NDA Non-Disclosure Agreements: Enforceability, Scope, and Red Flags to Watch

NDAs are among the most commonly signed legal documents in business—and among the most frequently misunderstood. Courts routinely refuse to enforce overly broad NDAs, and several U.S. states have passed laws limiting their use to silence harassment victims.

The InfoNexus Editorial TeamMay 23, 20269 min read

The Most Signed—and Most Misunderstood—Document in Business

Executives sign them before merger talks. Employees sign them on their first day. Inventors sign them before pitching to investors. Non-disclosure agreements (NDAs) are so ubiquitous that millions of people sign them every year without reading them carefully. Yet courts routinely refuse to enforce NDAs that are overbroad, indefinite, or signed under duress—and a growing number of U.S. states have passed laws specifically restricting NDAs used to silence sexual harassment or assault victims. Understanding what makes an NDA enforceable—and what provisions signal a document designed to overreach—is essential for anyone in business or employment.

Anatomy of an NDA

An NDA is a contract in which one party (the disclosing party) shares confidential information with another party (the receiving party), who agrees not to disclose or misuse that information. NDAs come in two forms:

  • Unilateral NDA: Only one party discloses; the other promises confidentiality. Common in employment contexts and before pitching a business idea.
  • Mutual NDA: Both parties exchange confidential information. Common in merger discussions, joint venture negotiations, and technology partnerships.

Every enforceable NDA should address five core elements:

ElementWhat It AddressesEnforceability Risk If Missing
Definition of confidential informationWhat is and is not coveredVague definitions may make entire agreement unenforceable
Exclusions from confidentialityPublic domain, independently developed, lawfully received from third partiesWithout exclusions, agreement is overbroad
Obligations of receiving partyHow to handle, store, and return informationAmbiguity creates enforcement disputes
DurationHow long confidentiality obligations lastIndefinite duration may be unenforceable in some states
Governing law and remediesWhich state's law applies; injunctive relief availabilityJurisdictional uncertainty

Enforceability Standards

NDAs are contracts, subject to general contract law principles. Courts will not enforce an NDA that lacks consideration (the receiving party must receive something of value), is procured by fraud or duress, or is unconscionably one-sided. Beyond general contract principles, courts apply specific scrutiny to NDA scope:

  • Overbroad definition of confidential information: An NDA that defines "confidential" as "anything employee learns during employment" without carving out public information is likely overbroad and may not be enforced.
  • Indefinite duration: Most courts will enforce time-limited NDAs; perpetual confidentiality obligations for ordinary business information are often found unreasonable. Courts may blue-pencil (modify) a perpetual NDA to a reasonable period rather than voiding it entirely.
  • Pre-existing knowledge: A receiving party cannot be bound to keep secret information they already knew before signing.

NDAs in Employment: Special Rules

Employment NDAs face additional scrutiny because of the power imbalance between employer and employee. Several states have enacted laws restricting NDAs in specific employment contexts:

StateLaw / YearKey Restriction
CaliforniaSB 331 (2021)Prohibits NDAs that prevent disclosure of sexual harassment, discrimination, or assault
New YorkCPLR § 5003-b (2018)NDAs settling sexual harassment claims cannot prevent disclosure of underlying facts
WashingtonHB 1795 (2018)Prohibits NDAs silencing sexual harassment or assault victims as condition of settlement
Federal (SPEAKS OUT Act)2022NDAs cannot be enforced to silence sexual or gender-based harassment victims before filing a claim

Red Flags in NDA Language

Certain NDA provisions should prompt careful scrutiny or legal consultation before signing:

  • No exclusions for public information: A legitimate NDA always carves out information that is or becomes publicly known through no fault of the receiving party.
  • Sweeping ownership clauses: Some NDAs are bundled with assignment clauses that transfer IP rights to the disclosing party for anything the receiving party creates—even outside work hours.
  • Liquidated damages clauses: Clauses specifying a fixed penalty (e.g., $1 million) for any breach, regardless of actual harm, may be unenforceable as penalty clauses.
  • Non-disparagement without reciprocity: One-sided non-disparagement clauses that prevent an employee from making any negative statements about a company while the company retains full freedom of speech are a sign of an overreaching agreement.
  • No whistleblower exception: Federal law (18 U.S.C. § 1833) protects disclosure of trade secrets to government agencies for reporting potential violations. An NDA purporting to prevent such disclosures cannot override this protection.

The rise of NDAs in non-business contexts—settlement agreements, influencer contracts, and even consumer terms of service—has prompted legislative pushback. The fundamental balance an NDA strikes, protecting legitimate business secrets while preserving employees' and consumers' ability to speak freely, remains one of the most actively contested areas of contract law.

This article is for informational purposes only and does not constitute legal advice. Consult a qualified attorney before signing or drafting a non-disclosure agreement.

business-lawcontractsconfidentiality

Related Articles