Sell Data to AI
Home Data Asset Score Pricing API documentation US labs and CROs list
For brokers
How to become an AI data broker Data broker business model Buyer programs compared Qualify a company AI training data companies
For data companies
Firmographic data providers Company data API
Seller guides
How to sell data to AI companies Is it legal? FAQ and glossary About
Check domain/company
Legal and privacy · Client secrets

Client Confidentiality and Data Sales: What Firms Can and Cannot Include

Law firms, accounting firms, M&A advisers, consultancies and agencies hold other people's secrets. Before you sell a copy of your records for AI training, the question is not only what you own. It is what you promised your clients.

Last checked: October 7, 2026. For companies, not for individuals selling their own data.

6+ employeesMode's published minimum for law firms
10+ employeesMode's published minimum for accounting firms
No customer infomicro1 says no customer information is exposed
Agreed copyMode says originals stay with the company
Ownership is not the issue

You can own the file and still be barred from sharing it

micro1's page says the company keeps ownership of its underlying data. Mode says it buys an agreed copy and the originals stay with you. Neither statement touches the harder question for a professional firm: what you agreed with the people whose matters fill your systems.

A 25-person accounting firm owns its servers, its practice software and the emails its staff wrote. Those emails are full of clients' revenue figures, payroll, tax positions and family details. A law firm's document system is mostly client matters. An M&A adviser's drive holds data rooms that belong to the companies being sold. An agency's project folders hold drafts the client may own outright under the contract. Owning the storage does not give you the right to license the contents.

That is why the buyer programs' own privacy statements, useful as they are, cannot settle the matter. They describe what the buyer does after you hand over a copy. Your duties to clients apply before that moment, and many of them do not depend on whether names are removed later.

Definition: client-confidential information

Information a client gave you, or that you created while working for a client, that you agreed to protect through a contract, an engagement letter, a professional rule or a law. The duty usually covers the information itself, not only the client's name.

Four layers of obligation

Where your duties to clients come from

Most firms have all four. Each one needs its own check.

Contracts

NDAs, engagement letters, master service agreements and data processing agreements. Many limit use to "performing the services" and bar disclosure to third parties. Some survive the end of the relationship.

Privilege

Attorney-client privilege and work product protect certain legal communications. Sharing them with a third party can put that protection at risk. Ask your lawyer before any privileged material leaves the firm.

Professional rules

Lawyers' confidentiality rules (the ABA Model Rule 1.6 is the common model), the AICPA Code of Professional Conduct for accountants, and Internal Revenue Code section 7216 for tax preparers.

Privacy and sector laws

Your clients' files contain their employees' and customers' personal data: CCPA/CPRA, GDPR, GLBA for financial data, HIPAA for health data. Health data has its own rules.

By type of firm

What you hold, what is published, what to ask

The eligibility column shows only what buyers publish. The questions are for your lawyer.

Firm typeTypical recordsPublished eligibilityQuestion to ask first
Law firmsMatter files, client email, drafts, court filings, billing narrativesMode: law firms with 6+ employeesWhich of our records fall outside privilege, work product and our confidentiality rules? Has our state bar issued ethics guidance on this kind of use?
Accounting and taxLedgers, reconciliations, returns, client correspondence, close checklistsMode: accounting firms with 10+ employeesDoes section 7216 reach any of this? What do our engagement letters say about disclosure and use?
M&A and corporate financeData rooms, valuation models, buyer lists, deal memosNo firm-type rule published; general minimums applyWhich NDAs cover each deal, and do they survive closing? Who owns the data room contents?
Marketing and creative agenciesBriefs, revisions, approvals, deliverables, client feedbackNo firm-type rule published; general minimums applyDo our client contracts assign drafts and deliverables to the client? Are there confidentiality clauses on briefs?
ConsultingMethodologies, deliverables, interview notes, client data extractsNo firm-type rule published; general minimums applyWhich parts are our own methodology, and which are client material under NDA?

Sources: data.mode.inc (law and accounting minimums), checked October 7, 2026. micro1 publishes a general 30+ employee requirement; see buyer programs compared for all published rules. More detail for two sectors: law firms and accounting firms.

Walkthroughs by profession

How the same question plays out in five kinds of firm. Each ends with what typically survives review, which is a starting point for your lawyer, not a conclusion.

Law firm

Almost everything in the document management system is a client matter, and most client email is privileged or confidential. Billing narratives describe legal work for named clients. The practical scope shrinks to what the firm wrote for itself: intake checklists, matter-opening procedures, conflict-check workflows, internal training, research memos on general points of law with client facts removed, and knowledge-management pages. Ask ethics counsel whether even anonymized precedent documents can leave the firm.

Accounting and tax firm

Close checklists, reconciliation procedures, review notes templates and the workflow of how a return moves from preparer to reviewer are often the firm's own. The client ledgers, returns and the email threads about them are not. Tax return information raises the section 7216 question for preparers. A realistic scope is the process layer: how work is done, checked and signed off, with every client figure stripped out.

M&A and corporate finance adviser

Deal work runs on NDAs with sellers, bidders and financing parties, and many survive closing. Data rooms belong to the company being sold. Even a de-identified deal memo can point to a real transaction in a small market. What may remain: your own process playbooks, model templates without client inputs, and internal training on how a sale process is run.

Marketing or creative agency

The revision history of a campaign, briefs, feedback rounds and approvals are exactly the decision trail buyers describe wanting. But client contracts often assign deliverables and sometimes drafts to the client, and briefs may be confidential. Check each master agreement. Internal process documents, project management workflows and your own pitch methodology are easier to clear than client work.

Consultancy

Your methodology may be yours, but the deliverables, interview notes and client data extracts that show it in use usually are not. Separate the frameworks and templates you developed in-house from anything produced under a client engagement. Ask your lawyer whether general know-how learned on engagements can be described without breaching client NDAs.

What the walkthroughs have in common

The firm's own process layer is the part most likely to clear. Client content is the part most likely to be blocked. Value sits mostly in the second, which is why honest scoping often produces a smaller deal than a firm first hoped for.

Exclusions first

What to treat as never included, and what might remain

The left column is a cautious default for regulated and client-service firms. The right column still needs review before anything is exported.

Treat as never included

  • Privileged communications and attorney work product.
  • Documents a client gave you under an NDA or confidentiality clause.
  • Tax return information, until your lawyer has cleared section 7216 questions.
  • Data rooms and deal documents belonging to third parties.
  • Your clients' customer lists and their customers' personal data.
  • Anything under a court protective order or legal hold.
  • Credentials, keys and passwords found in documents or messages.

Might remain after review

  • Your own SOPs, checklists, templates and playbooks, with client examples removed.
  • Internal knowledge bases and training material written by your staff.
  • QA and review processes: how work is checked, not what was checked.
  • Internal operations: IT tickets, scheduling, vendor management, hiring workflows (minus candidate data).
  • Material from clients who gave explicit written permission for this use.

Be honest with yourself about value. micro1 lists SOPs, knowledge bases, internal documentation and QA processes among what it wants, so firm-owned process material is in scope for at least one program. It is also less unique than a full record of client work. Removing client content lowers the risk and usually lowers the price. Practitioners say raw data is the cheapest tier in any case, so do not let a hoped-for number push client material back into scope.

A common misunderstanding

Why "we will de-identify it" may not be enough

Buyers publish de-identification steps. Confidentiality duties often reach further than names.

Information, not identity

A memo about an unannounced acquisition can reveal the deal with every name replaced. A client's pricing strategy is still the client's strategy without its logo. Ask whether your obligations cover the substance.

Small markets, easy guesses

A regional firm with a few large clients can be identified by context: industry, size, location, dates. Pseudonyms do not remove that context.

The disclosure happens first

When you hand over a copy for the buyer to de-identify, the raw material leaves your control for that processing step. Ask your lawyer whether that handover is itself a disclosure under your client agreements.

Privilege does not come back

If sharing waives privilege, later scrubbing does not restore it. That risk sits with the firm and its clients, not the buyer.

A clearing process

How a firm can work through it

Do this before you share a manifest with any buyer. Never send a full dataset before price; practitioners advise a manifest and samples.

  1. Map sources to contracts. For each system (email, document management, practice software, chat), list which client agreements cover the data in it.
  2. Pull every engagement letter template you have used, by year. Confidentiality and use clauses change over time.
  3. Tag privileged, regulated and third-party material and exclude it by default.
  4. Decide on client permission. If you ask clients, do it in writing and exclude anyone who declines or does not answer.
  5. Get a written sign-off from your lawyer (and ethics counsel, for law and accounting firms) on what remains.
  6. Tell your insurer if your lawyer recommends it. Ask whether your professional liability policy has anything to say about this use.
  7. Plan the staff side too. Employee messages raise separate questions; see employees and selling company data.

Illustrative, not an offer: a fictional 14-person accounting firm

Everything here is invented to show the sequence. A fictional firm of 14 people sees that Mode lists accounting firms with 10 or more employees and wonders whether it qualifies. Its systems hold eight years of client email, practice-management records, a document portal and a shared drive of procedures.

The partners map each system to their engagement letters. Older letters say nothing about third-party use; newer ones limit use of client information to performing the engagement. Their lawyer flags section 7216 for the tax side and advises against including any client correspondence, ledgers or returns. The portal and client email are excluded in full.

What remains is the firm's own: month-end close checklists, review procedures, onboarding guides for new staff, internal training recordings with client examples removed, and the anonymized workflow of how jobs move between preparer, reviewer and partner. The partners decide not to ask clients for permission, because the request itself could worry them. The scope is smaller than they hoped, and they accept that it may be worth less or may not interest a buyer at all.

That is a legitimate outcome. The checker and the programs' published rules tell you whether you fit; your client agreements tell you what you can actually offer.

Common mistakes in client-service firms

Reading only the newest engagement letter

An archive spans years of letters with different wording. The oldest records are governed by the oldest terms. Check each version that applies to the data in scope.

Treating de-identification as permission

Scrubbing reduces what a buyer can see. It does not, by itself, answer whether you were allowed to disclose the material in the first place.

Sending a full export for "evaluation"

A full copy sent before scope and price are settled is already a disclosure. Send a manifest and cleared samples, as practitioners advise.

Forgetting the clients' own customers

Client files contain personal data about people you have never dealt with. Privacy laws can apply to them even when the client relationship has ended.

Questions to ask before you sign

Contract points that matter most to client-service firms

Generic questions every seller should check. They are not claims about any named buyer. Our licensing agreement outline goes clause by clause.

Your representations

Will you be asked to state that you have every right and consent needed to share? Can you say that for each source, today?

Indemnities and caps

If a client claims a breach of confidence, who pays? Is liability capped, and does the indemnity expire?

Scope of use and downstream buyers

Training only, or evaluation too? Can the data go to other buyers? A narrower scope is easier to defend to clients.

Audit rights over de-identification

Can you review samples of the output before acceptance, to check that client details are gone?

Deletion and survival

When are originals and copies deleted? Your duties to clients survive the deal. Do the buyer's confidentiality duties to you survive termination?

Exclusivity

If a client later objects, can you withdraw its material? Does exclusivity or resale language make that impossible?

FAQ

Client confidentiality and data sales: common questions

Is it legal to sell customer data to an AI company?

There is no single answer. It depends on your contracts with customers, privacy laws such as CCPA/CPRA or GDPR, sector laws such as HIPAA or GLBA, and professional rules if you are a regulated firm. Customer personal data and client-confidential material are the hardest parts of any sale. Ask your lawyer which of your sources can be shared at all before you discuss price.

Can a law firm sell its data for AI training?

Mode publishes a minimum of 6 employees for law firms, so small firms can apply. But attorney-client privilege, work product and lawyers' confidentiality rules cover most matter files. What tends to remain after review is firm-owned process material such as templates, checklists and internal workflows, cleared by ethics counsel.

Does de-identification solve client confidentiality?

Not necessarily. A confidentiality duty usually covers information, not only names. A memo about an unannounced acquisition can reveal the deal even with every name replaced. Ask your lawyer whether de-identified content is still covered by your obligations to clients.

Do I need my clients' permission?

Check every engagement letter, NDA and master agreement that covers the data. Some forbid any disclosure, some allow it with consent, some are silent. Where permission is needed and you cannot get it in writing, leave that client's material out.

What should accounting firms watch for?

Mode publishes a minimum of 10 employees for accounting firms. Client ledgers, returns and correspondence carry client confidentiality duties, and tax preparers should ask a lawyer about Internal Revenue Code section 7216, which governs the use and disclosure of tax return information.

What if a client contract says nothing about data use?

Silence is not permission. Professional rules, implied duties and privacy laws can still apply. Ask your lawyer how they read silent contracts before you treat any client's material as available.

Can we ask clients for permission now?

You can, but weigh it first. A request for consent to license client material can worry a client even if you only want internal process data. If you ask, do it in writing, describe the scope and use precisely, and exclude every client who declines or does not reply. Your lawyer should confirm what form valid permission takes under your professional rules.

Are our own templates and checklists safe to include?

They are usually the easiest material to clear, because the firm wrote them for itself. Check them for embedded client examples, names, figures and copied client documents first. micro1 lists SOPs, knowledge bases and QA processes among what it wants, so this layer is in scope for at least one program.

Cleared what can be shared? See which programs fit.

The eligibility checker runs in your browser and sends nothing. It asks whether your data includes client-confidential records and points you to the right questions. Applying starts a review; it is not an offer.

Independent site. Some links are referral links: if your company signs with a buyer through them, the buyer may pay us a fee. You are not charged, and we never see your data.

Related reading