PRIVACY POLICY

Effective date: July 15, 2020

LegacyShield Solutions, Inc. (“LegacyShield,” “our,” or “we”) operates the website, online platforms and mobile applications that link to this Privacy Policy and other services that link to this Privacy Policy (collectively, the “Services”). LegacyShield values and respects the privacy of its customers and visitors. The purpose of this Privacy Policy is to provide you with information about LegacyShield’s practices regarding the collection, processing, use, storage, and disclosure of information when you use our Services. This Privacy Policy also describes the choices you can make about our use of your information.

We may update or modify this Privacy Policy at any time, by posting the amended version including the effective date of the updated version. We will announce any material changes to this Privacy Policy through an alert on our website and/or via email. By using the Services and accepting these terms, you agree to the terms of this Privacy Policy and the collection and use of information in accordance with this Policy. If you do not agree to be bound by this Privacy Policy, you should not access or use our Services or disclose any personal information through our Services.

If you are a California resident, see the “State-Specific Rights” section below for additional terms and protections provided pursuant to your state-specific rights under the CCPA.

HOW TO CONTACT US

You can update your preferences and information by updating your account through our Services or contacting us at the e-mail address or phone number below. Additionally, if you have any questions or concerns about our use of your Personal Information (defined below), please do not hesitate to contact us through any of the methods below.

Phone: 1-855-654-7674

Email: Compliance@LegacyShield.com

You can write to us at:

Attn: Legal Department

LegacyShield Solutions, Inc.

One Linscott Road

Woburn, MA 01801

PERSONAL INFORMATION

Personal Information Collected By LegacyShield

While using our Services, we may ask you to provide us with certain personally identifiable information (“Personal Information”). Personal Information is information that identifies, relates to, describes, can reasonably be associated with, or can reasonably be linked to a particular individual or household.

We collect information from you both when you provide it voluntarily and also automatically when you use our Services. We may also collect Personal Information from other sources, as described below.

We collect Personal Information from you and any devices (including mobile devices) you use when you: use our Services, register for an account with us, provide us information on a web form, or over the telephone or online chat, update or add information to your account, when you otherwise correspond with us, engage or connect with us through one of our social media pages, or chat with a customer support specialist. Please remember that any information that is disclosed in public comments, forums or other areas enabling other users to submit comments (“Forums”) becomes public information, is not maintained or treated as confidential, and you should exercise caution when deciding to disclose your Personal Information.

In addition, we also collect Personal Information about you from third parties in connection with our Services, including from the following sources:

  • Service providers (including hosting providers and payment processors)

  • Data analytics service providers

  • Email, chat and other communications service providers

  • Customer service providers

  • Advertising providers

  • Social media platforms

  • Partners

    Information Provided to LegacyShield by Partners

    We may also receive Personal Information about you directly from a financial advisor, insurance broker, insurance carrier, or other financial institution or service provider that you authorize to provide Personal Information to us (each, a “Partner”). The Personal Information may be input directly by a Partner on your behalf into the Service. We use that Personal Information to provide our Services to you in the manner described in this Policy. To the extent that you wish for us to stop receiving information from any Partner, please contact the Partner. To the extent you have inquiries or requests with respect to LegacyShield’s use of your Personal Information, please contact us as described above.

    INFORMATION WE COLLECT

    We may collect the following categories of Personal Information from you or receive the following categories of Personal Information from our Partners, depending on your interactions with our Services and the choices you make, as further described in the chart below:

    Information collected through use of our Services

    Categories of Information

    Description of category

    How We Use Information

    Account Registration Information

    To use certain portions of the Services, your Partner may provide certain Personal Information to the Services to establish and register your account. You will receive an email notification from us once your account is established.

    The Account Registration Information necessary to set-up your account is the Personal Information that is provided by a Partner to the Services on your behalf or provided by you or collected by us to enable you to login and/or access your account and our Services. This includes your name, email address, and phone number. In some circumstances, this may also include your insurance policy numbers, date of birth and insurance application numbers.

    Some of the Personal Information we will ask you to provide is required in order to create your account. You also have the option to provide us with some additional Personal Information in order to make your account more personalized and to increase the scope of Services that you receive from us.

    • To provide, maintain, personalize, and improve our Services.

    • To respond to your questions and requests.

    • To create, maintain, and personalize your account with us.

    • To provide customer support.

    • To notify you about changes to our Services.

    • To allow you to participate in interactive features of our Services.

    • To contact you with newsletters, marketing or promotional materials and other information that may be of interest to you.

    Personal Information and other Demographic Data

    We will collect Personal Information from you in connection with your use of the Services, including when you interact with the Services to update your account and view your information, provide feedback or post on a forum through our Services, and including if you leave a comment on articles posted on the Services. The information collected and used within your account may include:

    • To provide, maintain, personalize, and improve our Services.
    • To provide customer support.
    • To monitor the usage of our Services.
    • To gather analysis and assess trends and interests.
    • To provide notices and marketing materials to you that may be of interest to you.

    Blog Registration Information

    You may provide your email address in order to receive our blog posts via email.

    • To contact you with newsletters, marketing or promotional materials and other information that may be of interest to you.

    Advisor and Enterprise Registration Information

    This is the Personal Information provided by you to enable you to register on your own behalf or on behalf of your employer to receive certain Services or further information about such Services. This includes your name, email address, phone number, company name, and job title.

    • To respond to your questions and requests.
    • To provide customer support.
    • To provide our Services.
    • To contact you with promotional information that may be of interest to you.

    Payment and Purchasing Information

    We may collect Personal Information if you make a purchase on your own behalf or on behalf of your employer through our Services. The exact Personal Information will vary depending on the payment method but may include information such as:

    • Name;
    • Credit or debit card type, expiration date, and your card number;
    • Billing address;
    • Postal code; and
    • Phone number.

    We may also collect information concerning the services purchased or considered, or other purchasing or consuming histories or tendencies.

    • To process payments and provide you with the products and services purchased.
    • To respond to your questions and requests.

    Customer Support Information

    This includes any information that you choose to provide, whether by phone, email, or chat, to our sales representatives, customer service representatives. Our customer support chat feature may prompt you to provide your full name prior to assisting you with customer support.

    • To provide, maintain, personalize, and improve our Services.

    • To provide customer support.

    • To monitor the usage of our Services.

    • To gather analysis and assess trends and interests.

    • To allow you to participate in interactive features of our Services when you choose to do so.

        Third Party Data

        This includes both Personal Information and non-personally identifiable data from our affiliates, customers, partners or vendors, data brokers or public sources.

        • To provide, maintain, personalize, and improve our Services.
        • To monitor the usage of our Services.
        • To gather analysis and assess trends and interests.
        • To provide you with advertising content in which we think you will be interested. As part of this customization, we may observe your behaviors on the Services or on other websites.

        Social Media Platforms

        If you choose to access, visit, and/or use any of our pages on social media platforms such as Facebook, Twitter, or LinkedIn (“Social Media Platforms”), we may receive aggregate information and analysis about visitors’ usage of our pages on such Social Media Platforms. You may choose to provide Personal Information through Social Media Platforms, including without limitation your name, phone number, or address when you communicate with us on the Social Media Platforms, post suggestions or comments for us, or through other such interactions on the Social Media Platforms.

        • To respond to your questions and requests.
        • To provide customer support.
        • To gather analysis and assess trends and interests.

        Usage Information

        This can be Personal Information and non-Personal Information that is collected about you when you are using our Services, and this may include:

         

        • Information about your interactions with our Services, which includes the date and time of any information you enter into our Services and your interactions with other users of our Services and what content or features you interacted with.
        • User content you post to our Services including messages you send and/or receive in the Forums and your interactions with our customer service team and other users.
        • Technical data which may include URL information, cookie data, web beacons, pixels and other tracking technology information, your IP address, the types of devices you are using to access or connect to our Services, unique device IDs, device attributes, network connection type (e.g., WiFi, 3G, LTE, Bluetooth) and provider, network and device performance, browser type, language, and operating system. Further details about the technical data that is processed by us can be found below.

         

        Our Services uses cookies, unique identifiers and similar technologies to collect information over time and across different websites when you use or visit our Services. We or our third-party partners use common tracking tools to collect information about the pages you view, our Services functions that you access, the buttons and icons you click, and to remember your login information and Services settings to make it easier and more efficient for you to use our Services, and to provide advertising content that we think may be of interest to you.

        • To allow you to participate in interactive features of our Services
        • To provide, maintain, personalize, and improve our Services.

        • To monitor the usage of our Services.

        • To gather analysis and assess trends and interests.

        • To provide you with advertising content in which we think you will be interested. As part of this customization, we may observe your behaviors on the Services or on other

        • To respond to your questions and requests.

        • To provide customer support.

        • To gather analysis and assess trends and interests.

          • To administer our Services and system.

          • To create, maintain, and personalize your account with us.

          • To provide, maintain, personalize, and improve our Services.

          Cookies. Cookies are small data files that are downloaded onto your computer or mobile device when you use our Services, which are unique to your device or account. Cookies make it easier for you to use our Services by saving your preferences so that we can use these to improve your next and subsequent visits to our Services. Cookies help us learn which areas of our Services are useful and which areas need improvement.

          Cookies may be either persistent or temporary (or session) cookies. A persistent cookie retains user preferences for a particular website, app or service, allowing those preferences to be used in future use sessions and remains valid until its set expiry date (unless deleted by the user before the expiry date). A temporary cookie, on the other hand, will expire at the end of the user session, when the web browser is closed.

          You can choose whether to accept cookies by changing the settings on your browser or device. For more information regarding your choices with respect to cookies and other tracking technologies, please see “Your Rights and Choices Regarding Your Information” below. However, if you choose to disable this function, your experience with our Services may be impaired and some features may not work as they were intended. When we use cookies or other similar technologies, we may set the cookies ourselves or ask third parties to do so to help us.

          Pixels, Web Beacons. We or third-party partners may use invisible pixels or beacons on our Services to count how many users access or use certain pages, features or content. This information is collected and reported in the aggregate. We may use this information to improve our current Services offerings, develop new products or services, and target information to you that may be helpful and useful to you based upon your use of our Services.

          • To detect, prevent, and address technical issues and provide customer support.

          • To help monitor the security of our Services.

          Anonymized Information

          We use anonymized and aggregated information that may be created or derived from your Personal Information or usage of our Services for purposes that include data analysis, improving our Services, advertising, and developing new features and functionality within our Services.

          • To provide, maintain, personalize, and improve our Services.

          • To monitor the usage of our Services.

          • To gather analysis and assess trends and interests.

          • To detect, prevent, and address technical issues.

          • To help maintain the safety, security, and integrity of our Services and technology assets.

        SHARING YOUR INFORMATION

        We share non-Personal Information with third parties at our discretion. We do not sell Personal Information to third parties. In connection with our Services, we may share your Personal Information with certain third parties who we engage to help us run our business and perform the services, including under the following circumstances:

          • Software and service providers we use to manage and process your information.
          • Affiliates, subsidiaries, and customers.
          • Web analytics providers who monitor and analyze the use of our Services (including Google Analytics). For more information about Google Analytics, please visit www.google.com/policies/privacy/partners.
          • Marketing service providers we use to communicate with you.
          • Advertising service providers we use to assist us in providing personalized advertising.
          • Business partners, including Partners and insurance carriers who resell and/or provide access to their respective customers to our products and services in partnership or collaboration with us.
          • Other third parties that you expressly request us to share your Personal Information with.

        In addition, we may share Personal Information with your family members or other individuals to whom you designate your Personal Information may be shared within the Services, for example, beneficiaries of your insurance policies, spouses, family members, lawyers, accountants and other persons. The list of persons who may view your account and information may be updated by you through the Service at any time. You acknowledge that your account and Personal Information may be shared with such persons posthumously in connection with the viewing of relevant policies and benefits contained in your account.

        Additionally, we will share your Personal Information with third parties where required by law, where it is necessary in connection with our Services or products, or where we have another legitimate interest in doing so.

        Most of the third parties with whom we share your Personal Information are located and store your information in the United States, although some may be located or store your information outside of the United States. These third parties are only permitted to use your Personal Information to the extent necessary to enable them to provide their services to us.

        If we are subject to a merger or acquisition with/by another company, we may share information with the other company in connection with the transaction, and your Personal Information may be transferred to such company upon completion of the transaction. Such acquiring company’s right to use your Personal Information shall be limited to the terms of this Policy unless additional notice is provided to you.

        HOW WE SAFEGUARD YOUR INFORMATION

        The security of your data is important to us but remember that no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Information, we cannot guarantee its absolute security. Any transmission of Personal Information is at your own risk.

        HOW LONG WE STORE YOUR INFORMATION

        We will retain your Personal Information only for as long as is necessary for the legitimate business purposes set out in this Privacy Policy. We will retain and use your Personal Information to the extent necessary to comply with our legal, accounting, or reporting obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes and enforce our legal agreements and policies. Additionally, we may continue to store your Personal Information contained in our standard back-ups.

        We also will retain Usage Information for internal analysis purposes. Usage Information is generally retained for a shorter period of time, except when Usage Information is used to strengthen the security or to improve the functionality of our Services or products, or we are legally obligated to retain Usage Information for longer periods.

        YOUR RIGHTS AND CHOICES REGARDING YOUR INFORMATION

        Marketing Preferences. You can opt-out from receiving future marketing communications from us at any time by using the unsubscribe function in the email you receive from us, or contacting us as set forth under “How to contact us” above. Please allow sufficient time for your preferences to be processed. Even if you opt-out of receiving marketing messages, we may still contact you for transactional purposes like confirming or following up on an order or service request, asking you to review a product or service you have ordered, or notifying you of product recalls. If you later opt back into getting marketing communications from us, we will remove your information from our opt-out databases.

        As noted above in “The Information We Collect About You,” you can choose whether to accept cookies by changing the settings on your browser or device. However, if you choose to disable cookies, your experience with our Services may be impaired and some features may not work as they were intended.

        Additionally, Do Not Track is a preference you can set in your web browser to inform websites that you do not want to be tracked. You can enable or disable Do Not Track by visiting the preferences or settings page of your web browser. However, these features are not yet uniform, so we do not currently respond to such features or signals. Therefore, if you select or turn on a “do not track” feature in your web browser, we and our third-party providers may continue collecting information about your online activities as described in this Privacy Policy.

        You can choose to limit the data that third-party services (e.g., Social Media Platforms) share with us using the options provided to you by the applicable third party service (for example, the options provided by Social Media Platforms when you connect your social media account with our Services). You can also disconnect your use of our Services from the third-party service at any time using the options provided to you by the applicable third-party service. Please note, however, that if you disconnect from the third-party service, that will not delete the data we may have previously collected while you were connected.

        STATE-SPECIFIC RIGHTS

        Depending on where you live, you may have certain rights with respect to Personal Information that we have collected and used under certain circumstances, which may include the following:*

        • The right to request the following information regarding our use of your Personal Information:
          1. Categories of your Personal Information that we have collected
          2. Purposes for which we have collected or used such Personal Information
          3. Categories of sources for the Personal Information we have collected about you
          4. Categories of third parties with whom we have disclosed your Personal Information
          5. Categories of personal information disclosed about you for a business purpose
          6. If we have sold your Personal Information, a list identifying the Personal Information categories that each category of third party obtained.
        • The right to receive a copy of your Personal Information.
        • The right to request us to erase your Personal Information when we no longer need such data in connection with our Services (subject to certain exceptions that may apply under applicable law).
        • The right to opt-out of sales of your Personal Information. To exercise the right to opt-out, you (or your authorized representative) may submit a request to us by visiting the following Internet Web page link: Do Not Sell My Personal Information.If you are a resident of a jurisdiction where one or more of these rights are granted to you under applicable law, and you wish to exercise any such rights listed above, please contact us by either:
        • Phone: 1-855-654-7674

        • Email: Compliance@LegacyShield.com
        • Web: Compliance

        Please note that if you are exercising the right to opt-out, you may also submit your request through the following link: Do Not Sell My Personal Information.

        Only you, or someone legally authorized to act on your behalf, may make a verifiable consumer request related to your Personal Information. Please understand that we are required to verify your request and may require you to provide some information to enable us to carry out such verification. We cannot respond to your request or provide you with Personal Information if we cannot verify your identity or authority to make the request and confirm the Personal Information relates to you.

        Making a verifiable consumer request does not require you to create an account with us. We will only use Personal Information provided in a verifiable consumer request to verify the requestor’s identity or authority to make the request.

        TRANSFER OF DATA; SPECIAL NOTICE TO NON-U.S. USERS

        Your information, including Personal Information, may be transferred to, and maintained on, computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction. If you are located outside United States and choose to provide information to us, please note that we transfer the data, including Personal Information, to the United States and process it there. Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.

        We will take all the steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your Personal Information will take place to an organization or a country unless there are adequate controls in place including the security of your data and other Personal Information.

        If you are located in a country outside the U.S. and submit Personal Information to us, you consent to the general use and disclosure of such information as provided in this Privacy Policy and to the transfer and/or storage of that information to the U.S. and other countries outside your home country.

        SENSITIVE PERSONAL INFORMATION

        Subject to the following paragraph, we ask that you not send us, and you do not disclose, any sensitive personal information as this term is defined under applicable data protection and privacy laws (for example, social security numbers, information related to racial or ethnic origin, political opinions, religion or other beliefs, health, biometrics or genetic characteristics, criminal background or trade union membership) on or through the Services or otherwise to us.

        If you send or disclose any sensitive personal information to us, you consent to our processing and use of such sensitive personal data in accordance with this Privacy Policy. If you do not consent to our processing and use of such sensitive personal information, you must not submit such content to our Services.

        POLICY ON CHILDREN’S INFORMATION

        We do not knowingly collect personally identifiable information from anyone under the age of 13 (“Child”) without the consent of the child’s parent or guardian, and we do not target the Services to children under the age of 13. If you are a parent or guardian and you are aware that your child has provided us with Personal Information without your consent, please contact us through one of the methods listed under “How to Contact Us”, above. If we become aware that we have collected Personal Information from Children without verification of parental consent, we take reasonable steps to remove that information from our servers.

        In the event you designate a Child as a permitted user of your account, you represent and warrant that you are such Child’s parent or guardian, and you consent to LegacyShield collecting and processing the Child’s personal information, contacting them for the purpose of providing them with access to your account and allowing the Child to register for their own account to access the Services.

        For more information about the Children’s Online Privacy Protection Act (“COPPA”), which applies to websites that direct their services to children under the age of thirteen (13), please visit the Federal Trade Commission’s website https://www.ftc.gov/tips-advice/business-center/guidance/complying-coppa- frequently-asked-questions.

        LINKS TO OTHER SITES

        Our Services contain links to third-party websites. If you click on one of those links, you will be taken to websites we do not control. This Privacy Policy does not apply to the information practices of those third-party websites. You should read the privacy policies of third-party websites carefully. We are not responsible for the content, privacy policies, actions or security of third-party websites.

        GOVERNING LAW AND JURISDICTION

        This Privacy Policy shall be construed and governed under the laws of the United States and  the Commonwealth of Massachusetts (without regard to rules governing conflicts of laws provisions). You agree that venue for all actions, arising out of or relating in any way to your use of our Services, shall be in the federal court in Boston, Massachusetts or state court of competent jurisdiction located in Middlesex County, Massachusetts, within one (1) year after the claim arises. Each party waives any objections based on forum non conveniens and waives any objection to venue of any action instituted hereunder to the extent that an action is brought in the courts identified above. Each party consents to personal jurisdiction in the courts identified above.