Direct Auto Online Privacy Statement
Effective: September 15, 2025
This Online Privacy Statement (“Privacy Statement”) describes the privacy practices of Direct Auto and the affiliated companies whose websites and mobile apps link to this Privacy Statement (“Direct Auto,” “we” “our” or “us”). This Privacy Statement explains the information we collect, why we collect it, how we use and share it, and the choices you can make regarding your information.
Direct Auto’s insurance customers also receive a privacy statement for insurance products in the initial policy package and annual policy documents, which may contain additional privacy information relating to your customer relationship with us. Those privacy statements and this Online Privacy Statement should be read together.
Information We Collect and How We Collect It
Direct Auto collects personal and other information about you. Personal information is information that identifies, relates to, describes, is reasonably capable of being associated with, or could reasonably be linked (directly or indirectly) with you. Other, non-personal information does not reveal an individual’s identity including information that has been de-identified or aggregated. The type and amount of information we collect varies based on what products and services you have with us.
We collect personal information about you in several ways from several sources. We collect personal information directly from you including when you sign up for services, buy a product, subscribe to a membership or mailing list, set up an account with us, activate a feature such as our mobile app or during the quoting, registering, application, claims handling or roadside assistance process. We and service providers working on our behalf collect personal information from you such as IP address, browsing history and other internet activity information when you use one of our websites, mobile apps, view our emails or otherwise engage with us through a computer or mobile device (“Sites”). We also collect personal information about you from third parties such as consumer reporting agencies, state agencies, such as departments of motor vehicles, service providers, marketing companies and data providers as well as individuals such as your spouse or your parent.
We collect the following categories of personal information:
| Personal information categories | Example |
|---|---|
| Personal identifiers | Name, alias, signature, postal address, phone number, date of birth, unique personal identifier, online identifier, email address, internet protocol (IP) address, state identification card number, account name, Social Security number, driver's license number, passport number, or other similar identifiers. |
| Personal characteristics | Age, race, ancestry, national origin, citizenship, religion, marital status, medical condition, physical or mental disability, sex (including gender, gender identity or gender expression), pregnancy, childbirth and related medical status, sexual orientation, veteran or military status, genetic information (including familial genetic information) or other descriptions of your physical characteristics (e.g., height). |
| Commercial information | Service or product related information including policy coverage information, premiums, account name, policy number, payment history, claims history, records of personal property, products or services purchased, obtained, or considered, or other purchasing or consuming histories or tendencies, account log-in, bank account number, credit or debit card number, other payment or financial information, health insurance information, driving record, credit information, medical history, or family member information. |
| Biometrics and multimedia information | Fingerprint, voice print, retinal print, scan of hand or facial geometry, audio, electronic, visual, or similar information. |
| Internet or other electronic network activity information | Browsing history, search history, information regarding your interaction with our website, application or advertisement, links you use or web pages you visit while visiting our site or applications, browser type, internet service provider (ISP), cookies, and mobile device information including device identifier or other information. |
| Geolocation data | Physical location, movements, or trip tracking information. |
| Professional or employment information | Employment history, union membership, some contents of mail, e-mail and text messages on company devices, applications or communication platforms. |
| Education information | Education records, grades or transcripts. |
| Inferences | Inferences drawn from any personal information collected to create a profile reflecting preferences, characteristics, psychological trends, predispositions, behavior, attitudes, intelligence, abilities, and aptitudes. |
Sensitive Personal Information
Some personal information we collect is defined under the law as sensitive personal information. Sensitive personal information we collect includes Social Security number, driver’s license number, state identification card number, passport number, customer account log-in, financial account number, debit card number, credit card number in combination with any required security or access code, password, or credentials allowing access to an account, precise geolocation information, racial or ethnic origin, religious beliefs, union membership, genetic data, biometric information used for identification, personal health information, status as a victim of a crime and sexual orientation.
Use of Your Personal Information
We use your personal information for business purposes including to:
- Provide and maintain your services and products: We may use your personal information to provide or maintain your service, products, or membership including to set up a product or service or provide a product or service, maintain your account, service your policy, change your policy, handle a claim, complete a transaction, repair a product or respond to customer service requests or other inquiries. We may also collect information about other parties from you to carry out necessary services and/or requests, including adding another driver to an existing policy. If you provide us personal information about others, or if others give us your personal information, we will use the information consistent with the reasons for which it was provided.
-
Improve, develop, and analyze our Sites, services, and products:We use your personal information and other information to:<
- analyze, improve, develop, or deliver our Sites, products and services and develop new services, products or features using algorithms, analytics software, and other similar methods,
- conduct actuarial or research studies to maintain, protect and develop our networks, services, and products and protect our customers, and
- analyze how visitors use our Sites to improve the Sites and enhance and personalize your experience.
- Communicate with you about your service or product: We may communicate with you about your product, service, account, policy, or membership, provide you transaction confirmations, payment alerts or other service or product related messages via mail, email, or other available methods such as push notifications.
- Provide marketing communications: We may use your personal information to send you communications about products, services, features, and options we believe may interest you. We may send communications via e-mail, regular mail or may send push notifications via a mobile device. We may also use your information to serve you ads or customized content online.
- Comply with legal requirements and protect safety and security of our business: We may use your personal information to comply with laws, regulations or other legal obligations, to assist in an investigation, to protect and defend our rights and property or the rights of third parties or enforce terms and conditions. We may also use your personal information to prevent suspected fraud, threats to our network or other illegal activities, prevent misuse or for any other reason permitted by law.
- Update or correct our records: We may receive personal information about you from other sources, including publicly available databases or third parties from whom we have purchased data, and combine that personal information with other personal information we have about you to update our records. For example, we may obtain change of address information from public sources and use that personal information to update or correct your address.
- Find locations on request: Your location may be obtained from the mobile device or the network using your device's Global Positioning System (GPS) functionality or directly from you. We may use your location information to search for information including searching for an agent, searching for a service provider, identifying the location of an accident, or identifying the location of a roadside event you are reporting. If you do not want location information used, you can disable the GPS functionality on your mobile device.
- Power DynamicDrive®: If you choose to enroll in DynamicDrive, we may use your personal information including GPS-related data for the DynamicDrive product, to deliver driving insight information and safe driving discounts.
- Use with artificial intelligence (AI): We may use your personal information with AI technology to improve or provide you with our services, to develop and provide you with new products, features, and technologies, to prevent fraud or misuse of our services, and for any other uses consistent with this privacy statement. We are committed to the responsible use of AI.
We use sensitive personal information only as reasonably necessary to perform or maintain the services or provide goods you requested, to perform services on behalf of the business such as maintaining or servicing accounts, processing payments, to provide analytics services or similar services, to detect security incidents, resist malicious, deceptive, fraudulent, or illegal actions and to prosecute those responsible for those actions, to ensure customers and other peoples' physical safety, for short-term use such as non-personalized advertising as part of our current interactions, to verify or maintain the quality or safety of service, improve, upgrade or enhance service, or other reasons that do not require an opt-out of this use.
We do not market any products or services to children under the age of thirteen or knowingly collect any information from children under the age of thirteen. We do not knowingly sell or share for cross-context behavioral advertising the personal information of consumers under the age of sixteen. Our website is not intended for children.
Sharing Your Information
We may share any of the categories of personal information described above with service providers and other third parties for business purposes or as required or permitted by law including with:
- Companies involved in insurance and other business transactions: We share your personal information with other companies that play a role in an insurance transaction with you such as independent claims adjusters, repair shops, and other claims related companies. We may also share your personal information to participate in insurance support organizations.
- Authorized agents or brokers: We operate through agents and brokers who sell our services and products on our behalf. We may share your personal information with those agents or brokers to provide you with the services you’ve requested. They may use your personal information in the manner described in this Privacy Statement.
- Service providers: Personal information may be shared with service providers who perform services on our behalf for business purposes including service providers that:
- help complete transactions, handle a claim, service your policy or service your membership,
- engage in credit reporting or payment processing,
- provide marketing and advertising, email, or other communication services,
- provide services that support our online activities including providing tracking technologies, web hosting and analytics,
- provide tax and accounting, legal services, delivery, and data enhancement services,
- provide technology services and enhance security, privacy, and fraud protections,
- provide data analytics services or conduct research or actuarial studies, and
- provide support to our operations.
- Marketing and advertising partners: We may share personal and other information with third party online and other marketing and advertising partners or permit these partners to collect personal information from you directly on our Sites to personalize online advertising. We may share personal information with other financial institutions or other companies with whom we have a joint marketing agreement. The Online Tracking Technologies and Advertising section below has more details about these activities. We obtain opt-in consent to send marketing-related text messages to consumers as required by law and do not sell or share this information with third parties except Allstate affiliates and service providers.
- Third parties in connection with a business transaction: Personal information may be disclosed to third parties in connection with a corporate transaction, such as a merger, sale of any or all of our company assets or shares, reorganization, financing, change of control or acquisition of all or a portion of our business by an affiliate or third party, or in the event of a bankruptcy or similar proceedings.
- Law enforcement, regulators, and other parties for legal reasons: Personal information may be disclosed to third parties, as required by law or subpoena, or if we reasonably believe such action is necessary to:
- comply with the law and the reasonable requests of regulators, law enforcement or other public authorities,
- protect our or others safety, rights, or property, and
- investigate fraud or to protect the security or integrity of our Sites or any product or services.
Our service providers and third-party marketing and advertising partners include Adobe, Google and Microsoft. To learn about Adobe Analytics privacy practices or to opt-out of Adobe cookies, visit Adobe Privacy Center. To learn more about Google’s privacy practices and to manage privacy controls, visit Google Privacy Center. To access and use the Google Analytics Opt-out Browser Add-on, visit Google Opt-out. To read more about Microsoft’s privacy practices, visit the Microsoft Privacy Statement.
How Long We Keep Your Information
We retain personal information in accordance with applicable laws or regulatory requirements and also for as long as necessary to fulfill the purposes for which it was collected and to fulfill the business or commercial purposes that are explained in this Privacy Statement.
Online Tracking Technologies and Advertising
Technologies and Information Collected:We and our service providers operating on our behalf may collect information about your activity on, use of and access to our Sites using a variety of tracking technologies, including cookies, Flash objects, web beacons (also called pixel tags), embedded scripts, location-identifying technologies, and similar technology (collectively, “tracking technologies”). Information we may collect this way may be combined with other personal information we collect directly from you, including information we collect from you offline, such as over the phone or in a retail location. The information collected in this manner includes:
- The website from where you accessed our Sites, where you went to when you left our Sites, how frequently you visit our Sites, your location when you access our Sites, when and whether you open emails or click the links contained in emails, pages you visit and ads you view on our Sites, recordings of mouse clicks, mouse movements, keystrokes, and other communications you make on our Sites,
- Information about the computer, tablet, smartphone or other device you use, such as your IP address, browser type, Internet service provider, platform type, device type/model/manufacturer, operating system, date and time stamp, a unique ID that allows us to uniquely identify your browser, mobile device or your account (including, e.g., a persistent device identifier or an Ad ID), and other similar information,
- Analytics information collected by us or via third party analytics tools, to help us measure traffic and usage trends for the Sites and to understand more about the demographics and behaviors of our users, and
- How often you use a mobile app, from where the app was downloaded, events that occur within the app, aggregated usage, and performance data.
Use of the information: The information collected through tracking technologies allows us to provide you with an improved, enhanced, and personalized customer experience, to monitor and improve our Sites and for other internal purposes such as:
- Remembering information so that you will not have to re-enter it during your visit or the next time you visit the Sites,
- Providing custom, personalized content and information, including targeted content, communications, and advertising,
- Identifying and contacting you across multiple devices,
- Providing and monitoring the effectiveness of our Sites,
- Performing analytics and detecting usage patterns on our Sites,
- Diagnosing or fixing technology problems, and
- Detecting or preventing fraud or other harmful activities.
General choices regarding cookies: If you prefer not to accept cookies, most browsers will allow you to manage cookies in your browser settings to disable or block cookies, remove existing cookies, automatically accept cookies or to notify you when you receive a cookie. These settings are browser or device specific. Options available may vary by browser. However, if you disable, modify, or reject cookies, some parts or functionalities of our Site may be inaccessible or not function properly. For example, disabling cookies may require you to repeatedly enter information to take advantage of services or promotions. Also, if you clear your cookies on your browser or make selections using a different device or browser, you may need to redo your cookie settings.
Targeted Online Advertising and Opt-outs
We or our online marketing and advertising providers may use information about your activities on our Sites or other websites to help tailor our advertisements or offers to your interests. With some of our Sites, we provide information about your online activities to third-party advertising companies or allow those advertising companies to collect the information using cookies and similar technologies and allow the advertising companies to combine that information with information they collect on other unrelated sites to provide you with relevant, targeted advertising. This sort of online advertising is called cross-context behavioral advertising under the California Consumer Privacy Act (CCPA) or targeted online advertising under other laws. We do not knowingly share personal information for cross-context behavioral advertising of users under the age of sixteen.
Some states provide individuals the right to opt-out of the “sharing” or “selling” your personal information for cross-context behavioral advertising or of “targeted advertising” based on their personal information. You may opt-out of this sharing or the targeted advertising via the “about ads/do not sell or share my personal information” link in the footer of our website and then selecting “Opt out of targeted online advertising.”
You may also, where available, opt-out by enabling a universal tool that automatically communicates your opt-out preferences such as the Global Privacy Control (“GPC”) setting of your browser. For more information about GPCs, visit https://globalprivacycontrol.org.
Some browsers offer a setting called “Do Not Track.” Although we do our best to honor the privacy preferences of our visitors, we may not be able to respond to all “Do Not Track” signals from your browser.
Opt-out choices may be browser, device and/or website specific. If you access other Allstate family of company websites, you may need to make a separate selection for each. Also, clearing cookies or browsing history will erase your opt-out selection. You may continue to see generic or non-targeted ads about our products and services if you opt-out of sharing for cross-context behavioral advertising or targeted online advertising.
Privacy Rights and Choices
Various federal and state laws provide privacy rights to consumers including the right to know, access, delete, or correct personal information, the right to opt-out of sharing of personal information with affiliates for marketing or the right to opt-out of receiving email marketing. These rights differ by state and also by the type of products and services you have with Direct Auto. For example, the rights to know, access or delete under the CCPA do not apply to personal information that is subject to certain federal and state laws governing insurance or health information.
Email Marketing Choices and Other Notifications: We may send you email marketing communications about products, features and services that may be of interest to you. To opt out from receiving marketing and promotional emails from us, please send us a request by email at customerprivacy@allstate.com or click the unsubscribe link located at the bottom of each communication. If you opt out from receiving marketing emails, we may still send you non-marketing emails such as emails about your products or services, responses to your requests and inquiries, or notices of updates to terms and conditions or our privacy practices.
Insurance Customers' Rights and Choices
Insurance Customers’ Right to Access, Review and Correct Personal Information: Direct Auto’s insurance product customers can request to see or access their recorded personal information at any time. To do this, please mail your request to PO Box 3199 Winston-Salem, NC 27102-3199. When sending your initial email or letter, include only your name, state of residence, and the nature of your request; do not send any additional personal information. Proper identification may be required to fulfill the request. If you believe our information is incomplete or inaccurate, you can request that we correct it and we will make corrections if possible. Please note we may not be able to provide information relating to investigations, claims, litigation, and other matters. We will respond to all such requests within a reasonable time. We can’t change information provided to us by other companies like consumer reporting agencies. You will have to contact them directly.
You may also update, delete, or modify your account profile information at any time by logging into your online account and making updates, or you may call us or contact your agent to correct the information.
Personal Information Sharing Preferences: We would like to share your personal information with one or more of our affiliates in order to make you aware of different products, services and offers they can provide. However, you can request that Direct Auto not share your personal information with our affiliates for marketing products and services. For information about Direct Auto’s affiliates, see the Affiliates section at the end of this Privacy Statement.
To request that we not allow other Direct Auto affiliates use your personal information to market their products and services, you may log on to your account at any time and check the box next to “Opt-Out of sharing my data with affiliates for marketing purposes.” You may also contact your agent for assistance. Please keep in mind that it may take up to four weeks to process your request. If you previously contacted us and asked us not to allow other Direct Auto affiliates to use your personal information in this way, your previous choice still applies, and you do not need to contact us again. If you would like to change your previous choice, you may change it through your online account or by contacting your agent for assistance.
State Privacy Rights and Choices
California Residents
California residents have certain rights under the California Consumer Privacy Act (CCPA) to access, correct and delete personal information, and other rights described below. These rights under the CCPA do not apply to the personal information we collect related to personal insurance or health information because it is subject to other federal and state laws.
Right to Know and Access Your Personal Information: You have the right to request the specific pieces of personal information we have collected about you and the right to know:
- the categories of personal information we’ve collected,
- the categories of sources from which personal information was collected,
- the business or commercial purpose for collecting the personal information, and
- the categories of third parties with whom we disclose or share personal information.
Right to Deletion of Personal Information: You have the right to request deletion of personal information collected from you, subject to certain exceptions including that we need the personal information to:
- Complete a transaction or provide a good or service you requested, service your account, or take other actions reasonably anticipated or aligned within the context of our ongoing business relationship,
- Detect security incidents, protect against malicious, deceptive, fraudulent, or illegal activity, or prosecute those responsible for such activities,
- Comply with a legal obligation, or
- Otherwise use your personal information, internally, in a lawful manner that is compatible with the context in which you provided the information.
Right to Correct Personal Information: You have the right to request we correct any inaccurate information we have about you. We may request that you provide documentation to support your request and we will correct your information unless we determine that the personal information is more than likely accurate.
Non-Discrimination Rights: We don’t discriminate against you if your exercise any of the privacy rights described in this privacy statement.
Verified Requests: To protect you and your personal information, we will only respond to requests to know, access, delete or correct that we have been able to properly verify through our authentication processes. To verify your identity, you will be asked to provide several pieces of personal information, such as name and demographic information, which we only use to verify your identity or authority to make the request and to process the request.
Submitting a Request: To submit a request regarding your insurance information, follow the process in the Insurance Customers’ Rights section above. Personal insurance information will not be processed as part of a CCPA request.
To submit a CCPA access, deletion or correction request online, please click here or call us at 1-800-682-9284. Responses to a verified request may take up to 45 calendar days, or longer depending on the nature of the request. If additional time is needed, we will notify you of the additional time. We may only respond to two access requests within a 12-month period. Requests from authorized agents must be submitted via the same online portal or toll-free number but to protect your privacy, consumers will be required to verify their identity directly with us via our online portal or toll-free number.
Click here to view California Consumer Protection Act Request Metrics.
Montana Residents
Pursuant to Montana law, you may request a record of any disclosure of your medical information during the preceding three years. Please send requests to Direct Auto, PO Box 3199, Winston-Salem, NC 27102-3199.
Nevada Residents
Pursuant to Nevada law, if you do not want to receive sales calls from Direct Auto, you may request to be placed on our internal “do not call” list. To make this request, call 877-885-4315. Please make sure to provide us with your name, address, and all telephone numbers you wish to include on our list. For further information, you may also contact the Office of the Nevada Attorney General, Bureau of Consumer Protection at:
555 E. Washington Avenue, Suite 3900
Las Vegas, NV 89101
Phone: (702) 486-3132
Email: BCPINFO@ag.state.nv.us
Direct Auto’s “do not call” list is limited only to telephone solicitation calls. We may still contact you about your Direct Auto policy, billing issues, claims and other service matters.
Vermont Residents
We won't share your personal information with Direct Auto companies for marketing purposes except as allowed by Vermont law.
Social Media, Links and External Sites
Links to other company’s websites may be provided on the Direct Auto Sites as a convenience to you. If you choose to go to these external websites, you will be subject to the privacy practices of those external websites; Direct Auto is not responsible for the privacy practices of those websites. We encourage you to be aware when you leave our Site to read the privacy policies or statements of every website you visit, as those privacy policies or statements may differ from ours. Our Privacy Statement applies solely to the Sites where this Privacy Statement appears.
Our website includes Social Media features, such as the Facebook Like button and widgets, such as the Share This button or interactive mini-programs that run on our site. These features may collect your IP address, which page you are visiting on our website, and may set a cookie to enable the feature to function properly. Social Media features and widgets are either hosted by a third party or hosted directly on our Site. Your interactions with these features are governed by the privacy policy of the company providing it.
Security
Protecting your personal information is important to us. We use a combination of reasonable technical, administrative, and physical safeguards to protect your personal information. However, no website, mobile application, database, or system is completely secure or “hacker proof.” So, we cannot guarantee its absolute security. You are also responsible for taking reasonable steps to protect your personal information against unauthorized disclosure or misuse.
We limit access to your personal information to those who need it to do their jobs. We comply with all applicable federal and state data security laws.
Contact Us
If you should have questions or concerns about our privacy practices, please contact us at 844-874-3609.
Changes To Our Privacy Statement
We may periodically update or revise this Privacy Statement. The effective date at the top of the document shows when this Privacy Statement was last revised. We will let you know when we update the Privacy Statement by changing the date or other appropriate means.
Affiliates
This Privacy Statement describes the privacy practices of Direct Auto and its affiliates whose websites and mobile apps link to this Privacy Statement.
Personal information may be shared for marketing purposes among Direct Auto and Direct Auto’s affiliates linking to this Privacy Statement as well as other affiliated companies that may have separate online privacy statements, including: Agent Alliance Insurance Co.; Allstate Dealer Services; Allstate Financial Services; Allstate insurance companies offering home, auto, health and business insurance; Allstate, National General, and Signature roadside services and motor club companies; Allstate Protection Plans, Allstate Identity Protection; Arity; Castle Key insurance companies; Century-National Insurance Co.; ECMI Auto Insurance Co.; Encompass insurance companies; Imperial Fire & Casualty Insurance Co.; Integon insurance companies; MIC General Insurance Corp; National General insurance companies; New South Insurance Co.; North Light Specialty Insurance Co.; Old American County Mutual Fire Insurance Co.; Safe Auto insurance companies; Standard Property and Casualty Ins. Co.; Underwriting and other companies that now or in the future control, are controlled by, or are under common control with the Allstate Corporation.