SCIM configuration syncing members from your identity provider
A recorded interview with automatic data-retention settings applied
Enterprise Governance Suite

Scale research confidently with the right controls in place

Governance guardrails that make it safe for every PM, designer, and engineer to run their own research. Research Ops stays in control. Everyone else moves faster.

  • SOC 2, GDPR, and HIPAA compliant
  • SAML SSO and SCIM provisioning
  • Full audit logging built in

Research democratization works when governance and scalability are built in

Requirement

Multiple teams run sensitive financial research here. Participants and findings must be completely siloed.

Your structure, your rules

Requirement

Managing access every time someone joins or switches departments shouldn't be a part-time job for Research Ops.

300+ researchers

Requirement

Legal has a hard requirement on how long research recordings can be retained. No exceptions.

Zero exceptions

Requirement

Privacy required sign-off on every retention rule before go-live: what gets deleted, when, and why.

Every rule, pre-approved

Every one of these requirements is handled out of the box.

Governance Organize research by team with the right level of visibility

Create team boundaries that match how your org actually works. Open mode for collaborative cultures, Private mode for full silos, or Hybrid mode to share some research while keeping sensitive work locked down.

Workspace access and visibility of data settings, with team-affiliated visibility selected
Permissions & restrictions

Right access, right methods, right guardrails

Four roles from Account Owner to Observer, plus six configurable controls. Decide who can create studies, manage tags, view PII, and fund research. Then control which research methods and features are available by role, so new practitioners follow the same quality bar your core team set.

Access permission settings: PII visibility, custom attributes, role configuration, and tag management
SCIM integration

Let IT manage Great Question like every other enterprise tool

Every new hire, every department transfer, every offboarding, handled automatically. SCIM connects GQ to your identity provider and syncs users, roles, and teams in real time. When someone joins, moves departments, or leaves, access updates instantly.

The SCIM configuration screen: default role, SCIM endpoint, and bearer token

Data retention Meet compliance obligations without manual cleanup

Create named retention rules with flexible timeframes. Build rules in draft mode so your privacy team can review before anything goes live. A 30-day lookahead shows what's scheduled for deletion, and every action is logged for compliance audits.

The data retention rules table, with a rule's activity log open over it showing its next run and every change
Who it's for

Built for the people who make research scale

Research Ops sets the guardrails. IT manages access. Researchers keep their rigor. Legal stays compliant.

Research Ops

How do I support 45 teams without becoming the bottleneck?

Set team boundaries, configure permissions, and control feature access. Scale your program without scaling your team.

IT / Security

Can we manage this through our IdP like everything else?

SCIM auto-syncs users and teams from Okta or Azure AD. SSO enforces authentication. Audit logs track every action.

Researchers

How do we scale without losing rigor?

Pre-approved templates set the methodology. And permission guardrails make sure every study meets the bar before it reaches a participant.

Legal

What happens to research data when the retention window closes?

Retention rules enforce themselves. Draft mode lets legal review before go-live, and every deletion is logged.

Customer stories

Trusted by the teams scaling research with confidence

From 9 to 165 researchers, 300+ studies annually, 10,000+ end users

The reason we went with Great Question is because of its ability to set guardrails and have governance in the research process... that ability, almost alone, was the reason that we decided this was the platform for us.
A’verria Martin
A’verria MartinSr. Director of Product Research, Intelligence and Strategy, ServiceNow
ServiceNow

From 10 to 100+ researchers running studies in year one

Bringing on Great Question allowed us to strip away the complexity, and give everybody the tooling to be able to run their own studies.
Nicolás Carey
Nicolás CareyVP of Product and Design, Brex
Brex

1 ops person supporting 45 teams in Hybrid mode

Seeing what Great Question did to extend that one person to be able to seem like they were five people...made the biggest difference.
Jon Dobrowolski
Jon DobrowolskiProduct Leader, Asana
Asana

2 of the Fortune 5 use Great Question

Trust and security Certifications and guarantees your compliance team needs

Every security requirement covered, so your team can move forward without waiting on reviews.

SOC 2 Type II

Independently audited security controls verified annually. Your compliance team gets documentation, not promises.

Trust Center

GDPR compliant

Data retention rules, PII controls, and participant consent workflows built into the platform. Meet GDPR obligations by default.

Trust Center

HIPAA compliant

Protected health information stays protected. Access controls and audit trails meet HIPAA requirements for research involving health data.

Trust Center

SAML SSO

Multi-IdP support with admin-enforced SSO. Block password-based login entirely and connect multiple identity providers simultaneously.

Audit logging

Every governance action, login event, and API call recorded and exportable. Give your compliance team the trail they need for reviews.

PII controls

Configurable PII visibility by role. Transcript speaker handles keep real names out of AI outputs. Control who sees what, down to the field level.

Platform Governance is the foundation that makes all of this safe at scale

Lightning-fast recruitment, every research method, centralized insights, and the governance to run it all confidently across your entire organization.

Recruit

Find the right participants from your CRM or external panels.

Run

Launch prototype tests, card sorts, surveys, or interviews with human or AI moderation.

Analyze

AI-powered synthesis, tagging, and query on all your data.

Share

Distribute insights instantly across your org.

Questions

Frequently asked questions

What's the difference between Teams and Role-Based Permissions?

Teams control organizational boundaries, determining who can see which studies, candidates, and artifacts. Role-Based Permissions control what actions a user can take within those boundaries: creating, editing, deleting, or viewing. They work together. A Creator in Team A can create studies within Team A but can't see Team B's research.

How do Teams handle the hybrid use case?

Workspace Affiliation is the key mechanism. Admins can mark specific studies or candidates as Workspace-affiliated, making them accessible to all teams. Other resources follow team-level affiliation rules. This lets organizations share broad research like general UX studies while keeping sensitive work like HR research team-private.

Which identity providers does SCIM support?

Okta is tested and optimized. Azure AD, OneLogin, JumpCloud, and Google Workspace are auto-detected. Great Question follows the SCIM 2.0 spec, so any compliant identity provider should work even if it's not on the tested list.

How does Data Retention work?

You create named retention rules with configurable timeframes. A mark-then-delete workflow flags resources for deletion first, then gives admins a 30-day preview window before anything is permanently removed. Every action is logged for compliance audit trails. At launch, retention rules cover recordings and candidates, with additional resource types on the roadmap.

Is Great Question SOC 2, GDPR, and HIPAA compliant?

Yes. Great Question holds SOC 2 Type II certification, is GDPR compliant with built-in data retention and PII controls, and meets HIPAA requirements for research involving protected health information. Audit logs and exportable compliance documentation are available on all enterprise plans.

Get started

Give every team the confidence to run research at scale

Governance guardrails that make Research Ops happy, IT confident, legal comfortable, and every PM, designer, and researcher faster.