Security at Survicate

Safe, secure, and private

Enterprise-grade security, workspace isolation, and compliance frameworks that protect customer data without slowing you down.

Image 2
Security & Infrastructure

Built on a secure, resilient infrastructure with continuous monitoring, and detailed incident response procedures.

Certified security standards
ISO/IEC 27001 certified with continuous security framework enhancements.
End-to-end encryption
End-to-end encryption. TLS 1.2 in transit, AES-256 at rest, EU-hosted on AWS.
Continuous security testing
Regular third-party penetration testing with active bug bounty program.
Real-time monitoring
24/7 system monitoring with updates at status.survicate.com.
Automated backup systems
Automated backup systems with business continuity and disaster recovery plans.
Incident response
Incident response procedures aligned with ISO 27001 requirements.
Identity & Access Management

Control who accesses your data with SSO, SAML, 2FA, role-based permissions, and workspace isolation.

Enterprise authentication
Single Sign-On (SSO) and single or complete workspace SAML options supported.
Role-based access controls (RBAC)
Includes Owner, Admin, and User controls with granular permissions.
Workspace Isolation
Complete separation between teams and projects at workspace level.
Session security
Automatic timeout policies and secure session management.
Active tracking
We keep track of all data-related activities for security reviews and compliance verification.
Two-factor authentication
Protect your account, and data with two-factor authentication (2FA).
Privacy & Compliance

GDPR compliant with global privacy law coverage. You have control of the data you collect, and keep.

GDPR compliant
Committed to GDPR compliance. DPA available, with dedicated Data Protection Officer.
Global privacy frameworks
CCPA/CPRA compliant, LGPD (Brazil), PIPEDA (Canada), APPI (Japan) Privacy Act (Australia).
Industry certifications
PCI DSS and HIPAA compliant infrastructure available.
Data control
Anonymous response collection. API that enables workflows to delete customer data.
Data subject rights
Access, deletion, and portability requests fully supported.
Accessibility & privacy
WCAG 2.1 Level AA accessible.
AI Safety & Transparency

Train insights, not AI models. Rely on verifiable feedback, and never worry about your data crossing workspaces.

Verifiable insights
Your data never trains AI models; every insight includes source citations to original feedback.
Complete isolation
Your data is never visible to other customers with workspace-level separation.
Secure processing
AI processing in encrypted environments with no cross-customer data sharing.
User control
You control what feedback sources AI can access within your workspace.
Future readiness
Monitoring emerging regulations (EU AI Act, ISO/IEC 42001) with controls updated accordingly.
Secure data hosting
We store feedback and data within AWS data centers that are secure by design.

Frequently asked questions

Find answers to common questions about our products. Can't find what you're looking for? Contact our support team.