Privacy Policy
SaveMaximus LLC operates the SaveMaximus authentication service. This policy explains what we collect and how we handle it.
What we collect
Account information: your name, email address, and password (stored only as a salted hash).
Mobile phone number: the number you enter for two-factor authentication, along with its verification status.
Authentication metadata: timestamps, delivery status of each code, approximate location, and device or browser type for the sign-in activity log.
Why we collect it
Your phone number is collected for one purpose: delivering one-time passcodes that confirm it is you signing in or changing sensitive account settings. Authentication metadata is used to show you recent activity, detect abuse, and troubleshoot delivery problems.
How it is protected
Data is encrypted in transit (TLS 1.2+) and at rest. Phone numbers are stored in an access-restricted datastore; access is limited to personnel who need it for support or security, logged, and reviewed. One-time codes are stored hashed and expire after ten minutes.
Who processes it
We use a licensed SMS aggregator and mobile carriers to deliver messages, and a cloud hosting provider to run the service. These processors receive only what is necessary to deliver a message and are contractually barred from using it for their own purposes.
No sale or marketing sharing
SMS consent and mobile information are not sold, rented, or shared with third parties or affiliates for their marketing or promotional purposes. We do not send promotional text messages.
Retention and your choices
We keep your phone number while two-factor authentication is enabled and for up to 12 months afterwards for security investigation, then delete it. You may disable SMS 2FA, replace your number, or reply STOP at any time; you may also request deletion of your account.
Contact us about privacy
Email privacy@savemaximus.com, call (480) 555-0142, or write to SaveMaximus LLC, 16192 Coastal Highway, Lewes, DE 19958.