Introduction
Vertex Digital Management ("Vertex", "we", "us") provides a back-office platform for property management companies, including the Vertex Connect module, which reconciles bank transactions against accounting records in Rent Manager. This Privacy Policy explains what information we collect, how we use and share it, how long we keep it, and the choices you have.
This policy applies to users of the Vertex Digital Management portal at vertexdmgmt.com and any subdomains, including preview environments.
Information We Collect
- Account information you provide when you sign up or are invited: name, email address, company affiliation, and (if you set one) a password.
- Multi-factor authentication data: TOTP factor identifiers used to verify your identity when you enter Vertex Connect. We never see the secret stored on your authenticator app.
- Property management data you enter or upload: SOPs, tasks, onboarding forms, support tickets, property and tenant records.
- Bank connection data from Plaid (see below).
- Consent records: when you agree to connect a bank, we store a hash of the consent text, the timestamp, your IP address, and browser user agent as proof of consent.
- Operational logs: standard server logs and an audit trail of Vertex Connect actions (bank link, unlink, transaction pull, data deletion).
How We Use Your Information
- Provide, maintain, and improve the Vertex platform.
- Reconcile bank transactions against your property management records.
- Authenticate you and prevent unauthorized access.
- Respond to support requests and legal obligations.
- Detect, investigate, and prevent fraud or abuse.
We do not sell your personal information, and we do not use your bank data for advertising.
Data From Plaid
When you connect a bank account through Vertex Connect, you authorize us to use Plaid Inc. to retrieve information from your financial institution. Through Plaid we access transaction history and account metadata (name, mask, subtype) for the accounts you select. Vertex Connect does not move money or initiate payments — it only reads transaction data.
Plaid's own handling of your data is governed by the Plaid End User Privacy Policy.
Data Retention
- Bank transactions and account metadata: retained while the bank connection is active, and for 90 days after you disconnect the bank, after which they are permanently deleted from our production database.
- Consent records and Vertex Connect audit logs: retained for as long as your account exists, so we can demonstrate compliance if audited.
- Account and property management data: retained while your account is active. On account closure it is deleted within 30 days, except where longer retention is legally required.
- Backups are rotated on a rolling schedule and typically expire within 30 days.
Your Rights
You can, at any time:
- Disconnect a linked bank from Vertex Connect → Linked Banks.
- Immediately delete all Vertex Connect data (linked banks, transactions, consents, MFA factors) from Vertex Connect → Settings.
- Request a copy of your data or full account deletion by emailing security@vertexdmgt.com.
Depending on where you live, you may also have rights under applicable law (for example the GDPR or CCPA) to access, correct, port, or delete your data, and to complain to a supervisory authority. We respond to verifiable requests within 30 days.
Security
- All connections use HTTPS with TLS 1.2+; the site enforces HTTPS.
- Sensitive third-party credentials (including Plaid access tokens) are encrypted at rest using AES-256-GCM with keys held only on the server.
- Multi-factor authentication is required before any user can access Vertex Connect or any bank data.
- Access to production systems by Vertex staff is role-restricted and logged.
- We follow the principle of least privilege for both users and staff.
Contact Us
Questions, requests, or reports of a security concern: security@vertexdmgt.com.
Vertex Digital Management — Attn: Privacy Officer.