How we look after your data
This page is maintained by BuyerMatch Liverpool to answer common security and privacy questions about our platform. It describes current practices and is not an independent certification.
Buyers and agents sign in with an email and password. Sessions are managed by our managed authentication provider; passwords are never stored by BuyerMatch directly.
Role-based access controls separate buyer, agent, branch manager, agency admin and platform admin permissions. Agents can only see the financial profile of buyers they are actively working with; agency managers see only buyers connected to their own agency.
For buyers: contact details, search preferences (postcodes, property types, budget), and verification documents you upload for ID, proof of funds and mortgage-in-principle checks.
For agents: contact details, branch/agency association and property listings you publish to the matching engine.
We do not sell your data and do not share it with third parties outside the matches you receive within the platform.
All data is hosted on our managed cloud backend. Data is encrypted in transit (TLS) and at rest. Verification documents live in a private storage bucket — files are never publicly accessible and are only retrievable by the buyer who uploaded them and our platform admin verification team.
Verification documents are reviewed by our Liverpool-based verification team and the resulting status (verified / pending / rejected) is the only artefact shared with matched agents — the underlying document is not.
You can delete pending verification documents at any time from your dashboard. To request full account deletion, contact us at the address below.
To report a vulnerability or ask a privacy question, email security@buyermatch.example. We aim to acknowledge reports within two working days.
For more on how the platform works, see how it works or the for agents page.