Brokerage Actions Privacy Policy
Brokerage Actions is a desktop workspace for real estate transactions, listings, documents, and connected workflows, operated by Twin Paths LLC. Access requires an invitation. This policy covers Brokerage Actions and its supporting services.
Information processed
- Account and access information: your name, email or account identifier, organization, office, role, connection credentials, and device/session information used to sign in and determine which records and services you may access.
- Work content: records, property and transaction details, contact information, dates, notes, images, documents, and other content you or your organization add or authorize the app to read. Transaction documents may contain personal and financial information about other people.
- Connected services and browser data: information retrieved from services you or your organization connect, authorization tokens, and the page content or files used in requested browser workflows. The integrated browser keeps a local browser profile, which can include cookies and website sessions.
- Operational information: service requests, sign-in activity, errors, task status and timing, and support information used to operate, troubleshoot, and protect the service.
Why information is used
We process this information to authenticate users, display authorized records, organize documents, coordinate office work, provide requested assistant and integration features, respond to support requests, and maintain service reliability and security. Your organization determines which business records and connected workflows it authorizes.
Twin Paths does not sell customer data or use it for advertising. Customer work data remains private within the customer's brokerage and the systems used to provide its authorized workflows. We do not make that data publicly available or share it with other brokerages. Authorized service providers and connected AI assistants may process data as described below.
Storage and access
The desktop app stores working files, settings, and browser-session information on your computer. Supporting services store account information, shared records, workflow state, and relevant files on infrastructure operated for Twin Paths. Access to shared records is scoped by organization, office, and role. Authorized colleagues may see records shared within their office.
Service connections use HTTPS. Access controls and restricted storage permissions help protect data; no system can guarantee absolute security. Local copies are also subject to the security of your device and operating-system account. Uninstalling the app does not delete shared records or copies held by your organization or connected providers.
Other services and AI assistants
Information may be processed by infrastructure and delivery providers, including, where email intake is used, Resend. Services your organization connects can include brokerage platforms, email and calendar services, Dropbox, Canva, and MLS services. Websites you open in the integrated browser receive information under their own policies, as in other browsers.
Connecting an AI assistant gives that assistant access to information needed by the tools and tasks you authorize. Relevant document text, record information, page content, and tool results may be sent to that assistant's provider. The provider's terms, account type, and settings govern its retention and any use for model training. An assistant subscription is separate from Brokerage Actions. Review your organization's requirements before connecting a provider or sharing content.
Retention and your choices
Shared business records do not have a universal automatic expiry. Retention and authorized export or deletion requests are handled with the organization responsible for the records. Closing the app, disconnecting an integration, or removing an account does not automatically erase shared records.
Operational records and backups may outlast the active record. Routine database backups are scheduled for cleanup after approximately one month; cleanup depends on successful backup operations. Other recovery copies may remain until manually removed. Tool-call diagnostic logs rotate as their size limits are reached, rather than after a fixed number of days. Contact us to discuss the scope of a deletion request, including recovery copies and any recordkeeping obligations that apply to your organization.
Email-intake attachment copies are designed to be removed from the intake service after the desktop acknowledges successful delivery. Claimed or discarded intake metadata is scheduled for cleanup after 90 days. These rules do not remove copies in local files, email providers, shared business records, or backups.
You can choose which optional services and assistant connections to use and stop using them. Your organization can revoke application access. To request access to, correction of, export of, or deletion of information, email contact@twinpaths.org with the subject “Privacy request”. We may need to verify your identity and coordinate with the organization responsible for the records. Revoking access does not by itself erase information already shared with another provider.
Updates and contact
We will update this policy when our data practices change and revise the date above. Contact Twin Paths LLC at contact@twinpaths.org for privacy questions, information requests, or product support. Use the subject “Privacy request” for privacy matters.
Brokerage Actions