Skip to content
Brokerly

Software for insurance agencies.

Privacy Policy

Effective August 10, 2026

This Privacy Policy explains how Brokerly Insurtech Inc. (“Brokerly,” “we,” “us,” or “our”) handles personal information when people visit our website, contact us, or use the Brokerly platform.

Brokerly is business software for insurance agencies and brokerages. The agency or brokerage controls the client and business information its authorized users place in Brokerly. Brokerly handles that information on the agency's behalf.

If you have a privacy question or request, email privacy@brokerly.work.

Contents

  1. Scope and responsibilities
  2. Information we handle
  3. How we use information
  4. Email integrations and Google API data
  5. Analytics, monitoring, and advertising
  6. When we disclose information
  7. Cookies and privacy choices
  8. Retention and deletion
  9. United States processing
  10. Security
  11. Your rights
  12. Children, changes, and contact

1. Scope and responsibilities

This policy covers two different kinds of information:

  • Brokerly account and website data is information Brokerly controls, such as account registration details, billing records, support communications, website activity, and product-usage events.
  • Customer Data is information an insurance agency or brokerage and its authorized users place in, create in, or synchronize with Brokerly. The agency controls this data, and Brokerly processes it to provide the service on the agency's behalf.

If you are an agency client, contact, employee, or other person whose information an agency has placed in Brokerly, please direct requests about that Customer Data to the agency first. We will assist the agency as required by applicable law and our agreement with it.

2. Information we handle

Account and website data

Depending on how you interact with Brokerly, we may collect:

  • Your name, business name, business email address, role, account identifiers, and authentication information.
  • Contact-form responses, support requests, trial information, product feedback, and communications with us.
  • Subscription, invoice, transaction, and limited payment-status information. Stripe processes payment card information for Brokerly. We do not receive or store full payment card numbers or card security codes.
  • Device, browser, IP address, referral, page-view, product-usage, diagnostic, and security information collected when you use our website or platform.

Customer Data

An agency decides what Customer Data to place in Brokerly. It may include client and contact records; quotes; policies; renewals; claims; documents; notes; activities; communications; synchronized emails and attachments; and related business records. Brokerly does not require health or medical information as a separate product field, although documents or insurance records uploaded by an agency may contain that information.

Agencies and their users are responsible for having authority to collect and use the Customer Data they provide to Brokerly and for configuring user access appropriately.

3. How we use information

We use account and website data to:

  • Provide trials, accounts, subscriptions, support, and requested communications.
  • Authenticate users and protect Brokerly, our customers, and their data.
  • Process billing and maintain business, consent, and transaction records.
  • Understand website and product adoption, measure our sales funnel, troubleshoot problems, and improve Brokerly.
  • Send product announcements, trial follow-up, newsletters, and other marketing where permitted by law. You may unsubscribe from marketing without affecting transactional or service messages.
  • Comply with law and establish, exercise, or defend legal claims.

We use Customer Data only to provide, secure, support, and improve the user-facing Brokerly service, follow the agency's instructions, and meet legal obligations. We do not analyze the contents of client records, documents, emails, or attachments for generalized product analytics, advertising, or artificial intelligence training.

Brokerly has no artificial intelligence features as of the effective date of this policy, and we do not use personal information or Customer Data to train artificial intelligence models.

4. Email integrations and Google API data

At an agency user's direction, Brokerly can connect to a Google or Microsoft email account. We use the permissions granted through that provider to synchronize email records and attachments, link communications to Brokerly records, and provide the email features the user requests. We request access in context and use the connected data only for these user-facing features, security, legal compliance, and support authorized by the user or agency.

When a user disconnects a Google or Microsoft account, Brokerly deletes the OAuth access tokens immediately. Previously synchronized email records remain in Brokerly as part of the agency's Customer Data, while cached attachment files are removed. The agency can manage retained Customer Data through its account and applicable deletion process.

Brokerly does not transfer connected email data to advertising platforms or use it for advertising, generalized analytics, credit decisions, or artificial intelligence training. Human access is limited to circumstances authorized by the user or agency, necessary for security or support, or required by law.

Brokerly's use and transfer of information received from Google Workspace APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

5. Analytics, monitoring, and advertising

We use PostHog for limited website and product analytics. When analytics is permitted, we use it to understand website visits, campaign source, interactions with our website, and the path to a free-trial registration. If a visitor registers for a trial, we may connect that visitor's campaign and website attribution to the new Brokerly account. PostHog may process page path, referral domain, campaign parameters, limited device information, account identifiers, and allowlisted product events.

We do not enable automatic click or form capture, routine session recording, advertising profiles, or surveys for website measurement. We do not send form-field values or Customer Data content such as client records, documents, emails, or attachments to PostHog for generalized analytics.

We use Sentry for error monitoring. When an error triggers a replay, text is masked and media is blocked. We do not use Sentry replay for routine recording of all sessions. Diagnostic information may still include technical context needed to investigate an error.

Advertising and retargeting pixels are not active as of August 10, 2026. Before activating technologies such as Google Ads or LinkedIn advertising, we will update this policy and provide consent or opt-out choices where required by law. We do not use Google or Microsoft email integration data for advertising.

6. When we disclose information

We may disclose information in these limited circumstances:

  • Service providers. We use providers for cloud hosting and storage, payment processing, authentication, email integration, communications, analytics, security monitoring, support, and other business operations. They may use information only to provide services to us, subject to contractual and legal restrictions.
  • The agency. Agency administrators and authorized users can access information associated with their organization according to their permissions.
  • Legal and safety reasons. We may disclose information when reasonably necessary to comply with law, respond to lawful requests, protect rights and safety, investigate abuse, or enforce our agreements.
  • Business changes. Information may be reviewed or transferred as part of financing, due diligence, a merger, acquisition, reorganization, or sale of assets, subject to appropriate confidentiality and legal requirements.
  • With direction or consent. We may disclose information when the relevant person or agency directs or authorizes us to do so.

We do not sell personal information. We do not disclose Customer Data to data brokers or advertising platforms.

7. Cookies and privacy choices

Brokerly uses cookies and similar technologies needed to sign users in, maintain sessions, remember choices, prevent abuse, and operate the website and platform. We may also use analytics technologies described above to understand performance and use.

For visitors in the United States, limited analytics may begin when the site loads unless the visitor has opted out or uses a supported browser privacy signal. For visitors in Canada and every other location, including when we cannot reliably determine a location, analytics remains off until the visitor allows it. This location-based rule is a compliance safeguard and may be more protective than local law requires.

The Privacy choices control in the website footer lets a visitor allow or stop analytics. We also honor an active Global Privacy Control or Do Not Track browser signal by keeping analytics off. Browser settings can block or delete cookies, although blocking necessary cookies may prevent parts of Brokerly from working.

Where consent is required, we request marketing consent separately from acceptance of our Terms or use of a trial. Marketing emails identify Brokerly and include an unsubscribe method. Unsubscribing from marketing does not stop account, billing, security, or other transactional messages.

8. Retention and deletion

We keep information only as long as reasonably necessary for the purposes described in this policy, to provide the service, and to meet legal, security, accounting, and dispute obligations.

A free trial lasts 14 days. If an agency abandons a trial or ends a paid subscription, its Customer Data remains available in active systems for 21 days. During that period, the agency may reactivate its account or request an export. After 21 days, Customer Data is deleted from active systems.

Residual encrypted backup copies are removed through Brokerly's normal backup rotation and are isolated from ordinary business use. Backup copies are not guaranteed to be deleted within the 21-day active-system period. We may retain limited billing, consent, security, audit, and legal records for as long as reasonably necessary to meet legal or operational obligations.

9. United States processing

Brokerly's production data is stored in the United States. If you use Brokerly from Canada, Thailand, or another country, personal information will be transferred to and processed in the United States. United States privacy laws may differ from those where you live, and information may be subject to lawful access by United States authorities.

We use contractual, organizational, and technical measures intended to provide appropriate protection for cross-border processing, as required by applicable law.

10. Security

We use administrative, technical, and organizational safeguards designed to protect personal information, including encryption in transit and at rest, access controls, monitoring, and security procedures. Access by Brokerly personnel is limited to people who need it for support, security, legal compliance, or service operations.

No internet transmission or storage system is completely secure. We cannot guarantee that unauthorized access, loss, or misuse will never occur. If we confirm a security incident affecting an agency's Customer Data, we will notify the affected agency without unreasonable delay and as required by applicable law.

11. Your rights

Depending on where you live and the context, you may have rights to request access to, correction of, deletion of, or a copy of personal information; withdraw consent; object to or restrict certain processing; or complain to a privacy regulator. These rights may be subject to legal exceptions.

To exercise a right concerning Brokerly account or website data, email privacy@brokerly.work. We may need to verify your identity and authority before completing a request. You may also appeal a decision or contact your local privacy regulator where applicable.

For Customer Data controlled by an insurance agency or brokerage, contact that agency first. If the agency asks us to assist with a verified request, we will support it as required by applicable law and our agreement with the agency.

We will not discriminate against you for exercising an applicable privacy right.

12. Children, changes, and contact

Children

Brokerly is a business service for insurance agencies and brokerages. It is not intended for anyone under 18, and people under 18 may not create or use a Brokerly account. If you believe a minor has provided account information directly to us, please contact us. Customer Data may contain information about minors when an agency lawfully needs that information for insurance work; the agency controls that information.

Changes to this policy

We may update this policy as Brokerly, our practices, or legal requirements change. We will post the updated policy with a new effective date and provide additional notice when required. Before introducing advertising technologies or materially changing how connected Google or Microsoft data is used, we will update our disclosures and obtain consent where required.

Contact Brokerly

Brokerly Insurtech Inc. is a Delaware corporation. Contact us with privacy questions, requests, or complaints at:

Brokerly Insurtech Inc.
Suite 205, 1490 Ocean Ave
San Francisco, CA 94112
United States
privacy@brokerly.work

Contact The Brokerly Team

How can we help?

Optional questions

By submitting, you agree that Brokerly may contact you about your inquiry. See our Privacy Policy.

14-day free trial

Start your Brokerly trial

Tell us a little about your agency. We’ll follow up to prepare your workspace and help your team get started. Setup help is included and no credit card is required.

By submitting, you agree that Brokerly may contact you about your trial. See our Privacy Policy.