A candidates table filtered to eligible participants, beside the AICPA SOC, GDPR and HIPAA compliance seals.
Governance & security

Reliable privacy & security in your customer research platform

Protect the privacy of your researchers and customers and know your data is safe and secure with Great Question.

Book a meeting

Data Compliance across the board

Certifications & Accreditations

SOC 2 Type II exam completed and built from the ground up to be GDPR compliant.

Encrypted Data

All data in-transit is secured using TLS and at-rest with AES-256, block-level storage encryption. All customer passwords are hashed. This means if you lose it, it's gone forever.

Great Question's infrastructure is hosted on AWS, using SOC 1 and SOC 2 certified data centers in the US-1 East region. All data in transit is encrypted with TLS, and data at rest uses AES-256 block-level encryption. Security posture is continuously monitored through Vanta, with regular penetration tests and policy reviews

Limited employee access

Only select Great Question employees (those who directly require it to do their job) are authorized to access your data.

Backed by the standards your security review asks for

SOC 2 Type II

Audited against the five trust service principles.

Trust Center

GDPR

Built from the ground up to be GDPR compliant.

Trust Center

HIPAA

A BAA is available for research that touches PHI.

Trust Center

CCPA

Participants can see, export, and delete their data.

Trust Center

Data Security

Data security & privacy has been a feature from the very start. We believe that a secure and private research platform makes for a great user experience.

Audit trails & logging

All access to user data is logged, whether by your own team members or Great Question employees.

Constant monitoring

We monitor both our infrastructure and network traffic to detect anomalies and prevent potential threats.

User roles & permissions

Each organization on Great Question has the power to configure their own access roles to ensure security within their organization.

Security Questions

Can I share feedback on security

If you would like to share feedback on our security or have any security concerns please contact us at security@greatquestion.co

Where is your security disclosure policy?

Data security is a top priority for Great Question, and Great Question believes that working with skilled security researchers can identify weaknesses in any technology.

If you believe you've found a security vulnerability in Great Question’s service, please notify us; we will work with you to resolve the issue promptly.

Disclosure Policy

If you believe you’ve discovered a potential vulnerability, please let us know by emailing us at security@greatquestion.co. We will acknowledge your email within 5 days. Provide us with a reasonable amount of time to resolve the issue before disclosing it to the public or a third party.

Contact

Great Question is always open to feedback, questions, and suggestions. If you would like to talk to us, please feel free to email us at security@greatquestion.co.

You can read our complete disclosure policy here and our HIPAA Anti-Retaliation Policy here.

What are some steps I can take to protect my researchers' privacy?

We recommend in all calendars, that you check the "keep my calendar private" checkbox for every study. To see where this exists, review this demo video as part of our enterprise plan, you can obfuscate the researchers last name.

Can I get a copy of your SOC 2 Type II compliance certificate?

Of course! Please request access here. If you have any questions, email security@greatquestion.co.

Platform Why Great Question?

Single tool for all research related tasks. Easy to use, easy to train, easy for research to make an impact.

Recruit with confidence

Use GDPR compliant custom landing pages to quickly onboard customers into your research panel, or invite candidates via beautifully styled emails.

Respect customers' privacy

Manage consent when customers join your panel or participate in a study. Configure safeguards to ensure that no one is overcontacted or overpolled.

Keep PII private

Protect the privacy of your candidates and researchers with obfuscated PII. Keep last names, emails and phone numbers private so research doesn't feel intrusive.

Customized user roles

Set up user roles so only specific people have database access and protect the PII of participants. Search for research in our repo without exposing private information.

Integrate with ease

Bring in and sync data from other customer databases, to keep your research database up to date. Determine field level visibility upon setup.

Opt-in once or twice

Set up your preferred opt-in process. You can have people opt-in for a panel and individual studies or just for an individual study.

Get your team involved

Keep everyone up to date with your findings with email digests, observer accounts, and integrations into your workflow.

Make research visible

Get a birds-eye view of all the research going on to keep a pulse on what's being learned and who is being talked to.

Scale and democratize research

Help everyone in your team answer their greatest questions, while keeping track of how it’s done to maintain your standards.

Use cases Used by people who do research

Built for curious, customer-centric teams, trusted by researchers. Our platform is so easy, ANYONE can do great research. See how Great Question compares to standalone feedback tools like Qualtrics, Medallia, and Delighted in our customer feedback tools comparison. View all use cases

Get started

See the all-in-one UX research platform in action

Book a demo