← Back to Calculator
Privacy Policy
Effective Date: February 16, 2026
This Privacy Policy describes how BridgeToFI ("we," "our") handles information when you use bridgetofi.com ("Service").
1. What We Collect
🛡️ For Regular Calculator Users
We collect nothing. If you use the free calculator without signing up for an Advisor Portal account, your financial data never leaves your browser. All inputs, scenarios, and results stay in your browser's local storage and are never sent to our servers. We have no accounts, no analytics, no cookies, no tracking pixels, and no way to identify you. Your data is yours alone. We do not run analytics or tracking on any page of this site.
The information below applies only to users who sign up for an Advisor Portal account:
| Data Type | When Collected | Purpose |
| Email address | Advisor account signup | Authentication, account communication |
| Firm name | Advisor account signup | Report branding |
| Scenario data (financial inputs) | When you save scenarios | Store your work for later access |
| Firm logo | When uploaded by advisor | Report branding |
| Activity logs | When using the Service | Compliance audit trail |
| Payment information | During checkout | Processed by Stripe (we never see or store card numbers) |
2. What We Do Not Collect
- We do not collect Social Security numbers, bank account numbers, or other sensitive personal identifiers.
- We do not run any analytics, tracking scripts, or cookies anywhere on the site.
- We encourage advisors to use client nicknames rather than legal names.
- The free calculator (no account) stores data only in your browser's local storage. Nothing is sent to our servers.
3. How We Use Your Data
- To provide the Service (saving scenarios, generating reports, applying branding).
- To send transactional emails from noreply@bridgetofi.com (account verification, password resets) via Resend.
- To maintain audit logs for your compliance needs.
4. How We Do Not Use Your Data
- We do not sell your data to third parties.
- We do not share your data with advertisers.
- We do not use your scenario data for marketing.
- We do not use your data to train AI models.
- We do not use any analytics or tracking services anywhere on the site.
5. Data Protection
- All data is encrypted at rest (AES-256) via our infrastructure provider (Supabase/AWS).
- All data is encrypted in transit (TLS 1.2+).
- Row-Level Security (RLS) at the database level ensures one advisor cannot access another advisor's data.
- Our infrastructure provider (Supabase) maintains SOC 2 Type II compliance.
- Passwords are hashed using bcrypt and are never stored in plain text.
6. Data Retention
- Active accounts: data is retained for the life of the account.
- Cancelled subscriptions: Pro features are disabled, but data is retained for 90 days, then permanently deleted unless the subscription is resumed.
- Deleted accounts: all data is permanently deleted within 30 days.
7. Your Rights
You have the right to:
- Access: View all data we store about you (available via the Export Data feature in your account).
- Correct: Update any inaccurate information in your profile or scenarios.
- Delete: Permanently delete your account and all associated data.
- Export: Download a complete copy of your data in JSON format.
8. Third-Party Services
| Service | Purpose | What They Receive |
| Supabase (AWS) | Database, authentication, file storage | All stored data (Advisor Portal only) |
| Resend | Transactional email delivery | Email address (for account verification, password resets) |
| Stripe | Payment processing | Email, payment details (we never see card numbers) |
| Formspree | Feedback form processing | Feedback message content (only if you submit the feedback form) |
The free calculator does not connect to any third-party services. No data leaves your browser.
9. For European Users (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, the following additional rights and disclosures apply under the General Data Protection Regulation (GDPR):
- Lawful basis: For Advisor Portal users, we process your data on the basis of contractual necessity (to provide the service you signed up for).
- Right to restrict processing: You may request that we restrict the processing of your personal data under certain circumstances.
- Right to object: You may object to our processing of your personal data based on legitimate interests.
- Right to data portability: You may request a copy of your data in a structured, machine-readable format (JSON export is available in the Advisor Portal).
- Right to lodge a complaint: You have the right to lodge a complaint with your local data protection supervisory authority.
- Data controller: BridgeToFI is the data controller for personal data collected through the Advisor Portal.
- International transfers: Data is processed and stored on servers in the United States via our infrastructure provider Supabase (AWS). Supabase maintains SOC 2 Type II compliance and implements appropriate safeguards for international data transfers.
10. For California Residents (CCPA/CPRA)
If you are a California resident, you have the following additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
- Right to know: You may request the categories and specific pieces of personal information we have collected about you.
- Right to delete: You may request deletion of your personal information (available via Account settings or by contacting us).
- Right to opt-out of sale: We do not sell your personal information to third parties. We have never sold personal information and have no plans to do so.
- Right to non-discrimination: We will not discriminate against you for exercising any of your CCPA/CPRA rights.
- Shine the Light (Civil Code § 1798.83): We do not disclose personal information to third parties for their direct marketing purposes.
11. Children's Privacy
BridgeToFI is not directed at individuals under 18. We do not knowingly collect data from minors.
12. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email to registered users at least 30 days before taking effect. The "Effective Date" above will be updated accordingly.
13. Contact