Privacy and security

What gets shared, what never does, and who decides.

Short version: you decide. Here is how that works at every step.

What buyers want, and what stays home

What buyers pay for
  • Procedures, playbooks, and knowledge bases
  • Ticket, project, and CRM histories
  • Internal communication that shows how decisions get made
  • Industry-specific work: finance, support, sales, legal, operations, engineering
What stays out or gets transformed
  • Customer and employee personal details
  • Health records, payment card and bank account data, anything about children
  • Attorney-client material and anything a contract says you cannot share
  • Passwords, keys, and security details
  • Anything you choose to exclude, for any reason

Buyers want to see how the work gets done. They are not paying for your people's private details.

How personal details are handled

Before your data is used, the buyer removes or replaces personal information. The better methods swap each real person for one consistent made-up identity across every file, so the work still makes sense without the real names.

This is the buyer's process and the buyer's responsibility, and buyers are not equally good at it. No method catches everything. That is why we make every buyer show their method and results before you share anything, and why your exclusions come first.

What we ask every buyer

How do you handle personal information, and how well?

The method, and the measured results on data like yours.

Who sees the raw data, and where?

Named roles, isolated environments, and access logs.

Can you resell it, and to whom?

Including any limits on overseas buyers.

Is it exclusive?

Whether you can license the same data again.

How long do you keep it?

And whether deletion on request is in the contract.

When does money move, and what protects the seller?

Payment milestones, clawbacks, and who is responsible if something leaks.

You see every buyer's answers side by side before you choose.

What Heartland does and does not touch

We do not take admin control of your systems or hold your logins.

We do not run your exports or your transfer. Authorized people on your team do, with us guiding them live.

We do bring the playbook, the checklist, and the checks that what is delivered matches what was agreed.

If a deal ever needs us to handle files directly, that only happens under a written scope and security process you approve first.

Your approvals, in order

  1. You approve what goes into the package.
  2. You approve which buyers see it, and what samples they get.
  3. You choose the offer.
  4. You approve and run the final transfer.

Nothing moves past any of these without your say-so.

The honest part

Selling data carries real risk, and anyone who tells you otherwise is selling something. Scrubbed data can still reveal things through context. Your customer contracts, employee agreements, and privacy policy may limit what you can license. Those are questions for your attorney, and we will not take a package to market until they have been asked.

Take the assessment

Heartland Data Co does not provide legal or privacy advice and does not certify that data can be legally licensed.