Skip to content
B2B Forge

Legal

Acceptable Use Policy

What you may and may not do with data licensed from us, and the sending standards we expect. This policy forms part of the Terms of Service.

Last updated: 2026-07-19

Entity: B2B Forge Limited

1.Permitted uses

  • Business-to-business outreach to the companies in your file, on your own behalf.
  • Loading records into a CRM or outreach tool your organisation controls.
  • Enriching, segmenting and scoring records internally.
  • Market research, territory planning and competitive analysis.
  • Recruiting for roles at exhibiting companies.
  • Planning meetings and stand visits around a show you are attending.

2.Prohibited uses

  • Reselling, sublicensing, publishing or transferring records to another organisation.
  • Using the data to build, train or improve a competing data product or database.
  • Consumer marketing of any kind. This is business contact data supplied for business communications.
  • Contacting people who have opted out, or who appear on a suppression list you hold.
  • Sending anything unlawful, deceptive, or that misrepresents who you are.
  • Sharing the file with an agency, partner or contractor unless your licence explicitly covers it. Tell us up front and we will price it correctly.
  • Uploading records to a public repository, a shared drive outside your organisation, or any third-party tool that claims ownership of uploaded data.

3.Email sending standards

  • Every message must identify who you are, include a real postal address, and offer a working one-click unsubscribe.
  • Honour unsubscribe requests within 5 business days, and keep a permanent suppression list. Suppression entries are never deleted — deleting them is what causes someone to be re-contacted after they asked not to be.
  • Authenticate your sending domains with SPF, DKIM and DMARC before you send anything at volume.
  • Remove hard bounces after the first occurrence. Repeatedly mailing a dead address is the fastest way to damage your sender reputation.
  • Do not send more than three follow-ups to someone who has not responded.
  • Keep daily volume to a level your domain can sustain — for most senders that is well under 200 messages per mailbox per day, warmed up gradually. We are not responsible for deliverability problems caused by sending practices or an already-blacklisted domain.

4.Telephone standards

  • Screen numbers against the applicable do-not-call registers before dialling — the TPS and CTPS in the UK, the National Do Not Call Registry in the US, and the equivalent in any other market you call into.
  • No automated dialling, pre-recorded messages or artificial voice without prior express consent.
  • Respect local calling hours and any restrictions in the recipient's jurisdiction.

5.Licence and ownership

  • Data is licensed to you, not sold. You do not acquire ownership of the records or any right to redistribute them.
  • The licence is limited to your organisation and to the term stated on your invoice.
  • On termination or expiry, delete the licensed records from your systems within 30 days, other than entries you must retain on a suppression list.

6.Security expectations

  • Store licensed data on systems with access control appropriate to personal data, and limit access to staff who need it.
  • Report any breach involving data licensed from us within 48 hours of becoming aware of it, so we can notify affected individuals where required.
  • Do not transfer files over unencrypted channels or leave them in publicly accessible storage.

7.Your compliance obligations

  • You remain the controller of your own outreach. GDPR, UK GDPR, PECR, CAN-SPAM, CASL and their equivalents govern how you contact these companies — your lawful basis, your sender identification, your opt-out handling.
  • We cannot discharge those duties for you, and we do not claim that buying data from us makes your campaign compliant. Any vendor who tells you otherwise is wrong.

8.If this policy is breached

  • We escalate proportionately: a written warning first, then suspension of access, then termination of the licence, then recovery of any loss. Serious or repeated misuse may be reported to the relevant regulator.
  • We may ask for evidence of compliance with this policy where we have reasonable grounds to think it has been breached.

9.Reporting misuse

  • If you have received communications that you believe used data licensed from us and want it to stop, use the suppression form at /legal/do-not-sell/ — that removes you from our database going forward and we notify customers holding affected records.
  • To report misuse by one of our customers, email the data and privacy address on this page with as much detail as you can share.

Contact

B2B Forge Limited8 The Green, Ste A, Dover, Delaware 19901, United States
privacy@b2bforge.co

To have your information removed from our database, use the suppression form. It requires no account and reaches the team that actions it.