PRIVACY
What we know about you, and what we do with it
Summit Federal Credit Union collects information because banking cannot work without it. This notice explains what we collect, who sees it, and how to tell us to share less.
Who this notice applies to
This notice covers every member of Summit Federal Credit Union, every joint owner on a member account, and anyone who applies for a loan or an account with us whether or not the application is approved. It also covers people who use our website, our mobile app, or our ATMs. It applies to former members as well, because we keep records after an account closes for as long as federal record retention rules require.
Where a product is provided by an affiliate rather than by the credit union directly, such as Summit Investment Services, Summit Realty, or Summit Title Services, that affiliate follows this notice and adds its own disclosures where its regulator requires them. You receive those disclosures at the time you open the relationship, not buried afterward.
What information we collect
The first category is what you give us. When you apply for membership or a loan, you provide your name, address, date of birth, Social Security number, government identification, employment, income, and account balances at other institutions. When you set up online banking you give us an email address, a phone number, and the details of the device you sign in from.
The second category is what your activity produces. Every transaction creates a record: the amount, the date, the merchant, the channel, and in the case of a card purchase, the general location. Deposits, loan payments, transfers, check images, and ATM sessions all generate records we are required to keep.
The third category is what other companies tell us. Credit bureaus provide your credit report and score when you apply for a loan or when we review an existing line. Identity verification services confirm that the person opening an account is who they say they are. Payment networks report chargebacks, fraud flags, and card status changes. We do not buy consumer profiles from data brokers for marketing purposes.
Why we collect it
Most of it is not optional for us either. Federal law requires a financial institution to verify the identity of every member, to monitor for money laundering, to report certain transactions, and to keep records of everything it does with your money. A loan decision cannot be made without income and credit information, and a fraud system cannot spot an unusual charge unless it knows what your usual charges look like.
Beyond the legal minimum, we use what we hold to run the account: to post transactions, to send statements and alerts, to answer your questions when you call, to price a loan for you, and to tell you about a product that would plainly save you money, such as a refinance when rates have moved. We do not sell member information to anyone, for any price, ever.
Who we share it with
Service providers see the parts of your information they need to do their job and nothing more. That includes our core banking processor, the card network that authorizes your purchases, the statement printer, the check imaging vendor, and the credit bureaus we report your loan history to. Each one is under a written contract that limits what it may do with the data and requires it to protect the data to our standard.
We also share when the law leaves us no choice: in response to a subpoena, a court order, a levy, a regulatory examination, or a lawful government request. When we are permitted to tell you that this has happened, we do.
The table below is the short version. It follows the standard federal privacy notice format so you can compare it line by line against a notice from any other institution.
Reason we can share
Does Summit share
Can you limit it
For everyday business, such as processing transactions and reporting to credit bureaus
Yes
No
For our own marketing of Summit products and services
Yes
Yes
For joint marketing with another financial company
Yes
Yes
For our affiliates to market to you
Yes
Yes
For nonaffiliates to market to you
No
Not applicable
Selling member information to any third party
No
Not applicable
Your right to opt out
You can tell us to stop using your information for marketing, to stop sharing it with our affiliates for their marketing, and to stop joint marketing with other financial companies. Opting out does not close any account, does not change any rate, and does not affect the service you receive at a branch or on the phone. It also does not stop the everyday business sharing in the first row of the table above, because that sharing is what makes the account function.
There are three ways to opt out. Sign in to online banking and change the marketing preferences on your profile. Call member service at (800) 555-0148 and say you want to opt out of marketing sharing. Or write to the Privacy Officer at the address at the bottom of this page and include your name, your address, and the last four digits of your member number.
Your choice is processed within 30 days and stays in effect until you change it. If you opt out and later decide you want product notices again, the same three channels turn them back on. Joint owners can each make their own choice, and one owner's opt-out does not automatically apply to the other.
Marketing you cannot opt out of
Some communications are not marketing and will continue regardless of your choice. Statements, transaction alerts, fraud alerts, rate change notices, annual privacy notices, and anything the law requires us to send you all continue. So do the notices we owe you on a loan, such as payment reminders and escrow analyses. We keep those separate from marketing on purpose.
How we protect information
Member data is encrypted in transit and at rest. Access inside the credit union is limited by role, so a teller sees what a teller needs and a loan officer sees what a loan officer needs. Every access to a member record is logged, and those logs are reviewed. Employees complete security and privacy training when they are hired and every year after that, and access is removed the day someone leaves.
On your side of the connection, online banking supports two-step verification, device recognition, and account alerts you can set by amount, merchant, or transaction type. We recommend turning on two-step verification and at least one balance alert. Our fraud monitoring runs continuously and will text you about an unusual card transaction, but it asks only for a yes or a no. It never asks for a password, a card number, or a one-time code.
We keep records for as long as federal regulation requires and then destroy them under a documented schedule. Paper is shredded on site. Digital records are deleted from production systems and from backups on the retention cycle. If we ever suffer a breach that affects your information, you will hear it from us in writing, with what was exposed and what we are doing about it.
Website and mobile app
Our website uses cookies to keep you signed in, to remember your branch preference, and to measure which pages members actually use. You can block cookies in your browser; online banking will still work but will ask you to verify your device more often. The mobile app requests location access only to show nearby branches and ATMs and to help the fraud system judge whether a card transaction fits your pattern. Both permissions can be denied without losing access to your accounts.
Links to outside sites appear in a few places, such as a payment network or an education partner. Once you leave financetemplate2.website-staging.dev, this notice no longer applies and the other site's privacy practices take over. Read theirs before you enter anything.
How to reach us about privacy
Write to the Privacy Officer, Summit Federal Credit Union, 1948 Ridgeline Avenue, Suite 400, Summit Park. Call member service at (800) 555-0148 and ask for the privacy desk. For anything involving a lost card or a suspected fraudulent transaction, call the 24-hour line at (800) 555-0166 first and handle the privacy question afterward.
Ask us for a copy of the information we hold about you and we will provide it, along with an explanation of where it came from. If something in your record is wrong, tell us and we will correct it and notify the credit bureaus or service providers that received the incorrect version.
This notice was last revised in July 2026. We review it every year and send a copy to every member annually, as federal law requires. When we make a material change we tell you before it takes effect, not after.
This is a demonstration website built to showcase a design system. Summit Federal Credit Union is a fictional institution, and nothing on this page is a real privacy notice or legal advice.
Questions about your information
A person at the privacy desk will answer, and they will answer in plain language.