Privacy and security
Branch goes beyond compliance to protect customer data and earn trust at every step.
Guided by strong privacy principles
Branch builds mobile linking and measurement platforms for marketers, product teams, and developers. From day one, privacy has shaped how we design our services.
Below are the guiding privacy principles that inform how we operate written in plain language and grounded in practical safeguards.
We limit the data we collect
We practice data minimization, which means that we avoid collecting or storing information that we dont need to provide our services. We do not collect or store sensitive end-user information, nor do we want to. In fact, our Terms & Conditions prohibit it.
We will only provide you with data about actual end-user activity on your apps or websites
We help our customers understand the relationship between web and app sessions for users they have already seen across their platforms. We do not let customers access data beyond the direct interactions they have with their own users.
We do not rent or sell personal data
Your data is your data no matter what. Neither your competitors nor any other company will ever have access to it. We are not in the business of renting or selling any customers end-user data.
Privacy advocacy
Branch is committed not only to protecting customer data, but also to advocating for transparency, user control, and responsible data practices across the industry.
Branch is a proud member of the Network Advertising Initiative (NAI), alongside Adobe, Microsoft, and Oracle. The NAI brings together industry leaders, policymakers, and consumer advocates to address challenges created by new technologies and to promote privacy protections, ethical standards, and accountable business practices in digital advertising.
GDPR & CCPA
Our commitment to you
Branch helps customers meet both the letter and the spirit of privacy laws and regulations, including General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA). We believe respecting user privacy is not just a legal requirement its the right thing to do.
Weve invested heavily in building products that support compliance in a simple, practical way, and we continue to invest in industry-leading data privacy initiatives.
Health Insurance Portability and Accountability Act (HIPAA)
Branch Advanced Compliance supports organizations in regulated industries, including healthcare, that need stronger controls around data access and governance.
HIPAA compliance assistance
Customers that must safeguard protected health information (PHI) can enter into a Business Associate Agreement (BAA) with Branch for HIPAA-eligible solutions. Advanced Compliance provides enhanced security configurations to support HIPAA-aligned handling of limited, individually identifiable health information.
Advanced Compliance solutions
Branch Advanced Compliance addresses key standards across the HIPAA Security, Privacy, and Breach Notification Rules through:
- Isolated data environments
- Strong authentication
- Multiple layers of encryption
Our security best practices
Comprehensive security program
Dedicated security team
Branchs security team brings deep expertise in cloud application security and governance, and continuously evolves security and governance practices in response to emerging threats.
Product security
Our secure software development lifecycle enforces diligent security reviews, secure coding practices, and continuous security testing using a mix of internal and external penetration tests and independent third-party security programs.
Security is in our DNA
State of the art security measures to meet your needs
Cloud security
- Physical security controls
- Intrusion detection and prevention
- Virus and malware protection
- Vulnerability detection and management
- Security patch management
- Continuous security information and event management (SIEM)
Data security
- Industry-strength data encryption in transit and at rest
- Data leakage prevention solution
- Proactive security monitoring to secure data and assets
Meet our security and privacy leaders
Lester Chan (he/him)
Head of Security and IT
Lester Chan (he/him)
Head of Security and IT
About
Lester Chan (he/him) is head of security and IT at Branch. Lester and his team play a critical role in maintaining a secure and trustworthy environment for Branch and its customers. With over 30 years of experience in IT, security risk, and compliance, Lester is dedicated to upholding the highest standards of safety, compliance, and user satisfaction. Prior to joining Branch, Lester served as VP, chief information security officer at KOHO and head of enterprise security at Zoom Video Communications. He holds a B.S. from San Jose State University in Management Information Systems and MBA from San Francisco Bay University.
Ayisha Gelin (she/her)
Senior Product & Privacy Counsel and Data Protection Officer
Ayisha Gelin (she/her)
Senior Product & Privacy Counsel and Data Protection Officer
About
Ayisha serves as the data protection officer for Branch and its subsidiaries and as senior product & privacy counsel at Branch. Ayisha provides counsel to Branch on strategic initiatives to ensure compliance with evolving data privacy regulations. Prior to joining Branch, Ayisha worked as senior privacy & product counsel at Okta, and as director, legal affairs at Catalyst. She has extensive expertise and has spent several years working across industries specializing in the areas of privacy and data protection. Ayisha obtained a J.D. from Fordham University School of Law and a B.A. from New York University.