CCPA, GDPR, and SOC 2 Type II are not afterthoughts at BuyerNetwork — they are architectural requirements. Every data pipeline, identity graph, and delivery mechanism is built to meet the highest global privacy standards.
Is visitor identification legal in the US?
Yes. BuyerNetwork operates exclusively on data collected through lawful, consent-based channels. Our identity graph is built from opt-in data sources and complies with federal law and all 50 state privacy statutes.
How do you handle CCPA opt-out requests?
We automatically process Global Privacy Control (GPC) signals and provide a dedicated DSAR API for programmatic opt-out and deletion requests. Suppression lists are propagated across all platforms within 24 hours.
Where is my data stored?
All customer data is stored in US-based data centers by default. EU data residency is available for enterprise accounts. Data is never sold or shared with third parties outside of your configured integrations.
Do you sign Data Processing Agreements?
Yes. DPAs are available for all customers and are required for any EU-based operations. Contact our compliance team via the IR page for enterprise DPA requests.
Our compliance team can provide SOC 2 reports, DPAs, CCPA addendums, and security questionnaires for enterprise procurement and due diligence.