Privacy Policy

Effective date: October 6, 2026

This Privacy Policy explains how Provident Financial Group ("Provident," "we," "us") handles information in Provident Live Certificate (the "Service"), available at livecertificate.providentfgp.com and as an iOS app. The app is owned by Provident Design LLC and operated by Provident Financial Group. By using the Service you agree to the practices described here.

1. Information we collect

  • Business contact details — business name, contact name, email address, phone number and mailing address of insured clients.
  • Insurance and policy data supplied by our agency — carriers, policy numbers, coverage types, limits, effective, expiration and cancellation dates, and certificate of insurance documents (PDFs).
  • Certificate-holder information — name, email, phone number and mailing address of people or companies an insured shares a certificate with.
  • Consent records — whether and when you agreed to transactional alerts, SMS messages or marketing, and opt-out requests.
  • Device push token — if you use the iOS app and allow notifications, a token from Apple that lets us send alerts to your device, plus the device platform.
  • Usage and log data — sign-in events, notification delivery records, IP address, browser or device type, and error logs needed to operate and secure the Service.

We do not collect precise location, contacts, photos, health or financial account information. Biometric unlock (Face ID / Touch ID) is processed entirely on your device by Apple; we never receive biometric data.

2. How we use information

  • To display live certificates of insurance and current coverage status to insureds and the certificate holders they choose.
  • To send coverage-change notifications (such as a certificate being issued, a scheduled cancellation, cancellation, reinstatement, renewal or expiration) by email, SMS text message or push notification.
  • To send service communications, such as sign-in links, account invitations and responses to requests.
  • To secure the Service, prevent misuse, troubleshoot problems and comply with legal obligations.
  • To send optional marketing communications — only if you have opted in, and you can opt out at any time.

3. How we share information

We do not sell or rent personal information, and we do not share it for cross-context behavioral advertising. We share information only:

  • With service providers who process data on our behalf under contract: Supabase (hosting, database, authentication and file storage), Resend (email delivery), Twilio (SMS delivery), and Apple and Google (push notification delivery).
  • With insurance carriers and certificate holders as directed by the insured — for example, when an insured shares a live certificate or requests a certificate for a holder.
  • For legal reasons — to comply with law, legal process or regulatory requests, or to protect the rights, safety and property of Provident, our clients or others.
  • In a business transfer — in connection with a merger, acquisition or sale of assets, subject to this Policy.

Mobile numbers and SMS opt-in consent are never shared with third parties or affiliates for their marketing purposes.

4. Retention

We keep account, policy and certificate information for as long as the insured remains a Provident client and afterwards as needed to meet insurance-agency record-keeping, legal and dispute-resolution obligations. Notification and consent logs are kept to demonstrate compliance. Push tokens are deleted when they become invalid or when you delete your account. When information is no longer needed, we delete or de-identify it.

5. Security

We use encryption in transit (HTTPS/TLS), access controls that limit each user to their own records, private file storage with time-limited links, and logging of administrative actions. No method of transmission or storage is completely secure, but we work to protect your information and will notify you as required by law if a breach affects you.

6. Children

The Service is intended for businesses and is not directed to anyone under 18. We do not knowingly collect information from children. If you believe a child has provided us information, contact us and we will delete it.

7. Your choices

  • Email: use the unsubscribe link in any marketing email, or update your alert preferences on your live certificate page.
  • SMS: reply STOP to any text to opt out, or HELP for help. Message and data rates may apply.
  • Push notifications: turn them off at any time in your iPhone's Settings.
  • Delete your account and data: email info@providentfgp.com from the address on your account and we will delete your account and associated personal information, except records we must keep by law.

8. California privacy rights (CCPA/CPRA)

If you are a California resident, you have the right to:

  • Know the categories and specific pieces of personal information we collect, the sources, purposes and the categories of third parties we disclose it to (described above);
  • Request deletion of your personal information;
  • Request correction of inaccurate personal information;
  • Opt out of the sale or sharing of personal information — we do not sell or share personal information as those terms are defined;
  • Limit the use of sensitive personal information — we do not use sensitive personal information for purposes that require this right;
  • Not be discriminated against for exercising these rights.

To make a request, email info@providentfgp.com or call 866-964-6660. We will verify your identity by matching information on file, and you may use an authorized agent with written permission. We respond within 45 days.

9. Changes to this Policy

We may update this Policy from time to time. We will post the new version here with a new effective date and, for material changes, notify you by email or in the Service.

10. Contact us

Provident Financial Group
Email: info@providentfgp.com
Phone: 866-964-6660

See also our Terms of Use and Support page.