1. Introduction
BenefitMax, LLC ("BenefitMax," "we," "us," or "our") operates the BenefitMax platform and related services (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Account Information
When you create an account, we collect:
- Name and email address
- Company/organization name
- Account credentials (managed securely by our authentication provider)
- Billing information (processed securely by Stripe)
2.2 Documents and Content
When you use our document management features, we store:
- Documents you upload to your Library
- Documents imported from Google Drive (with your authorization)
- AI-generated summaries and analysis of your documents
- Chat conversations with MAX (our AI assistant)
2.3 Usage Information
We automatically collect:
- Device information (browser type, operating system)
- IP address and approximate location
- Pages visited and features used
- Date and time of access
3. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service
- Process your subscription and payments
- Provide AI-powered document analysis and chat features
- Send you service-related communications
- Respond to your inquiries and support requests
- Analyze usage patterns to improve the Service
- Detect and prevent fraud or abuse
- Comply with legal obligations
4. Third-Party Services
We use the following third-party services to operate our platform:
- Clerk - Authentication and user management
- Supabase - Database and secure file storage
- Stripe - Payment processing (we do not store your full payment card details)
- OpenAI and Anthropic - AI-powered features (MAX Chat, document analysis)
- Google - Google Drive integration (read-only access when you authorize)
- Google Analytics - Usage analytics
- Resend - Email delivery
- Vercel - Hosting infrastructure
Each of these providers has their own privacy policies governing their use of your data.
5. Google Drive Integration
When you use our Google Drive import feature:
- We request read-only access to your Google Drive
- We only access files you explicitly select through Google's file picker
- Selected files are copied to your BenefitMax Library
- We do not modify or delete files in your Google Drive
- You can revoke access at any time through your Google Account settings
6. AI Processing
When you use MAX Chat or document analysis features:
- Your documents and queries are processed by AI providers (OpenAI, Anthropic)
- AI providers may process this data according to their respective privacy policies
- We do not use your documents to train AI models
- Chat history and analysis results are stored in your account
7. Data Sharing
We do not sell your personal information. We may share your information:
- With service providers who assist in operating our platform
- Within your organization (between brokers, staff, and clients as configured)
- To comply with legal obligations or respond to lawful requests
- To protect our rights, privacy, safety, or property
- In connection with a merger, acquisition, or sale of assets
8. Data Security
We implement industry-standard security measures including:
- Encryption of data in transit (TLS/SSL)
- Encryption of stored documents
- Secure authentication through Clerk
- Regular security assessments
- Access controls and audit logging
While we strive to protect your data, no method of transmission or storage is 100% secure.
9. Data Retention
We retain your data as follows:
- Active accounts: Data is retained while your account is active
- After account deletion: Data is deleted within 90 days
- Billing records: Retained as required by law (typically 7 years)
10. Your Rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you
- Correct inaccurate information
- Delete your account and associated data
- Export your data in a portable format
- Opt out of certain data processing
To exercise these rights, contact us at privacy@benefitmax.ai.
11. California Privacy Rights (CCPA)
California residents have additional rights under the CCPA, including:
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt out of the sale of personal information (we do not sell your data)
- Right to non-discrimination for exercising CCPA rights
12. Children's Privacy
The Service is not intended for users under 18 years of age. We do not knowingly collect personal information from children under 18. If we learn we have collected such information, we will delete it promptly.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.
14. Contact Us
If you have questions about this Privacy Policy, please contact us at:
Email: privacy@benefitmax.ai
Website: https://benefitmax.ai