Privacy Policy
Last updated: July 20, 2026
Counterparty Watch (“Counterparty Watch,” “we,” “us,” or “our”) provides public-signal intelligence that helps organizations assess counterparty and cyber risk. This Privacy Policy explains how we collect, use, disclose, and protect personal information (1) when you visit counterparty.watch or contact us, and (2) when we compile intelligence reports that may include personal information about individuals connected to the companies we analyze. It also describes the rights you may have under U.S. privacy laws, including the California Consumer Privacy Act as amended by the California Privacy Rights Act (“CCPA/CPRA”).
1. Information we collect about website visitors
Our website is intentionally lightweight. We do not use cookies, analytics, advertising trackers, or similar technologies, and we do not build profiles of the people who browse the site. The only personal information we receive from visitors is what you choose to send us — for example, when you email us to request a report or ask a question. That typically includes your name, email address, the company you are evaluating, and anything else you include in your message. Our hosting and email providers may automatically log limited technical data (such as IP address and request metadata) to keep the service secure and running.
2. Information we collect for our intelligence services
The core of our service is analyzing information that is already public. To produce reports, we collect and process information from publicly available sources, which may include personal information about individuals associated with the companies we investigate — for example, current and former employees, executives, and reviewers. This can include names, job titles and professional history, and statements, reviews, or posts that people have chosen to publish in public forums such as employee-review sites, professional networks, engineering and security communities, news coverage, and public records.
We focus on what this information reveals about an organization’s operational, security, financial, and product risk — not on the private lives of individuals. Where we quote or reference an individual’s public statement, we do so to evidence a finding about the company, and every finding is traceable to a public source.
Note on “publicly available” information.Under the CCPA/CPRA, information that is lawfully available from government records, or that a person has made available to the general public, or that is widely distributed in media, is generally not treated as “personal information.” Much of the information we process falls into this category. We nonetheless handle it responsibly and honor the rights described below to the extent they apply.
3. Categories of personal information we collect
In the past 12 months we may have collected the following categories of personal information, as defined by the CCPA/CPRA:
- Identifiers — such as your name and email address (from you), and names and public professional identifiers (from public sources).
- Professional or employment-related information — such as job titles, employer, and career history drawn from public sources.
- Internet or network activity — limited server logs generated when you use the website.
- Publicly available content — public reviews, posts, and statements attributed to individuals.
- Inferences— conclusions we draw about an organization’s risk. Our inferences describe companies, not consumer profiles for marketing.
We do not collect Social Security numbers, financial account numbers, precise geolocation, biometric data, or other “sensitive personal information” for the purpose of inferring characteristics about individuals.
4. How we use information
We use information to operate and secure the website; respond to your inquiries and deliver the reports you request; research, compile, and quality-check our intelligence reports; compare a subject company to peers matched on industry and size; and comply with applicable law. We do not use website-visitor information for advertising, and we do not sell it or use it to train advertising or unrelated third-party models.
5. How we disclose information
We are not in the business of selling personal information. In the past 12 months we have not “sold” or “shared” personal information as those terms are defined under the CCPA/CPRA, and we do not do so.
We disclose information only:
- To our clients, in the reports they commission — reports may reference individuals’ public statements as evidence for findings about a company.
- To service providers who help us operate (such as hosting, email, and security vendors), under contracts that limit their use of the information to our purposes.
- Where required by law, or to protect our rights, safety, or the integrity of our service.
6. Data retention
We keep personal information only as long as needed for the purposes described here — to maintain our correspondence with you, to support and substantiate the reports we have delivered, and to meet legal, security, and record-keeping requirements — after which we delete or de-identify it.
7. Data security
We take reasonable technical and organizational measures to protect the information we hold against unauthorized access, alteration, or disclosure. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
8. Your privacy rights
Depending on where you live, you may have some or all of the following rights:
- Right to know / access — the categories and specific pieces of personal information we have collected, the sources, our purposes, and the categories of recipients.
- Right to delete — request deletion of personal information we hold about you, subject to legal exceptions.
- Right to correct — request correction of inaccurate personal information.
- Right to opt out of sale/sharing — although we do not sell or share personal information, you may still direct us not to.
- Right to limit sensitive personal information — we do not use sensitive personal information for purposes that require this option.
- Right to non-discrimination — we will not discriminate against you for exercising any of these rights.
How to exercise your rights. Email us at [email protected] with the details of your request. To protect your information, we may need to verify your identity before we act, and we will ask only for information reasonably necessary to do so. You may use an authorized agent to submit a request on your behalf. We will respond within the timeframes required by applicable law.
Individuals referenced in our reports. If you believe your personal information appears in our research and you would like to access or delete it, contact us at the address above. Because our work analyzes information that is already public and may serve legitimate business, security, research, or public-interest purposes, some requests may be subject to legal exceptions — for example, where information is publicly available, or where retaining it is necessary to substantiate a delivered report or to comply with law. We will explain our reasoning where we are unable to fully honor a request.
9. “Do Not Sell or Share My Personal Information”
We do not sell or share personal information, and we do not use or disclose sensitive personal information for purposes that would trigger a right to limit. No action is needed on your part, but you may still contact us to record your preference.
10. Children’s privacy
Our website and services are directed to businesses and professionals, not to children. We do not knowingly collect personal information from anyone under 16. If you believe a child has provided us personal information, contact us and we will delete it.
11. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date above, and material changes will be reflected on this page.
12. Contact us
Questions or requests about this Privacy Policy or your personal information can be sent to [email protected].