How we collect, use, and protect information — whether you're browsing our site, working with us as a client, or your business contact details appear in a dataset we've sourced for a client.
RI Digital Research ("we," "us," "our") is a remote B2B data and outbound agency operated as a sole proprietorship. We don't have a single office or phone line — our team works from multiple countries, and every part of our business is run through written, documented channels. This policy explains what information we collect, why, and what rights you have over it, whether you're a website visitor, a client, a checkout customer, or someone whose business contact details appear in a dataset we've delivered to a client.
We collect the minimum we need to run the business and deliver your project, we never sell personal data, and if your business contact details ever show up in a list we've built for a client, you can ask us to remove them — see Section 5.
This policy covers three distinct groups, because our business touches personal data in three different ways:
We use cookies and Google Analytics to understand how visitors use our site (pages viewed, general location by IP, device/browser type). Full detail is in our Cookie Policy — this Privacy Policy only covers what that data is used for, not the mechanics of cookies themselves.
Payments are processed by Stripe, Payoneer, or card networks (Visa, Mastercard, JCB, Discover) depending on the order. We never see or store your full card number — that's handled entirely by our payment processors, who maintain their own PCI-compliant security standards and privacy policies.
The lists we build for clients are sourced from public, professional sources — never scraped from private accounts or bought as consumer data. If you're not one of our clients but you're reading this because your work contact info showed up somewhere, jump to Section 5 for how to have it removed.
A core part of our service is researching and verifying B2B contact data — names, job titles, company affiliations, and business email addresses — for our clients' outbound sales and marketing use. It's important that this policy addresses that data honestly, since it concerns people who are not our clients and never agreed to be in our systems directly.
We source exclusively from publicly accessible professional identifiers: corporate registries, verified business directories and networks (such as company websites and professional networking platforms), and public professional announcements (press releases, job change announcements, conference speaker listings, and similar public-facing sources).
We do not mine private or password-protected accounts, purchase pre-scraped consumer databases, or collect personal (non-business) information such as home addresses, personal phone numbers, or personal email accounts.
Data we deliver is intended for legitimate B2B outreach by our clients, consistent with CAN-SPAM, GDPR, and CCPA requirements — including honoring unsubscribe requests and not misrepresenting the sender. We contractually expect clients to use delivered data lawfully and are not responsible for a client's misuse of data once delivered, though we take reports of misuse seriously (see Section 9).
If your business name, title, company, or work email appears in a dataset we've researched and you'd like it removed from our active sourcing records:
Please note: if your information has already been delivered to a client as part of a completed project, we can remove it from our systems, but cannot retroactively delete it from a client's own CRM or mailing list — you may need to separately unsubscribe from that client's specific communications, which is a legal right under CAN-SPAM/GDPR that all our clients are expected to honor.
We do not use client or visitor personal data for advertising retargeting, and we do not sell personal data to third parties, ever.
We share information only in these limited circumstances:
We never sell personal data, and we never share client project data or contact form submissions with unrelated third parties for their own marketing purposes.
Because our team works remotely across multiple countries, data may be accessed or processed in jurisdictions other than your own. We limit access to team members who need it to deliver your project, and we take reasonable steps to keep data secure regardless of location (see Section 10).
| Data type | Retention period |
|---|---|
| Delivered project data / lead lists | 12 months post-delivery (covers the replacement-guarantee window), then securely deleted unless you request earlier deletion |
| Contact form submissions | 24 months, then deleted if no active relationship exists |
| Account & purchase / billing records | Retained as long as required by applicable tax and accounting law |
| Sourced research data not delivered to a client | Deleted or refreshed periodically; not retained indefinitely |
Depending on where you're located, you may have rights to access, correct, delete, or receive a copy of your personal data, and to object to or restrict certain processing. California residents have rights under the CCPA, including the right to know what's collected and to opt out of sale — we do not sell personal data, so there is nothing to opt out of on that front, but you can still request access or deletion at any time.
To exercise any of these rights, email [email protected]. We'll respond within 30 days.
We apply reasonable technical and organizational measures to protect data — including restricting access to only the team members who need it, using reputable, security-audited infrastructure providers, and never storing full payment card details ourselves. No system is 100% secure, but we treat every dataset, whether it's your business details or a client's delivered list, with the same care we'd want applied to our own.
Our services are business-to-business and not directed at, or intended for use by, anyone under 18. We do not knowingly collect personal data from minors.
We may update this policy as our services evolve. Material changes will be reflected by updating the "Last Updated" date at the top of this page. Continued use of our site or services after changes means you accept the updated policy.
Questions about this policy? Contact our support team — a real person will respond, not an automated system. Want to exercise a data right? Email [email protected].
A real person on our team reads every message — no automated ticket queue.
Contact Our Team