Privacy Policy

My Credit Action ("MCAT")

Table of Contents

  1. Introduction & User Consent
  2. IScope & Applicability
  3. Definitions
  4. Legal Basis for Processing & Consent
  5. Information We Collect
  6. How We Use Your Information
  7. Cookies & Tracking Technologies
  8. Your Rights & Choices
  9. Sharing & Disclosure of Your Information
  10. Data Retention
  11. Children’s Privacy
  12. Data Security
  13. Changes to This Privacy Policy
  14. Contact Information
  15. Jurisdictional Disclosures & State Privacy Rights
  1. Introduction & User Consent

    Welcome to My Credit Action (“MCAT”, “MCA”, “we”, “us”, or “our”). We are dedicated to protecting your privacy and providing a secure environment for managing your credit through our AI-driven services. This Privacy Policy outlines how we collect, use, disclose, and safeguard your information when you access our website (https://mycreditaction.com), mobile applications, and any related services (collectively, the “Services”).

    User Consent Upon Registration

    When you sign up for our Services, you confirm that you have read, understood, and voluntarily agree to be bound by this Privacy Policy and our Terms & Conditions. Your registration constitutes express consent to our practices regarding the collection, processing, and use of your information as described herein. If you do not agree with these terms, please refrain from using our Services.

  2. Scope & Applicability

    This policy applies to personal information collected in connection with our Services, including:

    1. Information collected on our website and mobile applications.
    2. Data gathered through electronic communications such as email, text messages, and push notifications.
    3. Information obtained via embedded links or third-party features integrated with our Services.

    Exclusions:

    This policy does not cover information collected:

    1. Offline or through channels that are not operated by MCAT.
    2. By third parties or external websites/apps over which we have no control.
  3. Definitions

    For clarity, the following terms are defined as follows:

    • Personal Information: Data that identifies or can reasonably be linked to you (e.g., your name, email address, financial information).
    • Processing: Any operation performed on Personal Information, such as collection, storage, usage, transfer, or deletion.
    • Service Providers: Third- party vendors that assist us by processing data (e.g., hosting providers, payment processors, analytics companies).
    • Cookies: Small text files stored on your device used to recognize you and track your usage of our Services.
    • Sensitive Personal Data: Information requiring enhanced protection (e.g., Social Security numbers, precise geolocation data).
  4. Legal Basis for Processing & Consent

    In accordance with relevant data protection laws (such as GDPR, CCPA, etc.), we process your Personal Information only when one or more of the following legal bases applies:

    1. Consent: By signing up and using our Services, you have given explicit consent for the processing of your data as described in this policy.
    2. Contractual Necessity: Processing is necessary to provide the Services you have requested.
    3. Legal Obligations: We process data to comply with applicable laws and regulatory requirements.
    4. Legitimate Interests: In some cases, processing is based on our legitimate interests, provided these are not overridden by your rights and interests.

    You have the right to withdraw your consent at any time, and instructions for doing so are provided in the “Your Rights & Choices” section of our policy.

  5. Information We Collect

    We collect information through various methods to deliver, secure, and improve our Services. This information is gathered in the following ways:

    Information You Provide Directly

    When you interact with our Services, you may voluntarily provide us with:

    • Account & Profile Data:

      • Your full name, email address, postal address, and phone number
      • Login credentials such as passwords and authentication tokens
    • Financial Data:

      • Details including credit score, credit history, income, outstanding debts, and financial goals
    • Payment Data:

      • Information related to credit/debit card numbers, security codes, and billing addresses
        • Note: Payment data is processed and stored by our PCI-compliant payment partners, ensuring a high level of security.
    • Communications

      • Records of inquiries, support requests, survey responses, feedback, and other correspondence

    5.2 Information Collected Automatically

    To help enhance your experience and maintain secure access to our Services, we automatically gather:

    • Usage & Device Data:

      • Your IP address, browser type and version, operating system, and unique device identifiers
      • Details on pages viewed, timestamps, and referring URLs
    • Location Data:

      • Approximate location data derived from your IP address or device settings
    • Cookies & Tracking Technologies:

      • Data collected via cookies, web beacons, local/session storage, software development kits (SDKs), and similar tools

    5.3 Information Collected from Third Parties

    We may also receive additional data about you from trusted external sources, including:

    • Credit Bureaus & Financial Partners:

      • Credit reports, scores, and related financial records
    • Analytics & Advertising Partners:

      • Demographic data, interests, and behavioral information to help tailor our offerings
    • Public & Marketing Database:

      • Publicly available information to enrich our understanding of market trends
  6. How We Use Your Information

    We use your data to support and enhance our Services while ensuring transparency in our operations. Our purposes include:

    • Service Delivery & Personalization:

      • Creating, managing, and securing your account
      • Delievering personalized AI-assisted credit recommendations and tailored content based on your preferences
    • Communications

      • Sending essential notifications, including account confirmations and security alerts
      • Delivering marketing materials, newsletters, and special offers, where legally permitted
    • Analytics & Improvement:

      • Monitoring usage trends, assessing feature performance, and conducting market research to improve our Services
    • Payments & Transactions:

      • Processing payments, managing billing information, and preventing fraudulent transactions
    • Legal & Compliance:

      • Fulfilling legal obligations, responding to lawful requests, enforcing our Terms of Use, and protecting our rights and assets
    • Business Operations:

      • Facilitating corporate transactions (e.g., mergers, acquisitions) and securely sharing data with affiliates and designated service providers under strict confidentiality agreements

    For details on how you control your data, please review the “Your Rights & Choices” section below.

  7. Cookies & Tracking Technologies

    Our Services utilize cookies and other tracking technologies to enhance user experience and secure your interactions. This section explains our practices and your choices regarding these technologies:

    7.1 Types of Technologies Used

    • Browser Cookies:

      • Small text files stored on your device that help remember your preferences and track your activity on our Services. You can adjust your browser settings to refuse cookies; however, this may impact certain functionalities.
    • Local & Session Storage:

      • Technologies that store temporary information for personalization and continuity of your session. Disabling cookies may affect the performance of these storage methods.
    • Third-Party Cookies & Tracking:

      • Tracking cookies set by our advertising, analytics, and social media partners. These parties may monitor your online activities over multiple websites to deliver targeted ads. Please refer to their privacy policies for instructions on opting out.

    7.2 Managing Your Preferences

    You have control over the tracking technologies used on our Services. You can:

    • Configure your browser to reject all or select cookies.
    • Utilize industry-provided opt-out tools (for example, tools offered by advertising networks such as the Network Advertising Initiative).
  8. Your Rights & Choices

    We are committed to ensuring that you have control over your personal data. Depending on your jurisdiction, you may have the following rights in relation to your personal information:

    • Access and Correction:

      • Request access to your personal data and ask for corrections if any information is inaccurate.
    • Data Portability:

      • When applicable, request a copy of your personal data in a structured, commonly used, and machine-readable format for transfer to another service provider.
    • Withdrawal of Consent:

      • Withdraw your consent for the processing of your personal data at any time. Please note that this may affect your ability to access certain features of our Services.
    • Opt-Out of Marketing Communications:

      • Unsubscribe from marketing communications by following the unsubscribe instructions provided in our emails or via your account settings.
      • Request details about any automated decision-making processes, such as those used in our AI-assisted credit recommendations. You may also ask for human intervention or review of decisions made solely through automated means.
    • Additional Rights:

      • Depending on applicable laws (such as GDPR, CCPA, CPRA), you may have further rights, including the right to object to processing or to restrict the processing of your personal data.
  9. Sharing & Disclosure of Your Information

    We share your personal information only when necessary to deliver our Services, ensure regulatory compliance, or protect our legal rights. In these circumstances, your data may be disclosed as follows:

    • Aggregated Data:

      Non-identifying, anonymized data may be used for analytics, research, or other business purposes without restriction.

    • Service Providers:

      We engage trusted third-party vendors (e.g., payment processors, hosting providers, analytics firms) to perform functions on our behalf. These providers only have access to data necessary to complete their tasks and are contractually bound to maintain its confidentiality and security.

    • Financial Partners & Service Providers:

      We may share your contact information and relevant profile data with carefully selected financial partners and service providers whose offerings align with your stated financial goals and preferences as indicated in your profile. This sharing helps connect you with relevant financial opportunities that may benefit your credit improvement journey. You may opt out of such sharing at any time by contacting feedback@mycreditaction.com.

    • Affiliates & Partners:

      In cases where integrated services are offered, we may share pertinent information with our corporate affiliates or strategic partners. Such sharing is subject to confidentiality agreements and only occurs in accordance with your consent and relevant regulatory requirements.

    • Business Transfers:

      During corporate transactions such as mergers, acquisitions, or asset sales, your data may be transferred as part of the transaction, subject to appropriate safeguards and notification where required by law.

    • Legal & Regulatory Disclosures:

      We may disclose your information to comply with applicable laws, legal processes, or governmental requests. This includes disclosure in response to court orders, subpoenas, or other lawful obligations, and when necessary to protect our rights, property, or safety.

    • With Your Consent:

      We will share your information with other entities only when you have provided explicit consent or when directed by you, ensuring that you remain in control of your data.

  10. Data Retention

    We retain your personal information only as long as it is necessary for the purposes outlined in this Privacy Policy or as required under applicable law. Our retention practices include:

    • Purpose-Driven Storage:

      Personal data is held for as long as needed to fulfill the purposes it was collected for, to resolve disputes, enforce our agreements, or comply with legal obligations.

    • Regular Review & Secure Disposal:

      We periodically review our data holdings. When your data is no longer required, it is either securely deleted or irreversibly anonymized to prevent any future identification.

    • Archival and Backup:

      In some cases, data may be archived solely for backup or disaster recovery purposes. Such archived data is subject to the same safeguards as our active data.

  11. Children’s Privacy

    Our Services are exclusively designed for adults aged 18 and over. We do not knowingly collect personal information from individuals under the age of 18. In the event that we become aware of having inadvertently collected information from a minor, we will promptly take steps to:

    • Delete or Anonymize the Data:

      Remove the minor’s information from our systems, unless retention is required by law. If you believe we have collected personal information from a child under 18, please contact us immediately.

  12. Data Security

    We implement robust measures designed to safeguard your personal information. Our security framework includes:

    • Technical Safeguards:

      • Encryption: All sensitive data is encrypted during transmission (using TLS) and at rest whenever applicable.
      • Access Controls:Strict access protocols (including multi-factor authentication) ensure that only authorized personnel have access to your personal data.
    • Administrative Safeguards:

      • Regular Security Assessments:We conduct vulnerability assessments, periodic penetration testing, and security audits to maintain and improve our defense mechanisms.
      • Employee Training: Our staff receive regular training on data protection best practices and incident response procedures.

    Despite our commitment to robust security practices, no method of transmission or storage is 100% secure. Therefore, you are also responsible for safeguarding your account credentials. In the unlikely event of a security breach, we will promptly notify affected users and take all necessary remedial actions as required by applicable law.

  13. Changes to This Privacy Policy

    We may update this Privacy Policy periodically to reflect changes in our practices, technological advances, or regulatory requirements. When we make material updates:

    • Notice of Changes:

      We will revise the “Last Updated” date at the top of the Privacy Policy and, in cases of significant changes, notify you via email or a prominent notice on our Services.

    • Ongoing Consent:

      Your continued use of our Services after the policy takes effect signifies your acceptance of the updated terms. We encourage you to review the Privacy Policy regularly to stay informed about how we are protecting your information.

  14. Contact Information

    For any questions, concerns, or inquiries regarding this Privacy Policy or our data practices, please contact us using the following methods:

    We welcome your feedback and are committed to addressing any concerns promptly.

  15. Jurisdictional Disclosures & State Privacy Rights

    In addition to the rights outlined in this Privacy Policy, your jurisdiction may provide further protections. For example:

    • State-Specific Rights:

      Depending on where you reside, you may be entitled to additional rights related to the processing of your personal data.

      • California Residents: Under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), you have the right to request details about how your personal information is shared with third parties for marketing, as well as the right to access, correct, delete, or opt out of the sale of your data.

      • Other States: Residents of Colorado, Connecticut, Delaware, Florida, Indiana, Iowa, Montana, Oregon, Tennessee, Texas, Utah, Virginia, and other jurisdictions may have similar rights, such as confirmation of data processing activities, data portability, and restrictions on profiling for decisions with significant effects.

      • Nevada Residents: Nevada law provides a limited right to opt out of certain data sales, though we currently do not sell personal information.

    • How to Exercise Your Rights:

      To learn more or exercise any of your state-specific rights, please contact us at feedback@mycreditaction.com. If you wish to appeal any decision related to your privacy rights, include a clear request for an appeal in your correspondence, and we will respond within the required timeframe.

    This section is intended to supplement, rather than replace, the rights and choices provided above. We are committed to ensuring that you are fully informed of your rights under applicable laws and that your privacy remains protected regardless of where you reside.

logo

Empowering low and middle-income individuals to improve their credit scores and smartly make the next financial move.

©Copyright MyCreditAction 2025. All rights reserved.