Privacy Policy

How we protect your data and respect employee privacy

Last updated: February 2026

1. Introduction

AnonInsights (“we,” “us,” or “our”) is an independent, third-party employee feedback platform. This Privacy Policy describes how we collect, use, store, and protect information when you use our services. We operate as an independent intermediary between employers and employees, and our commitment to privacy is fundamental to our business model.

2. Information We Collect

Employer Account Information

When an employer creates an account, we collect business contact information including name, email address, company name, and billing details necessary to process payments.

Employee Contact Information

Employers provide employee names, email addresses, and/or phone numbers solely for the purpose of survey distribution. This information is stored separately from survey responses and is never shared with the employer in connection with individual feedback.

Survey Responses

We collect survey responses from employees. These responses are processed by our AI analysis system and presented to employers only in aggregated, anonymized form. Individual responses are never exposed to employers.

Usage Data

We collect standard usage data such as IP addresses, browser type, device information, and interaction data to improve our services and ensure security.

3. How We Use Your Information

  • Survey distribution: Employee contact information is used exclusively to send surveys via email, text message, or voice call.
  • Anonymous aggregation: Survey responses are processed by our AI to generate aggregated sentiment scores, themes, and action items.
  • Employer reporting: Aggregated, anonymous insights are delivered to employers. No individual-level response data is included in any report, dashboard, API response, or export.
  • Service improvement: Aggregated, de-identified data may be used to improve our AI analysis capabilities.
  • Account management: Employer account information is used for billing, support, and service communications.

4. Data Sharing

We do not sell, rent, or share individual employee data with employers, third parties, or any other entity. Employers receive only aggregated, anonymous insights derived from survey responses. We share information with trusted service providers who are contractually bound to protect your data and use it only for providing services to us.

5. Third-Party Service Providers

We use the following third-party services to operate our platform. Each provider processes data only as necessary to deliver their specific service and is bound by data processing agreements.

  • Supabase — Database hosting, authentication, and file storage (data resides in US-based infrastructure).
  • Stripe — Payment processing for employer subscriptions. We do not store credit card numbers on our servers.
  • Twilio — Voice call delivery for voice-based surveys. Phone numbers and call metadata are processed to facilitate survey responses.
  • ElevenLabs — AI voice synthesis for interactive voice survey agents. No personally identifiable information is shared with ElevenLabs.
  • Anthropic (Claude) — AI analysis of aggregated survey responses for sentiment scoring, theme extraction, and action item generation.
  • PostHog — Product analytics to understand platform usage patterns. No individual survey response data is sent to PostHog.
  • Sentry — Error monitoring to detect and fix technical issues. Error reports may include technical metadata but never survey response content.

6. AI Processing

Survey responses are processed by AI models to generate aggregated insights for employers. This processing includes sentiment analysis, theme extraction, urgency detection, and action item generation. AI analysis is performed on individual responses to produce per-response metadata, but only aggregated results are ever presented to employers. Individual responses are never exposed in raw form. AI providers do not retain survey data for model training.

7. Data Retention and Deletion

Employer account data is retained for the duration of the active subscription plus 30 days after cancellation. Employee contact information is retained only as long as the associated employer account is active. Survey response data is retained in aggregated form for reporting purposes. Upon account deletion, all associated data including employee contact information and raw survey responses is permanently deleted within 30 days.

8. Security Measures

We implement industry-standard security measures to protect your data, including: encryption at rest and in transit (AES-256, TLS 1.3), row-level security with tenant isolation at the database level, role-based access controls for all internal systems, and regular security audits. We are actively pursuing SOC 2 Type II certification.

9. Employee Data Rights

Employees have the right to: know what contact information is stored about them, request deletion of their contact information, understand how their survey responses are processed, and know that their individual responses are never shared with their employer. To exercise these rights, employees may contact us directly at the address below.

10. GDPR and CCPA Rights

If you are located in the European Economic Area (EEA) or California, you have additional rights under the General Data Protection Regulation (GDPR) or the California Consumer Privacy Act (CCPA), respectively.

GDPR Rights (EEA residents)

  • Right of access: Request a copy of the personal data we hold about you.
  • Right to rectification: Request correction of inaccurate personal data.
  • Right to erasure: Request deletion of your personal data, subject to legal retention requirements.
  • Right to data portability: Receive your data in a structured, machine-readable format.
  • Right to object: Object to processing of your personal data for certain purposes.

CCPA Rights (California residents)

  • Right to know: Request details about the categories and specific pieces of personal information we have collected.
  • Right to delete: Request deletion of personal information we have collected.
  • Right to opt-out: We do not sell personal information. You may opt out of any future data sharing by contacting us.
  • Right to non-discrimination: You will not receive discriminatory treatment for exercising your privacy rights.

To exercise any of these rights, contact us at privacy@anoninsights.com. We will respond within 30 days (GDPR) or 45 days (CCPA) of receiving your request.

11. Cookies

We use essential cookies necessary for the operation of our platform, including authentication and session management. We may use analytics cookies to understand how our services are used. You can manage cookie preferences through your browser settings.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of material changes via email or through our platform. Your continued use of our services after changes are posted constitutes acceptance of the updated policy.

13. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at privacy@anoninsights.com or use the contact form on our website.