Skip to content

Data privacy

The right questions come before sharing.

Useful records can include personal information, confidential work, and material owned by others. The proposed use needs its own review.

Start with scope
and permissions.

Identify the source, the rights that cover it, and the use a buyer needs. Having access to a system does not settle the right to license its contents.

The first assessment collects descriptions. It does not approve a dataset for transfer.

Flag these sources early

  • Customer or employee personal information
  • Private conversations and sensitive subjects
  • Passwords, credentials, and payment details
  • Third-party documents or copyrighted material
  • Contractual limits and confidential business information

Removing a name
is not the whole review.

Dates, unusual events, locations, and combined details can still identify someone. Replacing identifiers with codes can leave personal data identifiable.

Define the handling controls.

  • Which information is necessary for the task
  • What must be removed or excluded
  • Who may review a sample and where it is held
  • The approved transfer method and retention period
  • How changes to the scope will be reviewed

Controls depend on the source and intended use. We do not promise that every source can be made anonymous or licensed.

Read the permissions and privacy guide

Start with a source description.

Tell us what you hold and what still needs review. No raw records are needed for the first assessment.

See if your data qualifies