ICC/ESOMAR Code compliant
We commit to the ICC/ESOMAR International Code on Market, Opinion and Social Research and Data Analytics β the globally recognized standard for ethical research practice.
Read our commitment βmypinio is designed for organizations that can't afford to compromise on security, privacy, or compliance. GDPR compliant, EU data residency, role-based access, and full audit trails β not optional add-ons.
We commit to the ICC/ESOMAR International Code on Market, Opinion and Social Research and Data Analytics β the globally recognized standard for ethical research practice.
Read our commitment βSECURITY
All data encrypted at rest and in transit using AES-256 and TLS 1.3. Encryption is not optional β it applies to every piece of data on the platform, always.
All data stored in the European Union. Full GDPR compliance including data subject rights, right to deletion, consent management, and data processing agreements available on request.
Granular access control at workspace, product, and program level. Team members only see what they need to see. Audit logs track every access and change.
FEATURES
mypinio is built for GDPR from the ground up β not retrofitted. Data subject requests, right to deletion, consent tracking, and data minimization are built into the platform architecture. We provide Data Processing Agreements for all paid plans.
All data stored in the EU
Your data never leaves the European Union. All mypinio infrastructure runs on EU-based servers. No data transfers to the US or other jurisdictions without explicit consent. Critical for organizations subject to Schrems II.
Define exactly who can see what β at workspace level, product level, and program level. Sensitive employee experience data can be restricted to HR only. Research data can be shared with stakeholders in read-only mode. Full control, always.
| View | Edit | Export | Delete | |
|---|---|---|---|---|
| Admin | ||||
| Editor | ||||
| Viewer | ||||
| Member |
Every action in mypinio is logged β who accessed what, when, and what they did. Audit logs are available to workspace admins and can be exported for compliance reporting. Nothing happens without a trace.
For organizations with the strictest data requirements β connect your own database and keep research data entirely within your own infrastructure. mypinio becomes a platform layer over your data, not a data custodian.
BY INDUSTRY
Financial Services
GDPR compliance, EU data residency, full audit trails, and data sovereignty options make mypinio viable for financial institutions with strict regulatory requirements. Data Processing Agreements available on request.
Healthcare & Life Sciences
Role-based access, anonymization controls, audit logging, and data sovereignty support the security requirements of healthcare organizations running patient experience and employee engagement programs.
Public Sector
All data stored in the EU. No transfers to non-EU jurisdictions. Data sovereignty available for organizations that require data to remain entirely within government-controlled infrastructure.
We're happy to walk through our security architecture, provide documentation, or discuss specific compliance requirements.
FAQ