Last updated 30 August 2026
Privacy
This notice explains what DataRoom BD collects when you visit the public site or use a provisioned workspace.
Public site
The marketing pages, legal pages, and sign-in flows collect standard request logs (IP address, user agent, and the path requested) needed to operate and secure the service. We do not sell this information.
Accounts
If you have a provisioned account we store the email, username, and display name you provide, plus password hashes and session cookies used to keep you signed in. Password reset uses a short-lived token sent to your email.
Workspace content
Documents, comments, screening results, and audit events uploaded or generated in a client room belong to that workspace. They are visible only to members and guests with a valid token. Access is written to a hash-chained audit trail so a reviewer can reconstruct who opened what.
Cookies
We use a session cookie after sign-in. The public pages do not require a session. You can use the site without accepting marketing cookies — we do not run a third-party ad pixel on these pages.
Requests
Privacy questions from a workspace should go to that workspace's administrator. Account holders can use the in-product help surface or the forgot-password flow to recover access.