Privacy Policy
MDRM IQ is operated by Unomia Labs LLC. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the MDRM IQ platform at mdrmiq.com. Please read this policy carefully. By accessing or using MDRM IQ, you agree to the terms described herein.
1. Information We Collect
We collect information that you provide directly and information generated through your use of the platform:
- Account information: Email address, name, and institution affiliation when you create an account or sign in via magic link.
- Institution data: FDIC certificate numbers and institution identifiers you select for monitoring. This data is sourced from publicly available FDIC BankFind records.
- Payment information: Subscription and billing data processed through Stripe. We do not store credit card numbers on our servers. All payment processing is handled by Stripe in accordance with PCI-DSS standards.
- Usage data: Pages visited, features accessed, search queries, and interaction patterns to improve platform functionality.
- Device and browser information: IP address, browser type and version, operating system, and device type collected through server logs.
2. FDIC Public Data
MDRM IQ primarily analyzes publicly available FDIC call report data obtained through the FDIC BankFind API. This data is a matter of public record. We do not collect, access, or store private bank data, internal financial records, or confidential supervisory information unless you explicitly provide it through a portfolio upload.
3. Portfolio Uploads
If you upload a loan portfolio via CSV for audit analysis, the data is processed in-session only. Uploaded portfolio data is used solely to generate audit flags and analysis during your active session. We do not persistently store the contents of your uploaded CSV files. Once your session ends or the analysis is complete, the uploaded data is discarded from processing memory.
4. AI Processing
MDRM IQ uses the Anthropic Claude API to generate intelligence briefs, exam readiness reports, and other AI-assisted analysis. When generating these outputs, relevant data (including FDIC metrics and your selected institution information) is sent to Anthropic for processing. Anthropic's handling of this data is governed by their own data usage policies. We send only the minimum data necessary to generate the requested analysis.
5. Cookies and Session Data
We use the following cookies:
- Authentication session cookies: Required for maintaining your signed-in state. These are essential cookies and cannot be disabled while using authenticated features.
- Analytics cookies: Used to understand platform usage patterns and improve the product experience.
We do not use third-party advertising cookies or tracking pixels.
6. Third-Party Services
MDRM IQ integrates with the following third-party services, each with their own privacy policies:
- Stripe — Payment processing and subscription management.
- Resend — Transactional email delivery (magic links, Field Notes briefs).
- Anthropic — AI-powered analysis and report generation via the Claude API.
- Amazon Web Services (AWS) — Cloud infrastructure hosting, database, and file storage.
7. How We Use Your Information
- To provide, maintain, and improve the MDRM IQ platform and its features.
- To process subscriptions and manage your account.
- To deliver Field Notes briefs and real-time alerts to your email.
- To generate AI-powered intelligence reports and audit analysis.
- To communicate with you about your account, updates, and support inquiries.
- To detect and prevent fraud, abuse, or unauthorized access.
8. Data Retention and Deletion
We retain your account information and usage data for as long as your account is active or as needed to provide services. Audit trail records are retained for compliance purposes. If you wish to delete your account and associated data, contact us at hello@mdrmiq.com. We will process deletion requests within 30 days, except where retention is required by law or for legitimate business purposes (such as immutable audit trail records).
9. Data Security
We implement reasonable administrative, technical, and physical security measures to protect your information. All data in transit is encrypted via TLS/HTTPS. Our infrastructure is hosted on AWS with industry-standard security controls. However, no method of electronic storage or transmission is 100% secure, and we cannot guarantee absolute security.
10. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate or incomplete information.
- Request deletion of your personal information.
- Object to or restrict certain processing of your data.
- Receive a copy of your data in a portable format.
To exercise any of these rights, contact us at hello@mdrmiq.com.
11. Children's Privacy
MDRM IQ is not directed at individuals under the age of 18. We do not knowingly collect personal information from children.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the effective date below. Your continued use of MDRM IQ after changes are posted constitutes acceptance of the revised policy.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, contact us at: hello@mdrmiq.com
Last updated: April 1, 2026