WESTERN SURPLUS CARRIER AUDIT PORTAL
Privacy Policy
Pilot draft · September 10, 2026. This notice describes the portal's current behavior. Western must review its retention, operational logging, and disclosure practices before external release.
This portal provides carrier-authorized, read-only access to policy and quote files. Western Surplus uses account information and activity records to manage that access, support audits, and investigate access problems.
Account information
The portal stores your name, email address, Microsoft tenant and user identifiers, whether your account is enabled, its expiration, and your carrier assignments and access dates. Your Microsoft password is entered with Microsoft, not collected by this portal.
What your activity record contains
Recorded events identify the portal user, time, action, and outcome. Depending on the action, they also include quote and carrier identifiers, folder, document or page identifiers, frame/version information, and bounded result or page counts.
- Sign-in and sign-out: successful portal sign-ins and the portal Sign out action.
- Searches and recent files: that a search or recent-files list was requested, and the number of files returned. The portal activity log does not store the words you searched for.
- File review: opening a quote, browsing folders, retrieving page totals, loading document page lists, and viewing or previewing pages. Automatic previews and validated cached-page revisits can also create events; one click may produce several events.
- Native file downloads: preparing an authorized download of an unsupported native attachment, including its page identifier and version. This records the server action, not confirmation that your browser saved or opened the file. Downloaded copies remain on your device after sign-out; protect them according to your organization's data-handling requirements.
- Security and access outcomes: failed sign-ins, rejected sessions, denied resource requests, invalid requests, rate limits, timeouts and service failures. Security events include a server-generated correlation identifier, request category and outcome, and verified Microsoft user identifiers when available. High-volume failures may be aggregated; queued security events can be lost during a sudden server failure. This is not a record of every mouse/keyboard action.
- Administration: account and carrier-access changes, the administrator, the stated reason where recorded, and relevant before/after values, including names, emails, access status, and dates.
The portal activity log does not contain document images, document text, Microsoft passwords, or authentication tokens. It does not record your screen or keystrokes.
Recent files and browser storage
Recent files come from your successful file-open events in the last 30 days. Up to 20 currently authorized matches are shown from your 100 most recently opened distinct files in that period. Current carrier access and AIM information are checked again before details are returned. Another auditor's history is not shown to you.
The portal uses necessary sign-in and request-protection cookies. Displayed page images may be retained temporarily in the open tab's memory to make revisits faster, with fresh access checks. The portal does not use persistent browser storage for recent files or document images, and does not include advertising or third-party analytics scripts. Signing out invalidates your portal sessions on all devices, but does not erase server-side activity records or downloaded copies.
Operational records and access
Western portal administrators can review activity records. Authorized system/database operators may also have access when administering the service. Microsoft sign-in services, the web server, and source document systems may keep separate operational and security logs, such as connection, request, timing, error, and sign-in information. Those systems' records are separate from the portal activity log described here.
Retention and questions
Activity records are append-only through the portal: its normal administrator interface cannot edit or delete them. The application currently has no automatic audit-record deletion schedule. The 30-day recent-files display is not a 30-day deletion policy. Western's approved retention schedule, backups, and any applicable retention requirements must be confirmed separately.
Contact your Western representative or portal administrator with questions about your information, access, activity records, or this notice. Any access, correction, or deletion request requires review; this notice does not promise deletion of records that must be retained.