Alex is Sprintlaw's co-founder and a legal technology leader. He holds law and media degrees from the University of Sydney and has been recognized by Australasian Lawyer, Lawyers Weekly and the Sydney Young Entrepreneur Awards for his work building Sprintlaw and improving access to business legal support.
As a US founder or operator, you have probably been asked to sign or send an NDA or confidentiality agreement. Maybe you are pitching to investors, onboarding a contractor, or exploring a partnership. Many business owners assume these documents are the same, but there are important differences that can affect your rights, obligations, and risks. Common mistakes include signing agreements without reading the fine print, using the wrong type of agreement for the situation, or missing key state-law issues that could make your contract unenforceable. This guide explains the differences between NDAs and confidentiality agreements, what to check before signing, and how state law can impact your contract.
What Is an NDA? What Is a Confidentiality Agreement?
In US business, "NDA" stands for Non-Disclosure Agreement. A confidentiality agreement is a broader term that may refer to a standalone contract or a specific section within a larger contract. Both are designed to protect sensitive information by restricting its disclosure or use. However, the way these terms are used can vary depending on the context, the parties involved, and the industry.
- NDA: Typically a standalone contract focused on preventing one or both parties from disclosing confidential information. NDAs are common when one party is sharing sensitive business information, such as trade secrets, product designs, or customer lists, with another party. For example, you might use an NDA before showing your business plan to a potential investor or sharing source code with a contractor.
- Confidentiality Agreement: Can be a standalone contract or a clause within a broader agreement, such as an employment contract or a service agreement. Confidentiality agreements are often mutual, especially in joint ventures or partnerships where both sides are sharing information. For example, a consulting agreement might include a confidentiality section that protects both parties' sensitive data.
In practice, the title of the document matters less than its actual terms. A contract labeled "NDA" might contain broad confidentiality and non-use obligations, while a "confidentiality agreement" might be narrowly tailored. Always review the substance, not just the name.
There is no federal law that requires a specific name or format for these agreements. Instead, contract law is governed by state law, and each state may have different rules about enforceability, remedies, and what counts as confidential information.
Key Differences: NDA vs Confidentiality Agreement
Although NDAs and confidentiality agreements are often used as synonyms, there are some practical differences US founders and operators should understand:
- Scope: NDAs usually focus only on non-disclosure, while confidentiality agreements may include additional obligations, such as non-use, return or destruction of materials, and restrictions on solicitation or competition.
- Mutual vs. One-Way: NDAs can be one-way (only one party discloses information) or mutual (both parties share information). Confidentiality agreements are often mutual, especially in collaborations or partnerships.
- Standalone vs. Clause: NDAs are typically standalone contracts. Confidentiality agreements can be standalone or a section within a larger agreement, such as an employment or service contract.
- Industry Practice: Some industries prefer one term over the other. For example, startups and tech companies often use "NDA," while healthcare and finance may use "confidentiality agreement" to align with regulatory requirements.
- Legal Effect: The enforceability and remedies depend on the actual language, not the document title. Courts look at the substance of the agreement.
Example: Suppose you are hiring a freelance developer to build a prototype. You might use a one-way NDA to protect your business idea. If you are entering a joint venture with another company, you might use a mutual confidentiality agreement to protect both parties' sensitive information.
It is a common mistake to assume that all NDAs and confidentiality agreements offer the same protection. The reality is that the details matter. Some agreements may be too broad, too vague, or include obligations that are difficult to comply with, increasing your legal risk.
What Should US Businesses Check Before Signing?
Whether you are asked to sign an NDA or a confidentiality agreement, do not treat it as a simple formality. Here is a practical checklist of what to review before you sign:
- Definition of Confidential Information: Is it clear what information is protected? Does it include oral, written, electronic, or all forms of communication? Are there requirements to mark information as confidential?
- Obligations: What are you required to do (or not do) with the information? Are you only restricted from disclosing, or also from using the information for your own benefit?
- Exclusions: Are there exceptions for information that is already public, independently developed, or received from another source? Are there carve-outs for disclosures required by law or court order?
- Term: How long do your obligations last? Some agreements last for a set number of years (for example, two to five years), while others may be indefinite, especially for trade secrets.
- Jurisdiction and Governing Law: Which state law applies? This can affect how the contract is interpreted and enforced. For example, California law has specific rules about non-compete and confidentiality clauses, while New York courts may enforce broader restrictions.
- Remedies: What happens if there is a breach? Are there specific damages, injunctive relief, or other penalties? Does the agreement allow for recovery of attorney fees?
- Return or Destruction: Are you required to return or destroy confidential materials at the end of the relationship? Is there a process for certifying destruction?
- Third-Party Disclosure: Can you share information with your employees, contractors, or advisors? If so, are they required to sign similar agreements?
- Notice Requirements: Are you required to notify the disclosing party if you receive a legal request for the confidential information?
Common mistakes:
- Signing agreements that define confidential information too broadly, covering information that is not actually sensitive or already known.
- Agreeing to indefinite obligations that are difficult to manage, especially if the information is not a trade secret.
- Failing to clarify whether the agreement is mutual or one-way, leading to unexpected obligations.
- Missing carve-outs for disclosures required by law, such as subpoenas or regulatory requests.
- Overlooking which state law applies, which can dramatically affect enforceability and remedies.
Practical example: You are a founder negotiating with a potential investor. The investor asks you to sign their NDA, which defines confidential information as "all information disclosed by either party, whether oral or written, regardless of whether it is marked confidential." This could cover information you did not intend to keep secret. Before signing, you should negotiate a narrower definition and clarify what is excluded.
How State Law Can Affect NDAs and Confidentiality Agreements
There is no single federal law governing NDAs or confidentiality agreements in the US. Instead, contract law is mostly a matter of state law. This means that enforceability, interpretation, and remedies for breach can vary depending on which state law applies. Some states have adopted the Uniform Trade Secrets Act (UTSA), while others have unique statutes or case law on confidentiality and non-compete clauses.
Key state law issues to consider:
- Enforceability: Some states, such as California, are more restrictive about enforcing non-compete and certain confidentiality provisions, especially if they restrict an employee's ability to work. California courts generally void agreements that go beyond protecting true trade secrets.
- Trade Secret Protection: Most states have adopted some version of the UTSA, which provides remedies for misappropriation of trade secrets. However, the definition of a trade secret and the requirements for protection can vary. For example, Texas requires reasonable efforts to maintain secrecy, while New York relies more on common law principles.
- Public Policy Limits: Agreements that are too broad, vague, or against public policy may not be enforceable. For example, a contract that tries to keep information confidential that is already public, or that restricts whistleblowing, may be invalid. Some states, like Illinois, have laws protecting employees who report illegal activity.
- Remedies: Some states allow for punitive damages or attorney fees in cases of willful breach, while others do not. The availability of injunctive relief (a court order to stop disclosure) can also vary.
- Notice Requirements: Some states require specific notice language for certain types of information, such as employee inventions or customer data.
Example: Suppose you are based in California and your NDA is governed by California law. If the agreement tries to restrict an employee from working for a competitor after leaving your company, California courts are likely to strike down the restriction unless it is narrowly tailored to protect trade secrets. In contrast, a similar agreement governed by Texas law may be more likely to be enforced, provided it is reasonable in scope and duration.
Always check which state law is specified in the contract, and consider whether that state has any unique rules that could affect your rights or obligations. If you are dealing with parties in multiple states, you may need to negotiate which state's law will apply.
When Should You Use an NDA vs a Confidentiality Agreement?
The choice between an NDA and a confidentiality agreement depends on the context and the parties involved. Here are some common scenarios US founders and operators face:
- NDAs:
- Pitching to investors or potential partners where you are the only party disclosing sensitive information.
- Discussing a possible merger or acquisition with a potential buyer.
- Hiring contractors or freelancers who will access proprietary business information.
- Sharing trade secrets with vendors or suppliers before signing a definitive agreement.
- Confidentiality Agreements:
- As part of an employment agreement to protect company information during and after employment.
- In service contracts with consultants or agencies where both sides may share sensitive data.
- In joint venture or partnership agreements where mutual protection is needed.
- Where regulatory requirements call for specific confidentiality language, such as in healthcare or finance.
In many cases, the difference is just terminology. What matters most is the specific language of the agreement and whether it meets your needs. For example, if you are only disclosing information, a one-way NDA may be sufficient. If both sides are sharing information, a mutual confidentiality agreement is usually more appropriate.
Checklist for choosing the right document:
- Who is sharing information? (One party or both?)
- Is the agreement standalone or part of a larger contract?
- What type of information is being protected? (Trade secrets, business plans, customer data, etc.)
- What are the industry norms or regulatory requirements?
- What are the risks if information is disclosed?
- Does the agreement include appropriate exclusions and carve-outs?
- Is the term reasonable for the type of information?
- Does the agreement specify the governing law and remedies?
Practical example: You are a SaaS founder negotiating a partnership with a healthcare provider. Both sides will be sharing sensitive data, including patient information. In this case, a mutual confidentiality agreement with HIPAA-compliant language may be required, and you should ensure the agreement addresses regulatory obligations as well as standard confidentiality terms.
Do not rely solely on templates. Always tailor the agreement to your specific situation and review the terms carefully. If you are unsure, consider having an attorney review the document, especially for high-value deals or sensitive information.
FAQs
Are NDAs and confidentiality agreements legally binding in the US?
Yes, both NDAs and confidentiality agreements are generally legally binding if they meet the requirements of a valid contract: offer, acceptance, consideration, and a lawful purpose. However, enforceability can depend on the specific terms, the scope of the agreement, and which state law applies. Courts may refuse to enforce agreements that are overly broad, vague, or against public policy.
Can you use an NDA template for all states?
While NDA templates can be a starting point, they may not be suitable for all situations or all states. State law can affect enforceability, remedies, and even the definition of confidential information. For example, California has unique rules about employee NDAs and non-compete clauses. It is important to tailor your agreement to the relevant state law and the specifics of your deal.
What happens if someone breaches an NDA or confidentiality agreement?
If someone breaches an NDA or confidentiality agreement, the non-breaching party may be able to seek remedies such as damages, injunctive relief (a court order to stop the disclosure), or specific performance. The available remedies depend on the contract terms and the governing state law. In some cases, the harmed party may also be able to recover attorney fees or punitive damages if the breach was willful.
Do NDAs and confidentiality agreements cover trade secrets?
Most NDAs and confidentiality agreements are designed to protect trade secrets as well as other types of confidential information. However, trade secret protection may require additional steps, such as marking documents as confidential, limiting access, and implementing security measures. Many states follow the Uniform Trade Secrets Act, but the requirements can vary, so it is important to ensure your agreement and your business practices align with state law.
Can an NDA or confidentiality agreement last forever?
Some NDAs and confidentiality agreements specify that obligations last for a set period (such as two to five years), while others are indefinite, especially for trade secrets. However, courts may refuse to enforce indefinite obligations if they are unreasonable or against public policy. It is common to have a reasonable time limit for most types of confidential information, with longer or indefinite protection for true trade secrets.
Key Takeaways
- NDAs and confidentiality agreements are often used interchangeably, but the key differences are in the scope, mutuality, and context of use.
- Always check the definition of confidential information, the obligations, exclusions, term, and governing law before signing.
- State law can affect enforceability, remedies, and what counts as confidential information.
- Use the right type of agreement for your situation, and do not rely solely on templates.
- If you are unsure, consider getting a legal review, especially for high-value or sensitive deals.
If you need help reviewing or drafting an NDA or confidentiality agreement for your US business, contact our team at (888) 449-8437 or team@sprintlaw.com. Where legal services are required, they are delivered by licensed lawyers at trusted law firm partners through the Sprintlaw platform.








