Last updated: April 2026
Loanwright is built for mortgage professionals who handle sensitive personal and financial information daily. Security is not an add-on; it is foundational to every technical decision we make.
This page summarizes the technical and organizational controls Loanwright uses to protect your data. If your compliance team needs additional detail for vendor due diligence, contact us at hello@loanwright.io.
Mortgage brokerages subject to the Gramm-Leach-Bliley Act (GLBA) Safeguards Rule are required to verify that their service providers adequately protect consumer data. Loanwright's controls (encryption, access controls, audit logging, private document storage, and MFA via OAuth providers) are designed to satisfy these requirements. For a detailed vendor security questionnaire response or additional documentation, contact hello@loanwright.io.
Guideline Search uses AI to summarize published agency mortgage guidelines. User queries are processed server-side; only the question text is sent to OpenAI. No personal information, borrower data, or loan file content is included. OpenAI does not use API data for model training. For full details on our AI practices, see the AI Disclosure.