Platform · Security

Anonymity by design. Compliance by default.

Every survey is architected so no manager, HR partner, or Corpmetrix employee can reverse-engineer a response. Encryption, hosting options, and audit logging are on from day one.

AES-256At rest
Local / on-premHosting options
MFA / SSOAccess controls
K-anonQuery-time
01 · Controls

Enterprise controls, switched on.

Encryption, local or on-premise hosting, certifications, and identity controls — documented for your security review.

We design for regulated enterprises worldwide — including GCC markets — that cannot treat employee voice as “just another SaaS form.”

01
AES-256 at rest
All survey data encrypted end-to-end with rotating keys managed via HSM.
Standard
02
Local & on-premise hosting
Cloud, in-country, or on-premise deployments so employee data can stay where legal and regulatory requirements demand — scoped per market and programme.
Optional
03
GDPR + local privacy law
Programmes designed to support EU GDPR and the data-protection rules of the markets we serve — including data subject rights — confirmed during onboarding.
Compliant
04
MFA · SSO · Audit logs
Enterprise SSO via SAML/OIDC, mandatory MFA for admins, and immutable audit logs.
Enforced
05
K-anonymity thresholds
No result set displayed for groups smaller than the client-defined threshold. Default is 5 for engagement and pulse programmes; 360° feedback defaults to 3 because rater groups are naturally smaller. Enforced at query time.
By design
Dashboards
Empty states instead of tiny-n leaks when a cut is too small.
Manager packs
Quotes and scores only when the team clears threshold.
Analyst extracts
XLSX and API respect the same anonymity contract.
02 · Anonymity

K-anonymity is not a footnote.

Result sets below your threshold never render — enforced at query time for dashboards, packs, and exports.

Comment quotes follow the same rules. AI analysis never receives identifiers.

Default threshold5 engagement · 3 for 360°
EnforcementQuery-time
AI vaultZero identifiers
ExportsSame rules apply
03 · Access

The right eyes on the right cut.

Role-based access, SSO, MFA for admins, and immutable audit logs for every sensitive action.

Security reviews get evidence; programme owners get peace of mind.

AuthSAML · OIDC · SCIM
MFAMandatory for admins
RBACHierarchy-aware roles
AuditImmutable event log
SAP
SuccessFactors
Workday
HCM
Oracle
HCM Cloud
Bamboo
HR
Okta
SSO / SCIM
Azure AD
Entra ID
Slack
Notifications
Teams
Microsoft
PowerBI
Embed / API
Tableau
Connector
Looker
LookML
REST
Open API

Send us your security questionnaire.

We will return architecture notes, certifications, and local or on-premise hosting options for your review board.

Book a demo Platform · Secure