Return to sign in

DATA ROOM · DRAFT FOR COUNSEL

Privacy notice

1. Controller and contact

[Insert the responsible Yodl legal entity, registered address, and privacy contact.]

2. Information we process

We process your name, business email, organisation, invitation and access state, sign-in timestamps, document opens and downloads, access denials, and limited technical security information. We do not use session replay or record keystrokes.

3. Why we process it

We use this information to authenticate invited users, secure confidential material, administer diligence, understand which requested materials have been reviewed, respond to questions, and meet legal obligations.

4. Legal basis

[Counsel to confirm the applicable bases, expected to include legitimate interests, steps connected with a potential transaction, contractual obligations, and legal obligations.]

5. Recipients and transfers

Information may be processed by Yodl personnel and approved infrastructure providers strictly as needed to operate the room. [List providers, hosting locations, destination countries, and safeguards before launch.]

6. Retention

Access events should be retained for a defined diligence and security period, proposed as 12 months after the room closes, then deleted or aggregated unless law or a dispute requires longer retention. Counsel must approve the final schedule.

7. Your rights

Depending on applicable law, you may request access, correction, deletion, restriction, objection, or portability, and may complain to a supervisory authority. Contact [privacy email] to make a request.

8. Cookies

The room uses strictly necessary session storage for secure sign-in. Non-essential analytics or advertising cookies are not planned. If that changes, this notice and any required controls must be updated before deployment.