Park Place Realty · License: B.143790 · Las Vegas
Yourdata,yourrights.
What we collect, how we use it, who sees it, and the controls you have — in plain language.
Effective date: May 3, 2026 | Last updated: May 25, 2026
Your information belongs to you. This policy explains — in plain language — what Park Place Realty, LLC (NRED# B.0143790.LLC) collects when you visit this site or work with us, why we collect it, who sees it, how long we keep it, and how you can exercise your rights.
If you use mortgage financing services, those are provided by Geneva Financial, LLC (NMLS# 42056) — an independent company with its own privacy policy. This policy covers Park Place Realty only.
Who we are
A Las Vegas brokerage, since 1990.
Park Place Realty, LLC is a Nevada-licensed real estate brokerage. We've served Las Vegas families for over 35 years — from Henderson to North Las Vegas, from Summerlin to the east side.
Principal office: 400 S. Jones Blvd., Las Vegas, NV 89107
Privacy contact:privacy@parkplacerealtylv.com
Phone:(702) 736‑3000 (English & Spanish)
What information we collect
Only what's needed to respond to your requests and run the site safely.
Information you give us directly
When you fill out a form on this site, you choose what to share. Depending on the form, that may include:
- Contact information — name, email, phone, preferred language
- Property details — address, ZIP code, property type, square footage, age, condition (when you request a valuation)
- Financing situation — loan amount, credit score range, down payment, income, employment status (when you request pre-qualification)
- Journey context — where you are in the process (exploring, researching, ready soon), whether you plan to use an ITIN
- Messages — anything you write in the free-text field
We also collect the content of calls, video meetings, or emails you initiate with us. Phone and video communications are handled through RingCentral, our business communications provider.
Information collected automatically
When you visit, the site collects limited technical information:
- Browser and device — browser type, operating system, language, timezone
- Visit data — pages viewed, time on site, referral source (only when you consent to Analytics)
- IP address — stored as a SHA-256 hash in our consent records, never as plain text
- Your approximate location — state-level only (California, Nevada, or other), used to show you the right privacy controls. Detected via Cloudflare geolocation headers, not GPS or fine-grained tracking
- Security logs — error records and Content Security Policy violation reports, kept for debugging only
Cookies and tracking
Four categories. You control three of them.
When you arrive on the site, we show you a consent banner with four categories. You decide which to accept. You can change your mind at any time by clicking the cookie icon in the page footer.
Necessary Always on
Security + consent
Anti-spam verification (Cloudflare Turnstile) and storing your consent decision. No tracking, no profiling. These can't be turned off because the site wouldn't function safely without them.
Functional
Language preference
Remembers whether you prefer English or Spanish so you don't have to choose every visit. Stored in your browser's local storage — not sent to any server.
Analytics
Site usage
Helps us understand which pages serve our visitors and which don't. Consent-gated analytics tools load only after you accept this category. Cloudflare Web Analytics runs separately — it's cookieless and doesn't require consent.
Advertising
Ad attribution (Meta)
Meta Pixel and Meta Conversions API for ad attribution — measuring whether our Facebook/Instagram ads are reaching the right people. This is the CCPA "Sale/Share" category. You can decline it without losing Analytics. The Global Privacy Control (GPC) browser signal opts you out automatically.
What we store in your browser: your consent decision (with timestamp, jurisdiction, and method), your language preference, and form submission cooldown timers. Nothing else.
Why we collect it and who sees it
Why
- To respond to your requests — forms, calls, valuations, pre-qualifications
- To coordinate real estate transactions and, when applicable, mortgage financing through Geneva Financial
- To meet regulatory requirements — Nevada Real Estate Division, NMLS, TILA, RESPA, Fair Housing Act
- To improve the site and our services
- To detect and prevent fraud or abuse
- With your explicit consent, for marketing communications
Who we share your information with
We share information with the following parties, exclusively for the purposes described:
Geneva Financial, LLC (NMLS# 42056)
When you request mortgage services, we forward your information to Geneva Financial so they can contact you directly. Geneva is an independent company with its own privacy policy and its own GLBA privacy notice.
Google Workspace (Google LLC)
Form submissions are processed and stored through Google Workspace tools (Sheets, Drive, Gmail). Google Workspace data centers are SOC 2/3 and ISO 27001 certified. Data is encrypted in transit and at rest.
RingCentral
When you call us or we call you back, the call is routed through RingCentral. Call recordings, voicemails, and SMS messages are stored on RingCentral's SOC 2 Type II certified, encrypted infrastructure.
Cloudflare
Hosting, DNS, anti-spam (Turnstile), and privacy-first analytics. Cloudflare Web Analytics doesn't use cookies and doesn't require your consent. Cloudflare also provides geolocation headers that tell us your state — not your street address — so we can show the right privacy controls.
Meta (Facebook / Instagram)
Only when you give explicit Advertising consent. Receives conversion events through our pixel (browser-side) and through the Conversions API (server-side). Personal information shared via CAPI — email and phone — is hashed with SHA-256 before transmission.
Transaction professionals
Title officers, escrow officers, inspectors, appraisers, insurance agents — but only when you're in an active transaction with us and the information is necessary to complete it.
Regulatory authorities
When required by law — subpoenas, requests from the Nevada Real Estate Division, or other legal obligations.
We don't sell your personal information. We don't hand it to data brokers. We don't use it to build profiles for third parties. The only "sharing" (in CCPA's expanded definition) is the Meta ad-attribution flow described above — and that only happens with your explicit consent.
How long we keep your information
| Data type | Retention | Why |
|---|---|---|
| Real estate transaction records | 5 years | Nevada Administrative Code 645 requires brokerages to retain transaction records for 5 years |
| Financial records (mortgage applications) | Per GLBA | Geneva Financial's retention obligations under the Gramm-Leach-Bliley Act |
| Cookie consent decisions | 2 years | Demonstrating consent compliance; stored in Cloudflare KV with automatic expiration |
| Security error logs | 30 days | Debugging and anti-bot triage |
| CSP violation reports | 90 days | Security monitoring |
| Email communications | While active | Retained while the relationship is active, or as legally required |
When a retention period expires, we delete the information. If you request deletion before the period ends and no legal obligation prevents it, we delete it early.
Security
Multiple layers, from the network edge to the data at rest.
In plain terms: encrypted connections everywhere, anti-bot filtering on every form, rate limiting against abuse, no plain-text storage of sensitive identifiers, and one-way hashing of anything sent to advertising partners. If you want the technical specifics — exact protocols, headers, mechanisms — they’re below.
Technical specifics (open for protocols, headers, infrastructure)
Network and infrastructure
- HTTPS everywhere — TLS 1.3 enforced by Cloudflare on all connections, with HSTS preloading and automatic certificate rotation
- Cloudflare WAF — web application firewall filters malicious traffic before it reaches the server, with managed rulesets updated continuously
- DDoS protection — Cloudflare's global network absorbs volumetric attacks at the edge
- DNS security — DNSSEC-signed zones prevent DNS spoofing; CAA records restrict certificate issuance to authorized authorities
- Early Hints — security headers (CSP, Permissions-Policy, X-Frame-Options) delivered via 103 Early Hints before the page body, closing the window for header-injection attacks
Application security
- Content Security Policy (CSP) — strict allowlist restricts which scripts, styles, fonts, and connections the page can make. Violations are reported to our CSP endpoint and logged for review
- Anti-bot verification — invisible Cloudflare Turnstile, honeypot fields, and mount-time validation reject automated submissions without adding friction for real visitors
- Rate limiting — form submissions capped at 3 per hour per IP; consent logging capped at 30 per hour. Excessive requests receive HTTP 429 with a Retry-After header
- Input validation — real-time character filtering on form fields (name, phone, email patterns), server-side re-validation on every submission. No client input is trusted without server verification
- Subresource integrity — third-party scripts loaded with integrity hashes to prevent tampering
Data protection
- Encryption at rest — Cloudflare KV (consent logs, error logs) and Google Workspace (form data, documents) both encrypt data at rest
- IP hashing — consent records store your IP address as a SHA-256 hash, not plain text. The hash is one-way — we cannot reverse it back to your IP
- PII hashing for Meta — when you consent to advertising, email and phone shared with Meta CAPI are hashed with SHA-256 before transmission
- Access control — administrative access is restricted to personnel with legitimate business need. Google Workspace enforces 2-factor authentication on all team accounts
- RingCentral encryption — calls, voicemails, and SMS are encrypted in transit (TLS) and at rest within RingCentral's SOC 2 Type II certified infrastructure
No internet transmission is 100% secure. If you notify us of an incident, we'll take reasonable steps and, when legally required, notify you under applicable breach-notification laws.
Your rights
You have rights over your information — here's how to use them.
Rights everyone has
- Access the information we have about you
- Correct inaccurate or outdated information
- Delete your information (subject to legal retention obligations)
- Withdraw marketing consent at any time
- Port your information in a portable format
Additional rights for California residents (CCPA / CPRA)
If you reside in California, you also have the right to:
- Know what personal information we collect, sell, or share
- Opt out of the "sale" or "sharing" of your personal information for behavioral advertising
- Limit the use of sensitive personal information
- Non-discrimination — we won't treat you differently for exercising these rights
Additional rights for Nevada residents (NRS 603A.300-360)
Under Nevada's online privacy law, you may request that we not sell your covered personal information. We don't sell personal information — but you have the right to formally make the request and receive written confirmation.
How to exercise your rights
Email privacy@parkplacerealtylv.com or call (702) 736‑3000. We respond within 30 days — or 45 days for complex requests, with prior notice.
You can also submit requests directly from this page:
Authorized agents
If someone is filing on your behalf — a parent for a child, a guardian, or an attorney-in-fact — include authorization documentation with the request. We verify before processing.
Additional notices
Financial services and GLBA privacy
When you request pre-qualification or financing information, some of the data you provide may be covered by the Gramm-Leach-Bliley Act (GLBA) — the federal financial privacy law. Non-public financial information is handled in coordination with Geneva Financial under applicable GLBA standards. Geneva provides its own GLBA privacy notice when you establish a financial relationship with them.
Phone, video, and SMS communications (TCPA)
If you give us your phone number on a form, we'll use it to respond directly about the request you submitted. All phone calls, video meetings, and SMS are handled through RingCentral, our business communications provider. We don't use auto-dialers, and we won't sell your number. Call recordings and voicemails are stored on RingCentral's encrypted infrastructure and retained while the business relationship is active. If at any point you want us to stop contacting you by phone or SMS, reply STOP to any SMS you receive, or write to privacy@parkplacerealtylv.com.
Children
Our site is not directed at children under 16. We don't knowingly collect personal information from children under 16. If you believe a child has provided us information, contact privacy@parkplacerealtylv.com and we'll delete it.
Changes to this policy
We may update this policy. When we make material changes, we'll update the "Last updated" date above and, if the changes affect your rights, notify you through the channels you've already authorized.
Contact us about privacy
For any questions about this policy or your information:
- Email:privacy@parkplacerealtylv.com
- Phone:(702) 736‑3000
- Mail: Park Place Realty, LLC, 400 S. Jones Blvd., Las Vegas, NV 89107
