10 Total
0 High severity
7 Medium severity
3 Low severity
Summary

DocuSign's privacy policy explains what personal information they collect when you use their document signing and agreement services, including your name, email, IP address, and the content of documents you sign. They share some of this data with partners and use it for marketing, product improvement, and service delivery. Depending on where you live, you may have rights to access, delete, or opt out of certain uses of your data.

Technical Summary

DocuSign's Privacy Notice governs the collection, use, disclosure, and retention of personal information across its eSignature, agreement management, and related digital services. The notice addresses data collected from account holders, signers, website visitors, and third-party sources, covering categories including identity, contact, financial, device, and behavioral data. It establishes user rights including access, deletion, correction, and portability, with specific provisions for GDPR (EEA/UK), CCPA/CPRA (California), and other regional frameworks. Notable provisions include data sharing with third-party service providers and advertising partners, use of cookies and tracking technologies, and cross-border data transfers under Standard Contractual Clauses. The notice also addresses DocuSign's role as both a data controller (for its own marketing and website operations) and a data processor (when processing data on behalf of enterprise customers).

Evidence Provenance
Captured April 19, 2026 06:15 UTC
Document ID CA-D-000198
Version ID CA-V-000736
Wayback Machine View archived versions →
SHA-256 93e1a5d2f792da35e9b421b072d921605ca3a2526f2e5bc2ef3d7a882f42844c
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Cryptographically signed
Institutional Analysis

🔒 Institutional analysis locked

Regulatory exposure by statute, material risk assessment, vendor due diligence action items, and enforcement precedent. Available on Professional.

Upgrade to Professional — $149/mo
Change Timeline
View full version history (0 captures) →
Medium Severity — 7 provisions
Low Severity — 3 provisions

Cross-platform context

See how other platforms handle California-Specific Rights (CCPA/CPRA) and similar clauses.

Compare across platforms →

Applicable Regulations

CCPA/CPRA
California, USA
CFAA
United States Federal
CAN-SPAM
United States Federal
GDPR
European Union