FiduciarySignal
Book a demo ← Back to app

Privacy Policy

Last updated: August 5, 2026

This Privacy Policy explains how D & F Research, LLC, a Florida limited liability company (the “Company,” “we,” or “us”), handles information across the two services it operates: FiduciarySignal (retirement-plan research, at fiduciarysignal.com) and Benefit Signals (group-insurance renewal prospecting, at benefit-signals.com). We refer to them together as the “Services.” The two are separate products with separate subscriptions, but they are operated by the same company and follow the same data practices, so this one policy covers both. You are reading it on FiduciarySignal.

1. Information we collect

  • Account information. When you create an account we collect a username, your email address, and a password. Passwords are stored only as a salted cryptographic hash — we cannot see or recover your actual password.
  • Authentication metadata. When you sign in, we create a server-side session for each device and record technical metadata tied to it — a session/device identifier, sign-in and last-seen timestamps, and the IP address and browser user-agent of the request. We process this to keep you signed in, enforce a per-account device limit, and detect suspicious sign-in activity.
  • Billing information. If you subscribe or make a purchase, our payment processor (Stripe) collects and processes your payment details directly. We do not store full card numbers; we retain a processor customer and subscription identifier, your plan and billing status, and a record of downloads and delivered items used to apply plan limits and, on FiduciarySignal, per-item charges.
  • Professional identifiers. On FiduciarySignal you may provide a FINRA Central Registration Depository (CRD) number to confirm eligibility. A CRD number is public professional-registration information. Benefit Signals does not ask for a CRD number.
  • Free-signal requests. If you request a free signal on FiduciarySignal without creating an account, we collect the name, email address, and ZIP code you enter, a record of the signal we showed you, and the campaign parameters of the ad or page that brought you there. We keep this lead record whether or not you later create an account.
  • Business and plan data we display. The Services display information about employer-sponsored retirement and group-insurance plans, the businesses that sponsor them, and the professionals associated with those businesses. Some of this information identifies individual business professionals — for example, the person who signed a plan’s filing, or a company’s benefits decision-makers — who did not themselves sign up for the Services. We process it about them in a business capacity, not as consumers. Where this includes contact details licensed from a third party, see “Business-contact data” (section 5) for the source and how to request removal.

We do not collect precise location or your device’s address book. The only third-party advertising technology we use is Meta’s, described in sections 3 and 3a: a consent-gated pixel, server measurement events, and hashed-list audience matching — and you can opt out of all advertising data sharing at any time (section 3a).

2. How we use your information

  • To create and maintain your account and your signed-in session.
  • To send account emails, such as password-reset links you request.
  • To email you the free-signal link you requested and — if you agreed on the request form — up to 10 follow-up emails over about 17 days about FiduciarySignal and its free trial, delivered through our email provider (Resend). Every such email contains an unsubscribe link; one click stops all marketing email from us to that address. The series also ends on its own after about 17 days, and stops early when you start a trial with the same email address.
  • To process subscriptions and purchases, apply plan limits, and—on FiduciarySignal—charge for any pay-as-you-go items.
  • To operate the Services’ research features and generate reports.
  • To respond to support requests you send to us.

We do not sell, rent, or trade your account information, and we do not share it with data brokers. The advertising-related exceptions are the Meta measurement sharing and hashed-list audience matching described in sections 3 and 3a — the browser pixel runs only if you accept it, and you can stop all of it at any time. We do not sell the business-contact data described in section 5 as a marketing list.

3. Cookies, local storage, and analytics

When you sign in, we set a session cookie. It is HttpOnly, Secure, and uses SameSite=Lax, and it expires after 30 days of inactivity or when you sign out.

First-party analytics. We run our own analytics to understand how the Services are used. This stores a random, pseudonymous visitor identifier in your browser’s local storage, mirrored to a first-party fs_vid cookie that lasts up to about 400 days. Tied to that identifier we record the pages you view, the referring site, campaign codes and advertising click identifiers present in the page address (for example utm_ parameters or a fbclid), and coarse device categories (browser family, device type). If you create an account, this pre-signup history is linked to your account so we can understand which channels bring us customers. Raw page-level events are deleted after about 400 days; aggregate counts are kept. This analytics data stays with us — it is never sold and never shared with third parties. You may object at any time via “Your privacy choices” (section 3a); objection stops future collection on that device and deletes our analytics identifiers there, but does not erase previously collected records, which follow the retention above.

Consent preferences. Your advertising choice itself is stored in a first-party fs_consent cookie (and a local-storage copy) for up to 12 months, and an analytics objection in a fs_an_optout cookie — these exist so we can remember and honor your choices. Our service worker may also cache the application shell and public reference content on your device to enable offline use; this cache contains no personal information.

3a. Meta advertising: measurement, audiences, and your choices

We advertise the Services on Meta platforms and measure that advertising two ways. They work differently, so we state them plainly:

  • Browser pixel — only if you accept. Where enabled, our pages ask before loading the Meta (Facebook) pixel. If you accept, the pixel loads, sets Meta cookies (_fbp, and _fbc after an ad click), and reports your page view and browser information to Meta. If you do not accept, the pixel never loads — there is nothing to opt out of in your browser. We configure the pixel to report page views only, with Meta’s automatic event collection turned off.
  • Server conversion events — until you opt out. Where enabled, our servers send Meta a record of key account events — registration, account approval, trial start, and first payment — together with a one-way hashed version of your email address, so we can measure which ads lead to customers. If you request a free signal through one of our ad landing pages, the accepted request is reported the same way — as a one-way hashed version of the email address and name you entered, never the readable values, plus a one-way hashed reference number for the request itself. If that visit came from a Meta ad, we also send the Meta advertising cookies already set in your browser (_fbc, which identifies the ad click, and _fbp, which identifies the browser). Unlike the email and name, those two are sent as they are rather than hashed, because Meta issued them and already knows their values. These may be sent unless and until you opt out; the same declines described below (including Global Privacy Control) stop them.

Audience matching (Custom Audiences). Separately from measurement, we may target our advertising using contact lists we already hold. Where enabled, we upload to Meta one-way hashed contact details (email address and name, and — where we have them — phone number, city, state, and ZIP code) from lists collected directly by us or by businesses under common ownership with ours, such as our founders’ 401(k) appointment-scheduling service, whose clients and prospective clients may be shown FiduciarySignal ads. Meta uses those hashes only to match accounts so our ads can be shown to the people on a list, to exclude people from our ads (for example, existing customers and recent leads), and to build “lookalike” audiences of people with similar characteristics; the readable values are not shared, and Meta processes the uploaded identifiers under its Customer List Custom Audience terms, which restrict how they may be used and shared. If you are on such a list, email support@fiduciarysignal.com — or use the opt-outs below from a signed-in or otherwise identifiable visit — and we will exclude your record from all future uploads and remove it, using Meta’s removal tools, from the customer-list audiences we control. We can act on a choice only when we can connect it to your contact record; an anonymous browser signal alone cannot be matched to a list entry.

Opting out. Declining the banner, using the “Your Privacy Choices” control on our pages, or browsing with the Global Privacy Control signal (which we honor automatically as an opt-out) stops all of the above — including, where your contact record can be identified, inclusion in future audience-list uploads. An opt-out recorded for your account applies across both FiduciarySignal and Benefit Signals — one choice covers the whole company. Opting out stops future sharing; it cannot retract data already transmitted to Meta, whose handling is described in Meta’s privacy policy.

We do not currently share conversion data with any other advertising platform. If we enable similar sharing with another platform (for example LinkedIn), we will update this policy first.

4. Where our displayed data comes from

The plan and business information the Services display is compiled from public records and licensed third-party data, not created by us. Our sources include:

  • the U.S. Department of Labor EFAST2 system — public Form 5500 filings and their Schedule A (insurance) schedules;
  • public U.S. Small Business Administration loan data;
  • a third-party job-posting data provider; and
  • business-contact data licensed from a third-party data provider (see section 5).

The Department of Labor and the Small Business Administration are publishers of the public data we display, not recipients of your information.

5. Business-contact data, and how to request removal

To help our users reach the right person at a business, the Services display business-contact details — names, business email addresses, phone numbers, and job titles of professionals associated with the plans and businesses in our data. This information is licensed from a third-party data provider and concerns people in their business capacity; those individuals did not create an account with us. We license this data to display it inside the Services; we do not sell it as a standalone marketing list.

If you are a business professional and want your contact details suppressed from the Services, email support@fiduciarysignal.com and we will act on your request as required by applicable law. Because this data is re-licensed and periodically refreshed from our provider, we cannot guarantee that a record will never reappear from the provider’s source in a later refresh; tell us and we will address it each time you do.

6. Third-party services

  • Stripe (privacy policy) — processes subscription and one-time payments and handles your card details directly.
  • Resend (privacy policy) — delivers account emails such as password-reset links.
  • Render (privacy policy) — hosts the Services.
  • Sentry (privacy policy) — collects error and diagnostic data to keep the Services reliable.
  • Meta (privacy policy) — advertising measurement and audience matching as described in section 3a: the browser pixel only with your consent, server conversion events until you opt out, and hashed contact lists used to show, exclude, or model similar audiences for our ads.

7. Data retention

We retain your account information for as long as your account is active, and we retain billing records for as long as required for tax, accounting, and legal purposes. Password-reset links expire 30 minutes after they are issued and can be used only once. You may request deletion of your account at any time (see section 10).

8. Children

The Services are business-to-business tools intended for professionals — retirement-plan advisors, plan sponsors, and ERISA professionals on FiduciarySignal, and benefits brokers, insurance agents, and group-insurance agents on Benefit Signals. They are not directed to individuals under 18, and we do not knowingly collect personal information from children. If you believe a child has provided us with information, please contact us and we will delete it.

9. Your rights

California residents (CCPA/CPRA). You have the right to know what personal information we have collected about you, to request that we correct or delete it, and to not be discriminated against for exercising these rights. We do not sell personal information. Where our Meta advertising measurement or audience matching is enabled (section 3a), the disclosures to Meta may constitute “sharing” for cross-context behavioral advertising under California law; you can opt out at any time by declining the cookie banner, using the “Your Privacy Choices” control on our pages, or enabling the Global Privacy Control signal in your browser, which we honor automatically. For hashed-list audience matching, we act on requests we can connect to your contact record, as described in section 3a.

EEA, UK, and Swiss residents (GDPR/UK GDPR). You have the right to access, correct, delete, restrict, or port your personal data, and to object to processing. The lawful bases for processing your information are performance of our contract with you (operating your account and any subscription), your consent where applicable, and our legitimate interest in operating, securing, and improving the Services and in providing business-to-business research about businesses and the professionals associated with them.

9a. Your privacy choices on this device

Manage your advertising choice and the first-party analytics objection for this browser here:

These controls are per browser and per device. For account-level requests (access, correction, deletion), see section 10 below.

10. How to exercise your rights / contact us

To request access to or deletion of your data, to request removal of business-contact details, or for any privacy question, email support@fiduciarysignal.com. We will respond within 30 days.

11. Security

We use HTTPS for all traffic, hash and sign sign-in tokens with a server-side secret, and apply standard hardening to session cookies. No system is perfectly secure; if we become aware of a breach affecting your information, we will notify you in accordance with applicable law.

12. Changes to this policy

We may update this Privacy Policy from time to time. Material changes will be indicated by updating the “Last updated” date above. Continued use of the Services after a change indicates acceptance of the updated policy.

App Terms of Service Contact

Advertising cookies

We’d like to use the Meta (Facebook) pixel to measure how well our advertising works. It sets cookies and shares your visit activity on FiduciarySignal with Meta. It stays off unless you accept. Privacy Policy

Your privacy choices

Advertising (Meta)

Status:

Accepting loads the Meta pixel in your browser. Declining (or the Global Privacy Control signal) also stops the server-side sharing of account events with ad platforms, across both FiduciarySignal and Benefit Signals.

Your browser is sending the Global Privacy Control signal, so advertising is declined and can’t be turned on here while that signal is active.

First-party analytics

We measure how these pages are used with our own pseudonymous cookie — nothing is sold or shared with third parties. You can object; that stops future collection on this device and deletes our analytics identifiers here (it doesn’t erase past data, which follows the retention policy in our Privacy Policy).