Six Pillar Financial

Privacy Policy

Version 0.1 (pre-launch draft) · Effective May 13, 2026

Pre-launch notice. Six Pillar Financial is in closed pre-launch development. Access to the platform is gated to internal personnel and authorized testers only. This Privacy Policy is a working draft; a final version will be published prior to general availability.

1. Who we are

Six Pillar Financial, Inc. ("Six Pillar," "we," "us," or "our") operates a financial technology platform that helps consumers save for a home purchase through the Home Savings Plan ("HSP"). Deposit accounts offered through the platform are held at our sponsor bank, Austin Capital Bank SSB, Member FDIC. Six Pillar is not a bank.

You can contact us at privacy@sixpillarfinancial.com.

2. Information we collect

2.1 Information you provide

2.2 Information collected automatically

2.3 Information from third parties

3. How we use your information

4. How we share your information

We share information only as needed to operate the service or as required by law. Categories of recipients:

We do not sell your personal information, and we do not share your phone number or SMS opt-in data with third parties for their own marketing.

5. Plaid

We use Plaid Inc. ("Plaid") to verify your identity, screen for sanctions matches, and securely connect bank accounts you choose to link. When you use these features, you authorize us and Plaid to access, collect, and use information about you and the financial accounts you link, including account numbers, balances, and transactions. Plaid's use of your information is governed by Plaid's end user privacy policy, available at https://plaid.com/legal/#end-user-privacy-policy. You may revoke Plaid's access to your linked accounts at any time through your Plaid Portal at https://my.plaid.com/.

6. SMS & messaging

By providing your mobile number and opting in, you consent to receive text messages from Six Pillar Financial, including account verification codes, security alerts, transaction notifications, and other service-related messages. We use Twilio to deliver these messages.

7. Email communications

Transactional emails (account confirmations, security notices, transaction receipts, legal notices) are sent as part of the service and cannot be opted out of while you maintain an active account. Marketing emails, if any, include an unsubscribe link in every message; we honor opt-out requests within ten business days as required by the CAN-SPAM Act. Our mailing address for CAN-SPAM purposes is listed in Section 14 below.

8. Cookies

We use cookies and similar technologies to operate the service, remember your preferences, secure your session, and analyze how the service is used. You can control cookies through your browser settings; disabling cookies may limit your ability to use parts of the service.

9. Data security

We use administrative, technical, and physical safeguards designed to protect your information, including encryption in transit (TLS), encryption at rest (AWS KMS), access controls, audit logging, and regular security reviews. No method of transmission or storage is completely secure; we cannot guarantee absolute security.

10. Data retention

We retain information for as long as your account is active and for the periods required by applicable law. In particular, we retain records required under the Bank Secrecy Act, customer identification rules, and OFAC regulations for at least seven years after account closure. Tax records and other regulatory records may be retained longer where required. After applicable retention periods, we delete or anonymize information that is no longer needed.

11. Your rights

Depending on your state of residence, you may have rights to access, correct, or request deletion of your personal information, to opt out of certain processing, and to appeal decisions we make about your requests. To exercise these rights, contact us at privacy@sixpillarfinancial.com. We will verify your identity before responding. Some information must be retained to comply with legal obligations and cannot be deleted on request.

12. Children

The Six Pillar Financial service is not directed to children under 18, and we do not knowingly collect personal information from children under 18.

13. Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated policy at legal.sixpillarfinancial.com/privacy.html and update the effective date. Material changes will be communicated to active users.

14. Contact us

Six Pillar Financial, Inc.
Austin, Texas
Email: privacy@sixpillarfinancial.com

A physical mailing address will be published prior to general availability. Until then, please direct all privacy inquiries to the email address above.