SecureFlow USA — Privacy & SMS Policy

Privacy & SMS Policy for SecureFlow USA

Built for American businesses that demand secure, compliant communication. This Privacy & SMS Policy explains how SecureFlow USA collects, uses, and protects your information—online and via A2P 10DLC text messaging.

Effective date: February 28, 2026 • United States Only

1. Introduction & Scope

SecureFlow USA ("SecureFlow USA", "we", "our", or "us") is committed to protecting your privacy and securing the data entrusted to us. This Privacy & SMS Policy describes how we collect, use, disclose, and safeguard information when you visit our websites, use our products and services, or interact with us via email, web forms, and SMS/text messaging programs in the United States.

This policy is designed to align with applicable U.S. privacy and communications standards, including but not limited to the Telephone Consumer Protection Act ("TCPA"), the CAN-SPAM Act, CTIA messaging principles and best practices, A2P 10DLC carrier requirements, and other relevant federal and state laws to the extent they apply to our services.

By accessing our website, submitting your information, or enrolling in any SecureFlow USA SMS/text messaging program, you agree to the terms of this Privacy & SMS Policy and any applicable Terms of Service or customer agreements.

2. Information We Collect

We collect information to provide secure, reliable, and compliant services. The categories of information we may collect include:

Contact & Account Data

Such as your name, business name, email address, phone number (including mobile phone number), mailing address, role, and authentication credentials when you create or manage an account or contact us.

Usage, Device & Log Data

Such as IP address, browser type, device identifiers, pages visited, referring URLs, date/time stamps, approximate location, and other technical data generated through cookies, logs, and similar technologies when you use our services.

Communications & SMS Data

Such as your communication preferences; email and SMS subscription status; content of messages you send to us; SMS delivery status; timestamps; and confirmation that you provided required consent to receive A2P 10DLC SMS from SecureFlow USA or our clients, where applicable.

Client & End-Customer Data

If you are a business customer using SecureFlow USA, we process the data you upload or route through our platform (which may include your end-customers' contact data, message content, and engagement data) as a processor/service provider, in accordance with your instructions and agreements.

Payment & Transaction Data

If you make purchases from SecureFlow USA, we may collect limited billing details, subscription details, and transaction history. Payment card information is typically processed directly by our PCI-compliant payment processors and not stored in full by SecureFlow USA.

3. How We Use Information

We use the information we collect for legitimate business purposes, including to operate our secure communications platform, comply with law, and support our customers.

  • To provide, operate, maintain, and improve SecureFlow USA products, services, and websites.
  • To authenticate users, secure accounts, and detect, prevent, or investigate fraud, abuse, or security incidents.
  • To send transactional, operational, and security-related communications, including alerts, confirmations, and service updates.
  • To provide customer support, respond to inquiries, and troubleshoot technical issues.
  • To analyze usage patterns, improve performance, and develop new features and services.
  • To comply with legal obligations, enforce our agreements, and protect the rights, property, and safety of SecureFlow USA, our users, and the public.

4. SMS/Text Messaging & A2P 10DLC Compliance

SecureFlow USA may offer one or more SMS/text messaging programs (each, a "Program") that deliver messages to your mobile phone number, including multi-factor authentication codes, security alerts, account notifications, and, where expressly permitted, informational or promotional messages.

4.1 Program Description & Message Types

  • Security & authentication messages (e.g., one-time passcodes, login alerts, suspicious activity notifications).
  • Service and account notifications (e.g., account changes, system status, billing or subscription notices).
  • Transactional and relationship-based communications related to services you or your organization have requested.
  • Informational or promotional messages only where you have provided the specific consent required for such marketing communications.

4.2 Consent to Receive SMS Messages

By providing your mobile phone number to SecureFlow USA (for example, through our website forms, account signup flows, or customer onboarding) and explicitly opting in where required, you: (1) represent that you are the subscriber or customary user of the phone number provided; (2) consent to receive SMS/text messages from SecureFlow USA (and, where applicable, our business customers who use our platform) at that number; and (3) understand that your consent to receive non-marketing and security-related messages is not a condition of purchase.

Where marketing SMS is offered, you will be presented with clear language describing the Program, message types, and frequency, along with a checkbox or similar mechanism requiring your express consent. You are not required to agree to receive marketing SMS as a condition of purchasing SecureFlow USA services.

4.3 Message Frequency

Message frequency will vary based on your interactions with SecureFlow USA and the specific Program in which you are enrolled. For example, you may receive SMS messages whenever you attempt to log in with multi-factor authentication enabled, when important account activity occurs, or in accordance with the frequency disclosed at the point of opt-in for any informational or promotional Program (e.g., up to several messages per month).

4.4 How to Opt Out (STOP Instructions)

You can opt out of a SecureFlow USA SMS Program at any time by replying STOP to any message you receive in that Program. After you send STOP, we may send you a final confirmation message to confirm that you have been unsubscribed from that specific Program. You will no longer receive SMS messages from that Program unless you opt in again.

Opting out of SMS does not affect your ability to receive emails, in-app notifications, or other communications related to your SecureFlow USA account, which may be managed separately via your account settings or by contacting us.

4.5 Help & Support (HELP Instructions)

For assistance with any SecureFlow USA SMS Program, you may reply HELP to any message you receive. You may also contact our support team directly at [email protected] or by using the contact methods listed at the end of this Policy.

4.6 Carrier & Fee Disclosures

Message and data rates may apply. You are responsible for any charges billed by your wireless carrier associated with SMS/text messaging, including message, data, and roaming rates, to the extent applicable by your plan.

Carriers are not liable for delayed or undelivered messages. Delivery of messages is subject to effective transmission from your network operator and is outside the control of SecureFlow USA. Availability of messaging may also be limited by your carrier or device capabilities.

4.7 SMS Data Use & Retention

We use information related to your SMS interactions—including your phone number, message content, timestamps, delivery status, and opt-in/opt-out history—to operate the Program, maintain records of required consent, comply with carrier and legal requirements, improve deliverability, troubleshoot issues, and protect the security and integrity of our services.

We do not sell your SMS consent status, opt-in data, or message content to third parties. We may share such data with service providers (such as SMS aggregators and carriers) solely as needed to deliver the Program, or as required by law, regulation, or legal process.

5. How We Protect Data

Security is central to SecureFlow USA. We implement technical and organizational measures designed to safeguard your data from unauthorized access, disclosure, alteration, and destruction.

  • Encryption in transit using modern TLS protocols and encryption at rest where appropriate.
  • Network segmentation, access controls, and least-privilege permissions for systems and staff.
  • Multi-factor authentication and hardened administrative access for internal systems.
  • Logging, monitoring, and alerting for suspicious or anomalous activity.
  • Vendor due diligence and security requirements for key service providers.
  • Internal policies, training, and incident response procedures designed to mitigate risk.

No system can be guaranteed 100% secure. However, SecureFlow USA designs its controls with a focus on U.S. enterprise expectations and industry-standard best practices for safeguarding sensitive communications data.

6. Cookies, Analytics & Tracking Technologies

SecureFlow USA uses cookies and similar technologies to provide core functionality, secure our services, and understand how our sites and products are used.

Essential Cookies

Used to enable core features such as login, session management, load balancing, and security controls. These cookies are generally required for services to function properly and cannot be turned off in our systems.

Analytics & Performance

Used to understand how visitors interact with our sites and applications, so we can improve performance, usability, and content. For example, we may use analytics tools to measure page views, session duration, and feature adoption trends.

Preferences & Marketing

Used, where permitted by law, to remember choices you make (such as language or region) and to help tailor content or measure the effectiveness of marketing campaigns. You may have additional choices depending on your browser, device, or jurisdiction.

You can typically manage cookies through your browser settings (for example, by blocking or deleting them). Note that disabling certain cookies may affect the availability and functionality of SecureFlow USA services.

7. Third-Party Services & Disclosures

We may share your information with carefully selected third parties in the following circumstances:

  • Service providers and vendors that perform services on our behalf, such as hosting, data storage, analytics, customer support, payment processing, email delivery, and SMS aggregation.
  • Telecommunications carriers and messaging partners solely as needed to route, deliver, or troubleshoot SMS and other communications.
  • Business partners or channel partners involved in providing or supporting SecureFlow USA solutions you have requested.
  • When required by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of SecureFlow USA, our users, or others.
  • In connection with a corporate transaction, such as a merger, acquisition, reorganization, or sale of assets, subject to appropriate confidentiality protections.

We do not sell your personal information or SMS consent data to third parties. Where we act as a processor/service provider for our business customers, we process personal data only pursuant to their instructions and agreements with us.

8. Data Retention

We retain personal information for as long as reasonably necessary to fulfill the purposes outlined in this Policy, including to provide services, comply with our legal obligations, resolve disputes, enforce agreements, and maintain appropriate business and financial records.

SMS consent and opt-out records, message logs, and related metadata may be retained in accordance with carrier, industry, and legal requirements, including to demonstrate compliance with A2P 10DLC rules, TCPA, and similar regulations. Where we process data on behalf of a business customer, our retention may also be governed by that customer's instructions and our underlying agreement.

Deletion & Anonymization

When data is no longer needed, we may delete it or de-identify/anonymize it so that it can no longer reasonably be used to identify you, subject to legal or contractual retention requirements.

9. Your Privacy Choices & Rights

Depending on your relationship with SecureFlow USA and your jurisdiction, you may have certain rights regarding your personal information.

  • Access & correction: You may request access to certain personal information we hold about you and request that we correct or update inaccurate or incomplete data.
  • Opt-out of marketing: You may opt out of marketing emails by using the unsubscribe link in those messages, and you may opt out of marketing SMS by replying STOP as described above.
  • Account settings: If you maintain an account with SecureFlow USA, you may update certain profile and preference information directly in your account dashboard.
  • Deletion & restriction: Where required by law, you may request that we delete certain personal information or restrict how it is used, subject to legal and contractual limitations.
  • Appeals & complaints: You may have the right to lodge a complaint with a relevant data protection authority. We encourage you to contact us first so we can address your concerns.
  • Authorized agents & verification: Where permitted by law, you may designate an authorized agent to exercise your rights, and we may take reasonable steps to verify your or your agent’s identity before fulfilling a request.

If we process your personal information on behalf of a business customer, we may direct you to contact that business directly to exercise your rights, in accordance with our role as a processor/service provider.

10. Children’s Privacy

SecureFlow USA services are intended for use by businesses and adult professionals, not children. We do not knowingly collect personal information directly from children under 13 years of age (or a higher age where required by applicable law) without appropriate parental or guardian consent.

If we learn that we have collected personal information from a child in violation of applicable law, we will take reasonable steps to delete such information as soon as practicable. If you believe a child has provided us with personal information, please contact us using the information in the Contact section below.

11. Changes to This Privacy & SMS Policy

We may update or revise this Privacy & SMS Policy from time to time to reflect changes in our practices, technologies, legal requirements, or for other operational reasons. When we make changes, we will update the "Effective date" at the top of this page and, where required by law, provide additional notice (such as by email or in-product messaging).

Your continued use of SecureFlow USA websites or services, or continued participation in any SMS Program, after an updated Policy is posted constitutes your acceptance of the revised Policy to the extent permitted by law.

Versioning

SecureFlow USA may maintain archived copies of prior versions of this Policy as part of our compliance and recordkeeping practices. Upon request, and where appropriate, we may provide you with additional details about substantive changes.

12. How to Contact SecureFlow USA

If you have questions about this Privacy & SMS Policy, our data practices, or your privacy rights, you can reach us using the details below.

SecureFlow USA

Email: usasecurflow.com

Mailing address: [Insert SecureFlow USA mailing address here]

Support & SMS HELP: Reply HELP to any SecureFlow USA SMS you receive or contact us at the email address above.

When you contact us, please avoid sending sensitive information (such as payment card data or passwords) via email or SMS.

SecureFlow USA

Enterprise-grade secure messaging and compliance, built in America for American businesses. Experience trust, innovation, and transparency with SecureFlow USA.

Contact

Mailing Address: [Insert Address Here]

By providing your number you agree to receive SMS from SecureFlow USA. Reply HELP for help, STOP to opt out. Message & data rates may apply.

©

©

©