Privacy Policy

Last updated: January 2025

Introduction

Headwall ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered 401(k) platform and related services. Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site or use our services.

Data We Collect

Account Information

We collect personal information you provide when creating an account, including your name, email address, date of birth, Social Security number, address, employment information, and financial data necessary for 401(k) plan administration.

Usage Data

We automatically collect information about how you interact with our platform, including pages visited, features used, time spent on the platform, and device information.

Cookies and Tracking Technologies

We use cookies, web beacons, and similar technologies to enhance your experience, analyze usage patterns, and provide personalized content and advertisements.

How We Use Data

Provide Service

We use your information to operate and maintain your 401(k) account, process transactions, provide investment management services, and deliver customer support.

Security and Compliance

We use your data to verify your identity, prevent fraud, ensure platform security, and comply with legal and regulatory requirements including ERISA and other financial regulations.

Support and Communication

We may use your contact information to provide customer support, send important account notifications, and communicate about service updates or changes.

Analytics and Improvement

We analyze usage data to improve our services, develop new features, and enhance user experience through AI-powered personalization.

Legal Bases

We process your personal information based on: (1) your consent, (2) performance of our contract with you, (3) compliance with legal obligations, and (4) our legitimate business interests in providing and improving our services.

Sharing

Service Providers

We may share your information with trusted third-party service providers who assist us in operating our platform, processing payments, providing customer support, and conducting business operations.

Legal Requirements

We may disclose your information when required by law, regulation, legal process, or governmental request, or to protect our rights, property, or safety.

Corporate Transactions

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction, subject to appropriate confidentiality protections.

Data Retention

We retain your personal information for as long as necessary to provide our services, comply with legal obligations, resolve disputes, and enforce our agreements. Account information is typically retained for the duration of your account relationship and for a reasonable period thereafter as required by law.

Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. This includes encryption, secure data transmission, access controls, and regular security assessments. However, no method of transmission over the internet is 100% secure.

International Transfers

Your information may be transferred to and processed in countries other than your country of residence. When we transfer personal information internationally, we ensure appropriate safeguards are in place to protect your data in accordance with applicable privacy laws.

Your Rights

Depending on your location, you may have certain rights regarding your personal information, including the right to access, correct, delete, or restrict processing of your data. You may also have the right to data portability and to object to certain processing activities. To exercise these rights, please contact us using the information provided below.

Children

Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information.

Changes

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. Your continued use of our services after any changes constitutes acceptance of the updated Privacy Policy.

Contact

If you have any questions about this Privacy Policy or our privacy practices, please contact us at: hello@headwall.co