Privacy Policy
Last updated: June 19, 2026
Overview
TrustedPortal, Inc. ("TrustedPortal," "we," "us") is committed to protecting the privacy and security of information processed through our platform. This policy describes how we collect, use, and protect information in connection with our services.
Information We Process
As an infrastructure provider to financial institutions, we process information on behalf of our clients ("Client Data"). This includes:
- Portal authentication credentials and session data
- Documents uploaded or exchanged through our platform
- Access logs and audit trail records
- Technical metadata necessary for service delivery
Data Ownership
Client Data remains the property of the financial institution that contracts our services. We process this data solely as a service provider under written data processing agreements with each client.
Security Measures
We implement administrative, technical, and physical safeguards including:
- AES-256 encryption at rest and TLS 1.3 in transit
- Multi-factor authentication for all administrative access
- SOC 2 Type II audited controls
- Annual third-party penetration testing
- Real-time intrusion detection and monitoring
- US-based data centers with FISMA-aligned physical security
Data Retention
We retain Client Data only for the duration specified in our service agreements. Upon contract termination, data is securely deleted within 30 days unless regulatory retention requirements apply.
Regulatory Compliance
Our data handling practices are designed to support our clients' obligations under GLBA, state privacy laws, and federal financial regulations. We cooperate with regulatory examinations as required.
Third-Party Sharing
We do not sell, share, or disclose Client Data to third parties except as required by law or as directed by the contracting financial institution.
Contact
For privacy-related inquiries: privacy@trustedportal.net
TrustedPortal, Inc.
401 S. Tryon Street, Suite 1400
Charlotte, NC 28202