OWFI Legal
Privacy Policy
Effective date: June 15, 2026
This Privacy Policy explains how OWFI collects, uses, stores, and protects information submitted through the OWFI platform, including buyer applications and provider verification workflows.
Information We Collect
We collect account information such as name, email address, phone number, role, and authentication identifiers. We also collect deal information such as asset details, application links, messages, uploaded documents, and transaction status.
When a buyer submits an application, OWFI collects self-reported income, debt, down payment availability, employment information, requested terms, and consent records. If provider verification is enabled, OWFI may receive information from providers such as Plaid or background screening providers after the buyer authorizes that connection.
How We Use Information
OWFI uses submitted information to help sellers, buyers, agents, and title or document partners manage owner financing transaction workflows. This includes application review, document intake, payment workflow support, messaging, notifications, audit records, and provider verification status.
OWFI does not sell consumer financial information. OWFI does not provide legal, lending, underwriting, foreclosure, financial, or investment advice.
Plaid and Financial Data
If a buyer chooses to connect a financial account through Plaid, Plaid may provide account, identity, balance, transaction, income, or asset information depending on the products configured for OWFI. OWFI uses this information only for the transaction workflow and seller evaluation context shown in OWFI.
Plaid access tokens are intended to be encrypted at rest before storage. Provider credentials and tokens are not exposed to client-side application code.
Sharing
OWFI shares application and deal information with the authorized parties to a transaction, such as the seller, buyer, agent, title company, and service providers needed to operate the platform. Access is role-scoped.
OWFI may disclose information when required by law, to protect the platform, to prevent fraud or abuse, or to comply with valid legal process.
Security
OWFI uses HTTPS/TLS for data in transit, Firebase and Vercel platform controls, role-scoped Firestore and Storage rules, and server-side provider integrations. Sensitive provider tokens are designed to be encrypted before storage when encryption keys are configured.
No system is perfectly secure. Users should use strong passwords and keep their email and device access secure.
Retention and Deletion
OWFI retains records for as long as needed to operate the platform, support active transactions, meet legal or audit needs, and resolve disputes. Users may request deletion by contacting info@owfi.io.
Some transaction records may be retained where legally required, necessary for audit trails, or needed to protect the rights of transaction participants. Plaid-connected items can be disconnected and associated tokens deleted on request.
Contact
Questions or requests about privacy, security, access, deletion, or correction can be sent to Cody Simmons, Founder, at info@owfi.io.