Privacy Policy
Mortgage Pipeline Machine ("MPM", "we", "us", "our") operates this website and provides the services described in this policy. This policy explains what data we collect, why we collect it, who we share it with, and the rights you have over it. It is written in plain language because it is meant to be read.
1. Data we collect
From you (the broker, our customer)
- Account data: name, email, phone, brokerage name, city, province — collected during signup and saved in your broker profile.
- Authentication data: email + hashed password, or Google OAuth identity — stored by Supabase (our auth provider).
- Deployment data: your Google Sheet ID, n8n domain, webhook URLs, rate-lock threshold — used to configure your private dashboard.
- Activity logs: page views inside the app, sign-in events, configuration changes — for support and audit.
- Payment data: handled entirely by Stripe — we never see your card details. We receive only the metadata Stripe sends us (charge confirmations, invoice IDs).
From your clients (the mortgage applicants)
When you deploy MPM, you connect it to a Google Sheet that you own. Your clients' data — names, emails, phone numbers, loan amounts, property addresses, employment details — lives in your Google Sheet, in your Google Drive. That sheet is the only place this data is kept. We do not keep a copy of it.
Some of it does travel through our servers, and we would rather tell you exactly how than leave you with a claim that sounds simpler than the truth:
- Loading your dashboard. Your browser asks our service, which checks you are signed in and that the workspace you asked for is yours, then forwards the request to your own automation, which reads your sheet. The rows come back the same way. They are held only for the moment it takes to pass them on, and are never written to our storage.
- Importing an existing book. When you upload a CRM export, the file travels the same route to your automation, which saves the original to your Google Drive before reading a single row. This is the largest amount of client data that ever passes through us — an entire export rather than one record — and the same rule holds: passed on, never kept.
What we do keep is a record that something happened: which workspace, which action, when, and a one-way reference to the record involved. That reference is generated in a way that cannot be turned back into an email address, and is unique to your workspace, so it cannot be used to recognise the same person anywhere else. We do not keep names, addresses, loan amounts or any other client detail.
We never look at your clients' data unless you explicitly share it with us during a support session.
From visitors to this website
The public marketing side of this website — the homepage, the blog and its articles, the booking and thank-you pages, the free calculators and these legal pages — uses Google Analytics 4 to understand which pages are read and which links are used. Google Analytics sets its own cookies in your browser to do this.
What our implementation sends is deliberately limited to information about the page, never about a person we hold records for. It records the page path, and for articles the article's own identifier and the position of a link that was clicked. It does not send any borrower's name, email address, phone number, property address or loan details, and it does not send any brokerage or workspace identifier.
The signed-in product carries no analytics at all. The dashboard, brokerage workspaces, client and partner portals and settings pages load no analytics script, because a dashboard page title can contain a borrower's name and that is not information a marketing measurement tool should receive.
We use no advertising or social tracking pixels. Besides the Google Analytics cookies described above, the only other client-side storage is the Supabase session token, which keeps you signed in across page refreshes.
Whether a consent banner is required for this analytics in your jurisdiction is under review, and this policy will be updated when that review concludes. If you would prefer not to be measured, most browsers offer a do-not-track or cookie-blocking setting, and Google publishes a browser opt-out add-on.
2. How we use your data
- Run the service: provision and operate your dashboard, send transactional emails (welcome, password reset, deployment status), respond to support.
- Improve the product: aggregated, anonymized usage patterns help us prioritize what to build next.
- Comply with law: tax records, contractual records, anything legally required of a Canadian sole proprietor.
We do not use your data to train AI models. We do not sell your data to anyone. Ever.
3. Who we share data with (sub-processors)
To deliver the service, we rely on the following providers. Each is bound by their own privacy commitments — links go to their policies.
- Vercel — website and dashboard hosting, and the service that passes requests between your dashboard and your own automation. Your clients' data travels through here in transit and is not stored.
- Supabase — authentication, your broker profile, and the record of which actions were taken in your workspace. EU/US regions available; we pick the closest to you.
- Calendly — discovery and kickoff call booking.
- Stripe — payment processing.
- Google — Gmail (sending and OAuth), Google Sheets (your CRM) and Google Drive (your backups and your preserved imports). These connections are yours, held in your own automation.
- n8n Cloud — workflow execution for your deployment.
- Anthropic — the AI features on plans that include them. Used only for the specific request being made, and never to train a model.
This is why your dashboard reaches your Sheet through your own automation rather than us reading it directly: we could not read it directly even if we wanted to. It is also why you tell MPM which workbook to use — the ID you give us is an address, not permission.
4. Your rights
Under PIPEDA (Canada), GDPR (EU), and CCPA (California), you have the right to:
- Access any personal data we hold about you
- Correct inaccurate data
- Delete your account and associated data (right to be forgotten)
- Export your data in a portable format (JSON or CSV)
- Object to certain processing or withdraw consent
- Complain to your local data protection authority
To exercise any of these, email support@mortgagepipelinemachine.com with "Data Request" in the subject. We respond within 5 business days.
5. Data retention
- Active account: data retained for the life of your retainer.
- Cancelled account: profile and activity logs deleted within 30 days of cancellation. Your Google Sheet stays where it has always been — in your Drive, owned by you. We cannot delete it and we do not keep a copy, so cancelling MPM does not put your book of business at risk.
- Billing records: retained 7 years for Canadian tax compliance, then deleted.
6. Security
We follow industry baseline practices:
- All traffic over HTTPS (TLS 1.3, HSTS preloaded).
- Database encrypted at rest by Supabase. Row-level security limits each broker to their own data.
- Passwords hashed with bcrypt by Supabase Auth — never stored in plaintext.
- Service-role keys held only by MPM's operator, never embedded in client code.
- Sub-processor list above is the only third parties with any access.
No system is 100% secure. If we ever experience a breach affecting your data, we'll notify you within 72 hours per GDPR Article 33.
7. International transfers
Supabase, Cloudflare, Calendly, Stripe, Google, and n8n may process data in the US, EU, or Canada depending on region. By using MPM you consent to these cross-border transfers, which are covered by Standard Contractual Clauses where required.
8. Children
MPM is a B2B service for licensed mortgage brokers. We do not knowingly collect data from anyone under 18.
9. Changes to this policy
If we make a material change, we'll email all active customers at least 30 days before it takes effect. Non-material changes (typo fixes, clarifications) we just publish.
10. Contact
Mortgage Pipeline Machine · support@mortgagepipelinemachine.com