# Buyer data diligence checklist

Record the owner, evidence, status, and unresolved issues for each item.

- [ ] Intended use and required rights are defined.
- [ ] Contracting entity and supplier authority are confirmed.
- [ ] Source methodology and relevant permissions are documented.
- [ ] Third-party components and restrictions are identified.
- [ ] Privacy, confidentiality, and restricted-material questions are reviewed.
- [ ] Sample selection and representativeness are understood.
- [ ] Quality claims are tested with versions and denominators.
- [ ] Coverage and historical changes are explained.
- [ ] Event, collection, availability, and revision timestamps are understood.
- [ ] Delivery and integration are tested in the intended environment.
- [ ] Refresh, correction, support, and access-expiration processes are defined.
- [ ] License scope matches the proposed users and uses.
- [ ] Pilot acceptance and commercial decision criteria are agreed.
- [ ] Unresolved issues have owners and due dates.
- [ ] Approved version and decision are recorded.
- [ ] Review triggers are defined for changed data, sources, recipients, or uses.

Source: https://highdatacircles.com/guides/data-due-diligence/
Planning aid only. Adapt the review to the actual asset, risk, and jurisdiction.
