§ 146a.14. Form of opt out notice to consumers and opt out methods.
(a) Opt out notice.
(1) Form of opt out notice. If a licensee is required to provide an opt out notice under § 146a.21(a) (relating to limitation on disclosure of nonpublic personal financial information to nonaffiliated third parties), it shall provide a clear and conspicuous notice to each of its consumers that accurately explains the right to opt out under that section. The notice shall state all of the following:
(i) That the licensee discloses or reserves the right to disclose nonpublic personal financial information about its consumer to a nonaffiliated third party.
(ii) That the consumer has the right to opt out of that disclosure.
(iii) A reasonable means by which the consumer may exercise the opt out right.
(2) Examples.
(i) Adequate opt out notice. A licensee provides adequate notice that the consumer can opt out of the disclosure of nonpublic personal financial information to a nonaffiliated third party if the licensee does both of the following:
(A) Identifies all of the categories of nonpublic personal financial information that it discloses or reserves the right to disclose, and all of the categories of nonaffiliated third parties to which the licensee discloses the information, as described in § 146a.13(a)(2) and (3) (relating to information to be included in privacy notices), and states that the consumer can opt out of the disclosure of that information.
(B) Identifies the insurance products or services that the consumer obtains from the licensee, either singly or jointly, to which the opt out direction would apply.
(ii) Reasonable opt out means. A licensee provides a reasonable means to exercise an opt out right if it does any of the following:
(A) Designates check-off boxes in a prominent position on the relevant forms with the opt out notice.
(B) Includes a reply form together with the opt out notice.
(C) Provides an electronic means to opt out, such as a form that can be sent by means of electronic mail or a process at the licensees website, if the consumer agrees to the electronic delivery of information.
(D) Provides a toll-free telephone number that consumers may call to opt out.
(iii) Unreasonable opt out means. A licensee does not provide a reasonable means of opting out if the only means of opting out is either of the following:
(A) For the consumer to write a letter to exercise that opt out right.
(B) As described in any notice subsequent to the initial notice is to use a check-off box that the licensee provided with the initial notice but did not include with the subsequent notice.
(3) Specific opt out means. A licensee may require each consumer to opt out through a specific means, as long as that means is reasonable for that consumer.
(b) Same form as initial notice permitted. A licensee may provide the opt out notice together with or on the same written or electronic form as the initial notice the licensee provides in accordance with § 146a.11 (relating to initial privacy notice to consumers required).
(c) Initial notice required when opt out notice delivered subsequent to initial notice. If a licensee provides the opt out notice later than required for the initial notice in accordance with § 146a.11, the licensee shall also include a copy of the initial notice with the opt out notice in writing or, if the consumer agrees, electronically.
(d) Joint relationships.
(1) If two or more consumers jointly obtain an insurance product or service from a licensee, the licensee may provide a single opt out notice. The licensees opt out notice shall explain how the licensee will treat an opt out direction by a joint consumer (as explained in paragraph (5)).
(2) Any of the joint consumers may exercise the right to opt out. The licensee may either:
(i) Treat an opt out direction by a joint consumer as applying to all of the associated joint consumers.
(ii) Permit each joint consumer to opt out separately.
(3) If a licensee permits each joint consumer to opt out separately, the licensee shall permit one of the joint consumers to opt out on behalf of all of the joint consumers.
(4) A licensee may not require all joint consumers to opt out before it implements any opt out direction.
(5) An example is as follows: If John and Mary are both named policyholders on a homeowners insurance policy issued by a licensee and the licensee sends policy statements to Johns address, the licensee may do any of the following, but it shall explain in its opt out notice which opt out policy the licensee will follow:
(i) Send a single opt out notice to Johns address, but the licensee shall accept an opt out direction from either John or Mary.
(ii) Treat an opt out direction by either John or Mary as applying to the entire policy. If the licensee does so and John opts out, the licensee may not require Mary to opt out as well before implementing Johns opt out direction.
(iii) Permit John and Mary to make different opt out directions. If the licensee does so all of the following apply:
(A) The licensee shall permit John and Mary to opt out for each other.
(B) If both opt out, the licensee shall permit both of them to notify it in a single response (such as on a form or through a telephone call).
(C) If John opts out and Mary does not, the licensee may only disclose nonpublic personal financial information about Mary, but not about John and not about John and Mary jointly.
(e) Time to comply with opt out. A licensee shall comply with a consumers opt out direction as soon as reasonably practicable after the licensee receives it.
(f) Continuing right to opt out. A consumer may exercise the right to opt out at any time.
(g) Duration of consumers opt out direction.
(1) A consumers direction to opt out under this section is effective until the consumer revokes it in writing or, if the consumer agrees, electronically.
(2) When a customer relationship terminates, the customers opt out direction continues to apply to the nonpublic personal financial information that the licensee collected during or related to that relationship. If the individual subsequently establishes a new customer relationship with the licensee, the opt out direction that applied to the former relationship does not apply to the new relationship.
(h) Delivery. When a licensee is required to deliver an opt out notice by this section, the licensee shall deliver it according to § 146a.16 (relating to delivery).
Cross References This section cited in 31 Pa. Code § 146a.13 (relating to information to be included in privacy notices); 31 Pa. Code § 146a.21 (relating to limits on disclosure of nonpublic personal financial information to nonaffiliated third parties); 31 Pa. Code § 146a.31 (relating to exception to opt out requirements for disclosure of nonpublic personal financial information for service providers and joint marketing); 31 Pa. Code § 146a.32 (relating to exceptions to notice and opt out requirements for disclosure of nonpublic personal financial information for processing and servicing transactions); and 31 Pa. Code § 146a.33 (relating to other exceptions to notice and opt out requirements for disclosure of nonpublic personal financial information).
No part of the information on this site may be reproduced for profit or sold for profit.
This material has been drawn directly from the official Pennsylvania Code full text database. Due to the limitations of HTML or differences in display capabilities of different browsers, this version may differ slightly from the official printed version.