SurveyGizmo Data Privacy & Security Policy
SurveyGizmo Data Privacy & Security Policy
SurveyGizmo Data Privacy & Security Policy
We will not sell, rent, distribute or give away your email address or personal information to ANY third
party, except to comply with applicable law. We will not publish your email address, phone or mailing
address at any time.
HIPAA Certification
SurveyGizmo has self-certified its adherence to HIPAA, the Health Insurance Portability and
Accountability Act of 1996 for the handling of Protected Health Information (PHI). SurveyGizmo
follows the Privacy Rule and the Security Rule provisions of HIPAA. For more information about
HIPAA visit the US Department of Health and Human Resources HIPAA page.
Survey Gizmo Customer Data Privacy and Security Statement
Server Security
Our data servers are hosted by Server Beach in San Antonio, Los Angeles, and Miami. They are in high
security data centers, monitored via closed circuit television and 24x7 onsite security personnel guard
the facility while military-grade pass card access and biometric handscan units provide further layers of
security. The facilities are equipped with an FM200 gas-based, hardware-friendly fire suppression
system and diesel backup power generators.
We use firewall software and perform daily scans for viruses and rootkits. Data sent between the
survey production machines is sent over an AES-256 (256 bit) encrypted connection. Our database is
behind a firewall and configured to only accept connections from a single machine in our local
network. User passwords are encrypted/hashed via MD5.