Privacy Policy
Effective date: 2026-04-30 | Version: 1
Bromoney is a loan marketplace, not a lender. This policy explains what personal information we collect, how we use it, and the choices you have. By using our website you agree to the practices described below.
Information We Collect
We collect information that helps us match you with partner lenders and maintain a secure experience.
- Contact details — name, email, phone number, and mailing address.
- Financial profile — loan amount requested, employment status, estimated income, and credit range.
- Identification — date of birth and partial Social Security Number, only when required by a lender to verify identity.
- Technical data — IP address, browser type, device identifiers, and anonymized analytics.
How We Use Your Information
| Purpose | Legal basis | Retained for |
|---|---|---|
| Matching with lenders | Contract performance | Up to 24 months |
| Fraud and identity checks | Legitimate interest | Up to 7 years |
| Analytics and site performance | Legitimate interest | Up to 14 months |
| Marketing communications | Consent (opt-in) | Until you opt out |
We do not sell your personal information to data brokers. We share it only with:
- Licensed partner lenders you ask us to contact.
- Service providers bound by confidentiality agreements (hosting, analytics, fraud prevention).
- Regulators or courts when required by law.
Your Rights
Depending on your state of residence, you may have the right to:
- Access the personal information we hold about you.
- Request correction or deletion of inaccurate data.
- Opt out of the sale or sharing of personal information (see Opt-Out).
- File a complaint with your state Attorney General or the Consumer Financial Protection Bureau.
California residents. The California Consumer Privacy Act (CCPA) gives you specific rights, including the right to know what information we collect and to request deletion. Submit your request through our CCPA form or email
[email protected].
Data Security
We use TLS encryption in transit, encrypted storage at rest, and limit employee access to personal data on a need-to-know basis. Despite reasonable safeguards, no system is 100% secure — if we become aware of a breach, we will notify affected users as required by law.
Contact
Privacy questions can be sent to [email protected]. We aim to respond within 30 days.