Trust standards

Know what the report tells you—and what still needs checking.

Use BuyerNotes to prepare for a more useful seller conversation. See which claims come from the seller, what the available records support, and which questions still need answers.

Built into every report

See what is supported and what still needs work.

Check the claim and its label

Supported means the cited material supports the exact wording shown. It does not necessarily mean BuyerNotes independently verified the claim. The accompanying source label distinguishes seller-stated material from facts supported by independent records. Needs verification and Not enough info preserve the remaining uncertainty.

See where the information came from

A claim state is paired with the kind of source behind it: buyer-entered context, seller claim, compatible operating record, official public source, premium dataset, or general category context.

Open the supporting source

Citations and source caveats stay visible so a buyer can inspect what supports the exact claim. When available, uploaded-document citations show a page or excerpt, and web sources show when they were retrieved.

Find the unanswered questions

Thin seller notes, missing documents, and weak public matches should create follow-up work, not false confidence.

Keep other businesses’ records out

A document that appears to belong to the wrong business, entity, location, or operating context is excluded because it does not match this business. It cannot support findings about the business being reviewed.

Share insights, not licensed datasets

Shared views and exports are designed around derived insights and references, not raw third-party licensed datasets.

How to read the labels

A seller's statement is not an independent check.

The same Supported, Needs verification, and Not enough info language carries through every section. Each material finding also names the source type behind it. “Seller-stated · not independently verified” is different from “Compatible operating record” even when each source supports the precise wording beside it.

Deal SnapshotBusiness ModelOperations & StaffingPrice & Cash FlowDemand & CustomersRecords to VerifyClosing ChecklistLeverage PointsGrowth Paths

Before you upload

Share only what the review needs.

Before uploading seller records, confirm you have permission, remove unrelated details, and redact sensitive information. The checklist covers what to leave out.

  1. 1Upload only material you are authorized to share for this acquisition review.
  2. 2Send the minimum needed for the question. Remove unrelated pages, accounts, and people where practical.
  3. 3Redact Social Security and taxpayer-identification numbers, full bank or routing numbers, payment-card details, government IDs, passwords, and access credentials.
  4. 4Remove unnecessary employee and customer personal information. Do not upload health, biometric, or other regulated data unless it is necessary and you are authorized to provide it.

If a record cannot be safely minimized, ask the seller for a redacted copy. See the Privacy Notice for how submitted material is processed and retained.

Data and access

Practical answers before you upload a seller document.

This is a plain-language summary. The Privacy Notice controls where more detail or a retention exception applies.

Encryption and access

BuyerNotes uses encrypted HTTPS connections and private provider storage. Workspace access is tied to your account. Authorized operators may access data only when needed for support, security, reliability, legal obligations, or an approved incident response.

Retention and deletion

Deal material remains available until you delete it. You can delete source documents, revoke shares, and permanently delete an archived deal. Accepted deletion requests block affected access first, then remove active-system data through the documented deletion process; limited billing, audit, legal, and backup records follow the Privacy Notice.

AI processing and model training

OpenAI processes submitted deal context and document text to generate reports. BuyerNotes requests that model responses are not stored and does not opt in to model-training data sharing. Provider abuse-monitoring retention may still apply as described in the Privacy Notice.

Service providers

BuyerNotes uses Vercel for hosting, private storage, isolated processing, logs, and aggregate analytics; Neon for the database; Resend for email; Stripe for payments; and OpenAI for AI processing. Providers receive data only as needed to perform their service.

Sharing links and exports

A report stays in your account unless you create a share link or export. Share links use revocable, unlisted URLs; they are not restricted to a named recipient, so anyone with the live URL can view the shared report. Exports become files you control outside BuyerNotes.

Security reporting

Report a suspected security or privacy issue to support@getbuyernotes.com. Do not attach seller documents or sensitive deal material to the first message.

Controls at a glance

What each safeguard covers—and its limits.

Connection

Pages and uploads use encrypted HTTPS connections.

No internet service can guarantee absolute security.

Workspace access

Workspace access is tied to the signed-in account; source files are kept in private provider storage.

Authorized operators may access data only for the limited purposes described below and in the Privacy Notice.

Report sharing

Reports stay in your account unless you create a revocable, unlisted share link or export.

Share links are not recipient-authenticated: anyone with a live URL can open it. Exported files are outside BuyerNotes controls.

Deletion

Accepted deletion requests block affected access first and target removal from active systems within 24 hours.

Limited billing, audit, legal, and backup records follow the retention periods in the Privacy Notice; approved backups age out within 30 days.

AI processing

BuyerNotes requests no model-response storage and does not opt in to model-training data sharing.

Until Zero Data Retention is enabled, OpenAI abuse-monitoring retention may apply for up to 30 days.

Activity records

Report generation, exports, sharing, billing, and deletion workflows create operational audit records.

Audit records prove that a system event was recorded; they do not prove that every report claim is correct.

Clear boundaries

Bring better questions to your advisers.

BuyerNotes supports first-pass acquisition review. It does not replace legal, tax, accounting, financing, or operational diligence.

BuyerNotes does not recommend buying, passing, selling, proceeding, or making an offer. It shows what matters, what is known, what is missing, and what to ask next.

Reports improve when buyers add relevant primary records such as redacted tax returns, bank statements, leases, payroll summaries, anonymized customer summaries, and seller answers.