60 Atlantic Avenue, Toronto

Ihre Daten Bleiben Ihre Daten

Mit Sicherheit, Datenschutz und Compliance als grundlegende Prinzipien gebaut – nicht als nachträgliche Gedanken.

Unternehmens-Sicherheit & Datenschutz

Security Architecture

Vollständige Mandantentrennung

Ihre Daten werden in einer dedizierten Datenbank gespeichert – nicht in einem gemeinsamen Schema. Sie besitzen Ihre Daten, und PollZapper kann ohne ausdrückliche Genehmigung nicht darauf zugreifen oder sie monetarisieren.

  • Separate database per tenant for complete isolation
  • Anonymous polling: no respondent PII stored
  • Interview metadata isolated per tenant
  • Protected references to prevent unauthorized access

Verschlüsselt im Ruhezustand und während der Übertragung

Alle Daten werden mit branchenüblichen Protokollen verschlüsselt. Die rollenbasierte Zugriffskontrolle stellt sicher, dass nur autorisierte Benutzer auf sensible Daten zugreifen.

  • Industry-standard encryption for all connections
  • Secure session management with protection against common attacks
  • File storage encrypted at rest on enterprise cloud infrastructure
  • Two-factor authentication (2FA) support
  • Role-based access control (RBAC) with granular permissions

Umfassende Audit-Trails

Jede Aktion wird mit Zeitstempel, Benutzer und Umfang protokolliert. Erfüllen Sie regulatorische Anforderungen mit 99,9% Audit-SLA.

  • All user actions logged (create, read, update, delete)
  • Data access tracking (who viewed what, when)
  • Permission changes audited
  • Interview quality flags logged with reasons
  • Exportable audit reports for compliance reviews

Anonyme Umfragen & Zero-Knowledge-Optionen

Antwortdaten enthalten keine Befragtenidentität. Für sensible Projekte aktivieren Sie Zero-Knowledge-Feldeinsätze, bei denen Befrager den Kunden-Kontext nicht sehen können.

  • Anonymous response collection (no PII stored)
  • Compartmentalized access for confidential projects
  • Blind field operations: canvassers see questionnaires but not client/sponsor identity
  • GPS validation without linking location to respondent identity

Skalierbar, Redundant, Überwacht

Gebaut auf Google Cloud Platform mit automatisierten Backups, Echtzeit-Überwachung und 99,9% Verfügbarkeits-SLA.

  • Daily automated backups with multi-week retention
  • Real-time system monitoring and alerting
  • Geographic redundancy with automated failover
  • 99.9% uptime SLA with public status page
Compliance Readiness

Meeting Global Standards

GDPR

Architecture Ready

EU General Data Protection Regulation

  • Right to erasure: Automated deletion workflows with verification
  • Right to data portability: Export in machine-readable formats (CSV, JSON, SPSS)
  • Data protection by design: Complete tenant isolation and anonymous polling
  • Security of processing: End-to-end encryption, RBAC, and 2FA

SOC 2 Type II

In Progress

Service Organization Control 2

  • Security: Encryption, access control, audit logs
  • Availability: 99.9% uptime SLA, automated backups
  • Confidentiality: Tenant isolation, role-based access
  • Processing Integrity: Data validation, quality controls

HIPAA

Architecture Supports

For Healthcare Research

PollZapper's architecture supports HIPAA-compliant polling when configured properly. Business Associate Agreement (BAA) available on Enterprise and Agency plans.

21 CFR Part 11

Audit Trail Support

FDA Electronic Records

Comprehensive audit logging supports FDA requirements for electronic records and signatures. Suitable for clinical trial polling and research.

Data Ownership & Portability

You Own Your Data. Period.

PollZapper does not claim ownership of your polling data, questionnaires, or results. You can export everything at any time.

  • Export raw response data in CSV, Excel, or SPSS (.sav) formats
  • Export questionnaire definitions as JSON for platform migration
  • Export sampling frames and metadata for reproducibility
  • Export reports as PDF or Excel with your custom branding
  • Agency plan: Cryptographic hashes for tamper-proof verification
  • Data retention: Your choice—delete anytime or retain indefinitely
Common Questions

Security FAQ

Where is my data stored?

Primary hosting: Google Cloud Platform (US). Regional data residency options available on Agency plan for EU, UK, Canada, or Australia hosting.

Can PollZapper access my data?

No. PollZapper employees do not have routine access to tenant databases. Access is granted only for explicit support requests with your consent, and all access is logged.

What happens to my data if I cancel?

You can export all data before cancellation. We retain your data for 30 days (recoverable if you resubscribe), then permanently delete it. Request immediate deletion anytime.

Is respondent data anonymous?

Yes. PollZapper does not store respondent PII unless you explicitly collect it via custom questions. Interview metadata (GPS, timestamp) is not linked to respondent identity.

Do you have a HIPAA BAA?

Yes, Business Associate Agreements are available on Enterprise and Agency plans. Contact sales to execute a BAA for healthcare research projects.

How do I report a security vulnerability?

Email [email protected] with details. We follow responsible disclosure and acknowledge reports within 48 hours.

Questions About Security?

Our team is here to help with compliance, security reviews, and custom configurations.

Contact Security Team View All Features

Nehmen Sie Kontakt auf

60 Atlantic Avenue, Toronto, ON. M6K 1X9 Canada

©2024 - PollZapper.com. Alle Rechte vorbehalten.