Privacy Policy
Last Updated: December 13, 2025 (Version 4.5)
At I-InsureCRM, we take your privacy seriously. This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you use our Customer Relationship Management (CRM) platform.
By using I-InsureCRM, you agree to the collection and use of information in accordance with this policy.
I-InsureCRM is designed to store certain types of sensitive personal information necessary for insurance operations. This includes:
⚠️ CRITICAL SECURITY MEASURES:
🔒 PCI DSS COMPLIANCE:
While payment card data fields exist in the CRM for recording first payment methods, I-InsureCRM does not process live payment transactions. All actual payment processing is handled by Stripe, a PCI DSS Level 1 certified payment processor. You are responsible for ensuring your collection and storage of payment card data complies with PCI DSS requirements and applicable payment card industry standards.
🏥 HIPAA NOTICE FOR HEALTH INSURANCE:
If you handle health insurance leads and store Protected Health Information (PHI), you are solely responsible for HIPAA compliance. While I-InsureCRM implements security measures, it is not a HIPAA-covered entity. You must implement appropriate safeguards, obtain Business Associate Agreements (BAAs) where necessary, and ensure your workflows meet HIPAA standards. We strongly recommend consulting with a healthcare compliance attorney.
When you choose to connect your Google account to I-InsureCRM (available on Growth Pro and Elite plans), we access the following Google services with your explicit permission:
If you integrate your DocuSeal account (Elite subscription), we will collect and process your DocuSeal API key. We will send lead contact information (name, email) to DocuSeal to facilitate document signing requests.
We use the information we collect for the following purposes:
I-InsureCRM's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
We do not sell, rent, or trade your personal information. We may share your information only in the following limited circumstances:
✓ We do not share your Google user data (Gmail, Calendar, Drive) with any third parties except as explicitly stated in the Google API Services User Data Policy compliance section above.
You have the right to request deletion of your data at any time:
We implement industry-standard security measures to protect your information:
⚠️ Important Security Notice
While we implement strong security measures and industry best practices, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials.
Depending on your location, you may have the following rights:
To exercise any of these rights, please contact us at carpa.solutions@gmail.com.
I-InsureCRM is committed to compliance with applicable data protection laws, including:
I-InsureCRM is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child without parental consent, we will take steps to delete that information.
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make material changes, we will notify you by email or through a prominent notice in the application.
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: carpa.solutions@gmail.com
Company: Carpa Solutions LLC
Address: 2643 SW 187 Ave, Hollywood, Florida, 33029