Phoenix Financial · Broker Portal and Manage Portal

Privacy Policy

Updated September 17, 2026

Scope and restricted access

This policy applies only to the Phoenix Financial Broker Portal and Manage Portal (the Systems). These Phoenix Financial systems are accessible only to employees expressly authorized by Phoenix for assigned business duties. Employment, possession of a link, or successful authentication alone does not grant permission to use a System or access any particular information.

Access logging and security monitoring

Access and attempted access to these Systems are logged and subject to security monitoring. Server-side records cover requests to login pages, legal notices, authentication endpoints, APIs and protected application files, including denied requests and errors. Records include timestamps, the System, request identifiers, request method and resource category, network peer address, outcome and response status, and verified account and tenant identifiers when available. Security events are classified for monitoring and investigation. Monitoring does not mean that a person watches every session in real time.

Identity and session information

The Systems process work-account identity, assigned roles and authentication results to enforce authorization. Necessary secure session cookies and server-side session information support sign-in, access controls and sign-out. Access logs exclude passwords, access tokens, session cookies, authentication codes, query strings and request bodies. Do not place confidential information in URLs. Client information accessed through these Systems remains subject to Phoenix confidentiality and data-handling requirements.

Purpose and permitted review

Phoenix uses these records to protect its Systems and information, control access, detect and investigate unauthorized activity, support incident response, enforce workplace and security policies, and meet applicable legal and regulatory obligations. Authorized security, IT, compliance, legal and management personnel may review relevant records on a need-to-know basis. Service providers assisting Phoenix may process information under applicable safeguards; disclosure to regulators, law enforcement or other parties may occur when required or permitted by law.

Workplace privacy and safeguards

These are monitored business Systems. To the extent permitted by applicable law, users should have no expectation of personal privacy in their access to or use of these Systems. This notice does not authorize unrestricted surveillance or waive rights that cannot lawfully be waived. Phoenix restricts access to security records and retains information as needed for legitimate business, security, legal and regulatory purposes, including applicable preservation obligations. Security logging is mandatory for use of the Systems and is not an optional analytics feature.

Questions and updates

Direct privacy questions, requests concerning your information, and suspected misuse to your Phoenix supervisor or the designated Phoenix IT, security or compliance contact. Phoenix may update this policy and its controls, subject to applicable law and required notice. Phoenix reserves all rights to its Systems and information, subject to applicable law. All rights reserved.