At Fuentes & Associates Corp., led by Joseph Fuentes, LUTCF, we are dedicated to helping clients achieve financial freedom through personalized financial planning, group health plans, and business solutions like 401(k) and profit-sharing plans. With a commitment to trust, integrity, and responsibility, we guide you toward a secure financial future. This Privacy Policy outlines how we collect, use, disclose, store, and protect your personal information when you visit our website, request financial consultations, or engage our insurance services. We safeguard your sensitive data, including health-related information, in compliance with the General Data Protection Regulation (GDPR) for EU residents, the California Consumer Privacy Act (CCPA) for California residents, the Health Insurance Portability and Accountability Act (HIPAA) for health data, and other applicable regulations.
1. Information We Collect
We collect information to provide tailored financial solutions, ensuring your path to financial stability is clear and achievable, whether planning for retirement or securing group health plans. The types of information we collect include:
1.1 Personal Information You Provide
- Contact Details: Name, email address, phone number, and address provided when requesting financial consultations, insurance quotes, or business services.
- Financial and Health Data: Income, assets, health information (for group health plans), or retirement goals shared during financial planning sessions or insurance applications, handled with strict HIPAA compliance.
- Payment Information: Credit/debit card details or billing information processed through secure third-party payment gateways for services like 401(k) setup or insurance premiums.
- Communication Records: Data from contact forms, emails, phone calls, or client feedback surveys, enabling us to provide personalized financial coaching.
1.2 Automatically Collected Information
- Technical Data: IP address, browser type, device information, operating system, and time zone, collected via cookies or similar technologies to optimize your website experience.
- Usage Data: Pages visited (e.g., Financial Planning or Business Services sections), time spent on the site, and referral sources.
- Location Data: Approximate location based on your IP address to tailor services and comply with regional regulations.
1.3 Information from Third Parties
We may receive information from trusted partners, such as:
- Analytics providers to track website performance and refine client engagement strategies.
- Payment processors to verify transactions securely.
- Insurance providers or financial platforms to process group health plans or retirement accounts, with HIPAA-compliant safeguards.
2. How We Use Your Information
We use your information to empower you with financial independence, delivering personalized planning and insurance solutions that align with your goals. Our uses include:
- Financial Planning: To assess your financial situation, recommend strategies, and implement plans for retirement, 401(k), or group health insurance ().
- Client Support: To respond to inquiries, provide progress reports, and offer expert guidance on financial decisions.
- Business Operations: To process payments, manage client records, and coordinate with insurance or financial partners.
- Website Optimization: To analyze usage data and enhance our website’s functionality for a seamless user experience.
- Marketing: To share updates on financial planning tips, insurance options, or business services, with your consent where required.
- Legal Compliance: To meet obligations under tax, consumer protection, HIPAA, or other financial regulations.
3. Legal Basis for Processing (GDPR)
For clients in the European Economic Area (EEA), we process personal data based on:
- Contractual Necessity: To fulfill financial planning or insurance agreements.
- Consent: For marketing communications or non-essential cookies, with clear opt-in mechanisms.
- Legitimate Interests: For improving our services, analyzing financial outcomes, or ensuring operational efficiency, provided your rights are not overridden.
- Legal Obligation: To comply with regulations, such as HIPAA for health data or tax reporting.
4. How We Share Your Information
We do not sell your personal information. We may share data with trusted partners to deliver our financial and insurance services, including:
- Service Providers: Third-party vendors for payment processing, analytics, or client management tools.
- Insurance and Financial Partners: Insurers or financial institutions for processing group health plans or retirement accounts, with HIPAA-compliant safeguards.
- Legal Authorities: When required by law, court order, or government request (e.g., for tax or regulatory purposes).
- Business Transfers: In the event of a merger or acquisition, your data may be transferred to the acquiring entity.
All partners are contractually obligated to protect your data and use it solely for the specified purposes, with additional safeguards for health data under HIPAA.
5. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience on our website, ensuring seamless access to our financial planning resources. Cookies may include:
- Essential Cookies: For website functionality, such as session management or contact form submissions.
- Analytical Cookies: To monitor site performance and optimize client engagement strategies.
- Marketing Cookies: To deliver tailored promotions about our services, with your consent as required by Microsoft Ads.
You can manage cookie preferences via your browser settings or our cookie consent tool (if implemented), ensuring compliance with GDPR and CCPA.
6. Data Security
We prioritize your data security with measures reflecting our commitment to trust and integrity:
- SSL/TLS encryption for secure data transmission.
- Restricted access controls and secure servers, with HIPAA-compliant safeguards for health data.
- Regular security audits to protect your information, ensuring the same diligence we apply to your financial planning.
While we strive for maximum security, no system is entirely foolproof. Contact us immediately if you suspect a data breach.
7. Data Retention
We retain your information only as long as necessary to provide our financial and insurance services or meet legal requirements:
- Client and Financial Data: Kept for the duration of our relationship and up to 7 years post-engagement for record-keeping and follow-up support, per IRS and HIPAA requirements.
- Payment Data: Retained for up to 7 years for tax and accounting purposes.
- Analytics Data: Typically stored for 24 months, unless anonymized.
8. Your Rights
You have rights to control your personal data, ensuring we respect your privacy while guiding you toward financial freedom:
- Access: Request a copy of your personal data.
- Rectification: Correct inaccurate or incomplete information.
- Deletion: Request data deletion, subject to legal obligations (e.g., tax or HIPAA records).
- Restriction: Limit how we process your data.
- Portability: Receive your data in a structured, machine-readable format.
- Objection: Object to processing for marketing or legitimate interests.
- Withdraw Consent: Revoke consent for non-essential processing, such as marketing emails.
For California residents (CCPA), you also have the right to:
- Know what personal information we collect, use, or disclose.
- Opt out of data sales (we do not sell your data).
- Non-discrimination for exercising your rights.
Contact us via email or phone to exercise your rights. We’ll respond within 30 days (or 45 days for CCPA requests), ensuring compliance with Microsoft Ads’ transparency standards.
9. International Data Transfers
Your data may be transferred outside your region, such as to the United States, where our service providers operate. We use safeguards like Standard Contractual Clauses (SCCs) for EEA clients to ensure GDPR compliance, with additional HIPAA protections for health data.
10. Third-Party Services
Our website may integrate with third-party services (e.g., payment processors, analytics tools for Microsoft Ads campaigns, or insurance providers). We are not responsible for their privacy practices. Please review their policies before sharing personal information.
11. Children’s Privacy
Our financial and insurance services are not directed to individuals under 16, and we do not knowingly collect their data. If we discover such data has been collected without parental consent, we will delete it promptly. Parents/guardians can contact us with concerns.
12. Changes to This Privacy Policy
We may update this policy to reflect changes in our practices or legal requirements. Significant updates will be posted on our website or communicated directly to clients. The “Last Updated” date indicates the latest version.
13. Contact Us
For questions, concerns, or to exercise your data rights, reach out to our dedicated team:
Fuentes & Associates Corp.
Email: info@jfuentesinsurance.com
For GDPR, CCPA, and HIPAA purposes, our Data Protection Officer is reachable at the same email address.