Trust & security

This page is maintained by the VoomZone team to answer common security and privacy questions about VoomZone. It describes our current practices — it is not an independent audit, certification, or third-party verification.

Accounts and access

Consumer quote requests do not require an account. Agent, agency and administrator accounts sign in with email and password, and each account type only sees the data its role allows: agents see leads they have been matched with or purchased, agency brokers see their own agency, and administrators manage the marketplace.

Access rules are enforced in the database itself, not only in the app, so a request that isn't authorised is rejected at the data layer.

Hosting and platform

VoomZone runs on Lovable Cloud, which provides managed application hosting, a managed Postgres database, authentication and file storage. Traffic to the site is served over HTTPS, and data is encrypted in transit and at rest by the platform. These are platform capabilities we rely on — they are not a certification of VoomZone.

What we collect and why

When you request quotes we collect the contact and coverage details you enter (such as name, email, phone, ZIP code and the type of insurance you're shopping for), plus the consent record for being contacted. We use it for one purpose: matching you with licensed independent agents who can quote your coverage.

VoomZone does not offer health insurance products and does not collect medical information.

Who your information is shared with

Matched licensed agents and agencies receive your request so they can contact you. We also use service providers to operate the site — hosting and database (Lovable Cloud), payments (Stripe, for agent purchases only), email delivery, telephony for call forwarding, and analytics/advertising tags where you have consented.

You can opt out of the sale or sharing of your personal information at any time on our Do Not Sell or Share page.

How we vet the agents you're matched with

Before an agent or agency can receive a single match, they submit their National Producer Number (NPN), the states they're licensed in and the coverage lines they write. Our team reviews that submission and only approved accounts appear in the directory or receive leads. Agents cannot approve themselves — verification status is set by VoomZone administrators and enforced at the data layer.

Matches are limited by state and coverage line, so your request only reaches agents licensed to write the coverage you asked about. Verified agents are marked as such on their public profile in our agent directory. Agents remain independently licensed businesses; verification confirms their licensing details and our review, not the advice they give or the carriers they recommend.

Agent scorecards and badges

We track how agents actually perform on the platform — how quickly they respond to a new match, how often they make contact, how many matches convert to a written policy, and the ratings consumers leave after speaking with them. Those signals produce a scorecard, and agents who sustain strong numbers earn public badges (for example fast response or highly rated) shown on their directory profile.

Scores are calculated from platform activity and consumer feedback, and agents cannot edit them. Persistent poor performance — unanswered matches, valid consumer complaints, or marketing practices that break our rules — can reduce an agent's match volume or remove them from the marketplace. Badges describe past performance on VoomZone; they are not a guarantee of any outcome or price.

Cookies and analytics

Analytics and advertising tags load only after you make a choice in our cookie banner, using Google Consent Mode defaults that start denied. Essential cookies needed to keep you signed in are always on.

Retention and deletion

We keep quote requests and the associated consent record while they are commercially useful and for as long as applicable lead-generation and telemarketing rules require us to evidence consent. You can ask us to delete your information at any time through our privacy request form, and we process verified requests through the same queue our team reviews daily.

Reporting a security or privacy concern

Found a vulnerability or have a privacy question? Contact us through the contact page. Please include enough detail to reproduce a security issue and give us a reasonable window to respond before disclosing it publicly.

Shared responsibility

Lovable Cloud is responsible for the underlying hosting, database and authentication infrastructure. VoomZone is responsible for how this application is built and configured, how we vet agents, and how we handle your data. Agents and agencies who receive your information are independently licensed businesses, responsible for their own compliance, marketing practices and record keeping.

Buying leads as an agent?

See our lead quality guarantee and legal & policies.