business purposes.

Opt-Out

You can opt out of non-essential communications at any time by updating your notification preferences or clicking unsubscribe in our emails.

California Residents

California residents have additional rights under the CCPA, including the right to know what personal information we collect and how it is used, and the right to opt out of the sale of personal information (note: we do not sell personal information).

Eligibility

Important Eligibility Requirements

  • United States Only: AgncKit is currently available only to users located in the United States.
  • Age Requirement: You must be at least 18 years old to use AgncKit.

By using AgncKit, you represent and warrant that you meet these eligibility requirements. If you do not meet these requirements, you are not authorized to access or use our services.

Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

We will respond to your request within a reasonable timeframe and in accordance with applicable law.