Trust & security
Security and privacy, by design
Your survey data belongs to you. Here is exactly how we store it, protect it, and keep it under your control.
We build SurveyLane so that the secure choice is the default choice. Data is hosted in the European Union, encrypted in transit and at rest, and never sold, shared or used to train AI models. This page explains our approach in plain language — and we are happy to go deeper under a mutual NDA or DPA whenever you need it.
All survey data is stored and processed within the European Union. No transfers to jurisdictions without an adequate level of protection.
TLS for every connection in transit, and encryption at rest for the database and file storage. Secrets are managed separately from application data.
Built for the GDPR from the ground up. We act as your processor, sign a Data Processing Agreement on request, and support data export and erasure.
The AI analysis layer can only read your data through a personal token you can revoke instantly. It can never create, edit or delete anything.
Where your data lives
SurveyLane is hosted on infrastructure located in the European Union. Your account, surveys and responses are stored on EU servers, and we do not move that data to regions without an adequate level of data protection.
File uploads — such as logos and images used in your surveys — are stored in EU object storage. Backups are encrypted and kept in the same region.
Encryption
Every connection to SurveyLane is protected with TLS, so data is encrypted while it travels between your browser, our servers and any connected AI client. Data at rest — the database and uploaded files — is encrypted on disk.
Sensitive configuration values and access tokens are encrypted with a dedicated application key that is stored separately from the data it protects.
Access control and authentication
Sign-in is handled by a specialised authentication provider, with support for strong passwords and social login. Sessions are scoped to your account, and the Team plan adds SAML single sign-on (SSO), roles and shared workspaces.
- Role-based access for team members
- SAML SSO available on the Team plan
- Sessions tied to your account and revocable
- Sensitive actions are confirmed before they run
AI analysis is read-only by design
SurveyLane offers a hosted MCP (Model Context Protocol) server so you can analyse results with AI clients such as Claude or Cursor. This access is strictly read-only: the AI can list and analyse, but it can never create, edit or delete anything.
Access is granted through a personal token, scoped to your own account, that you generate and revoke instantly under Settings → API access. For anonymous surveys, respondent names and e-mail addresses are never returned — the tools hand back aggregates and de-identified answers only. We never send your data anywhere else, and we never train AI models on it.
Respondent privacy and anonymity
When you mark a survey as anonymous, we treat it as anonymous everywhere: in the dashboard, in exports, and in the AI analysis layer. Personal identifiers are not attached to those responses.
You decide what you ask for and what you keep. Responses can be exported to CSV or PDF at any time, and you can delete a survey and its responses whenever you choose.
Data ownership, export and deletion
Your data is yours. You can export everything to CSV or PDF at any time, and deleting a survey removes its responses. On account closure, your data is removed in line with our retention schedule.
We act as a data processor on your behalf and will sign a Data Processing Agreement (DPA) on request, including details of our sub-processors.
Reliability and backups
We take encrypted, regular backups of the database so your data can be restored in the event of a failure. Backups are retained in the EU and are covered by the same encryption and access controls as production data.
Responsible disclosure
Security is never finished. If you believe you have found a vulnerability, we want to hear from you. Please email us with the details and steps to reproduce, and give us a reasonable window to investigate and fix the issue before any public disclosure. We will not pursue legal action against good-faith research that respects our users' privacy and avoids service disruption.
Security FAQ
Where is my data stored?
Entirely within the European Union — account data, survey responses and file uploads. We do not transfer data to regions without an adequate level of protection.
Is my data encrypted?
Yes. Everything is encrypted in transit with TLS and encrypted at rest on disk, including the database and uploaded files.
Do you sign a DPA?
Yes. We act as your data processor and sign a Data Processing Agreement on request, including a list of our sub-processors.
Can the AI analysis change or delete my data?
No. AI access is strictly read-only via a personal token you can revoke instantly. It can analyse, but it can never create, edit or delete.
Do you train AI models on my responses?
No. We never train AI models on your data and never sell or share it. The MCP server only reads your data and hands it to the AI client you connected.
How do I report a security issue?
Email us through the contact page with details and reproduction steps. We follow responsible disclosure and will work with you to resolve it.
Questions about security?
Need a DPA, a sub-processor list, or a deeper technical conversation? We are happy to help.
Contact usLast updated: June 2026