Privacy Policy

Last updated: May 2026

security

Plain-English Summary

We prioritize your financial sovereignty. We collect only what is necessary to secure your account and fulfill regulatory requirements. We do not sell your data. We do not track your behavior for advertising. We protect your wealth with institutional-grade encryption.

Data Ownership

You own 100% of your data.

Advertising

Zero third-party ad tracking.

Encryption

End-to-end institutional standards.

1. What we collect

To provide the high-performance financial command center expected by our clients, we collect specific categories of information necessary for account verification and portfolio analysis.

  • Identification: Name, legal address, and government-issued tax identifiers.
  • Financial Data: Bank account links (via secure API), transaction histories, and asset valuations.
  • Technical Meta: IP addresses, device types, and browser versions for security auditing.

2. What we do NOT collect

"FlowCFO maintains a strict policy of minimal intrusion."

We explicitly do not collect or monitor your physical location outside of necessary security logging, nor do we access your personal contacts, photos, or private communications. We do not scrape data from other applications on your device.

3. How we use your data

Your data is utilized strictly for the functional performance of the FlowCFO dashboard:

Portfolio Benchmarking

Anonymized aggregation to provide market comparison tools.

Compliance

Meeting Anti-Money Laundering (AML) and Know Your Customer (KYC) statutes.

4. How we store it

FlowCFO utilizes multi-region, distributed cloud architecture with AES-256 encryption at rest and TLS 1.3 in transit. Our data centers are SOC2 Type II and ISO 27001 compliant. Physical access to hardware is strictly restricted to vetted personnel only.

Security Infrastructure 1
Security Infrastructure 2
Security Infrastructure 3
Security Infrastructure 4

5. Who we share it with

We do not sell, rent, or trade your personal data to third parties. Sharing only occurs with:

  • Regulated Partners: Financial institutions required to facilitate your requested transactions.
  • Legal Mandates: Where required by law, subpoena, or valid court order from a recognized jurisdiction.
  • Infrastructure Providers: Essential service providers (e.g., AWS) who maintain the physical storage of encrypted data.

6. Your rights

You maintain full control over your digital footprint within our ecosystem. You have the right to:

Request a full export of your data (Data Portability)arrow_forward
Correct inaccuracies in your financial profilearrow_forward
Request total deletion of your account and dataarrow_forward

Questions regarding your privacy?

Our dedicated privacy officer is available for direct consultation regarding your data security and rights.

Contact Advisor