Security
Where the answers sit, and who can see them
This page is about responses and profiles. If you write to us through the form on the front page, that is a separate matter, and it is set out in the privacy policy.
Placement
Where the information sits
Separation
Each app its own database
Indikator, PersonalityIntelligence, Trivsel, the account system and this website each have their own database. The website can reach only its own two tables: a form on a public page has no connection to the database holding profiles or well-being responses.
Boundaries
The organisation is the boundary
Every response belongs to the organisation that invited, and every lookup in the app is bound to the organisation the user is logged into. There is no cross-customer view for anybody other than platform administrators.
AI
Never sees raw answers
Indikator's summary and interview guide are written by a language model that receives only the finished scores and the already-selected factor text. It runs EU-hosted, and you can turn it off without losing content in the report. PI's summary works on the same terms, on top of chapters written in advance. The Trivsel report has no AI layer at all: its texts are written in advance. Responses are not used to train models.
Vendors
Named in the data processing agreement
Who hosts, and where, is set out in writing in the data processing agreement you receive before you start, along with the sub-processors. It is there and not here, because it is the agreement that binds us — not a sentence on a sales page.
Deadlines
How long they stay
The deadline is agreed with you and set out in the data processing agreement, and there is a default if none is chosen. The deadline that applies is stated in the consent text the participant accepted — not only in an agreement the participant has never seen.
All three instruments
Three months by default
Counted from completion. After that the response is anonymised automatically: name, email, free text and raw data disappear, while the scores remain as statistical material. In Trivsel, group results already produced remain — they contain no name.
Why so short
The purpose is used up
A personality assessment is made for one hire or one programme. A well-being survey is made for one effort. When that is over, it is a file about a person that nobody uses for anything. Keeping it longer "just in case" is storing personal data for a purpose not yet thought of. If you need longer — a hiring process that drags on, a documentation obligation — we agree it and write it down.
No deadline
Then you clean up yourselves
An organisation can choose not to delete automatically. Then the consent states that no deadline has been set, and that the participant can request deletion at any time.
Afterwards
The scores stay, the person does not
Anonymous scores enter the statistical material norms and comparisons are built on. They cannot be traced back to a person.
Access
Who can see what
The customer
Only whoever invited
Reports are available to the organisation that sent the invitation, and to the colleagues that organisation gives access to. Access is granted per product: somebody who only needs one instrument sees only one. A Trivsel report is a group report: individual answers are not shown.
Roles
Administrator or user
Two roles. The administrator manages the organisation's settings, users and deadlines; everybody else works with their own clients and sessions. There is no hidden third role.
Us
Support is visible and logged
If we have to enter your account to help, it happens in a support session: there is a banner on every single page, the session ends by itself, and every change appears in the audit trail with the name of whoever helped — not as though you did it yourselves.
Audit trail
Every view is logged
Who opened which report, when, and who downloaded it as a file. The log can be produced if a participant asks who has seen her profile.
The participant
What you can ask for
If you have taken a test, an evaluation or a well-being survey, this applies to you. You do not have to write to us to start — the link is in the receipt you got when you finished.
-
To see all of it. The receipt has a link showing what is recorded about you and who is responsible. It requires no account. If you took an Indikator test or a well-being survey, you can download all of it as a file in the same place.
-
To have it deleted. In Indikator and Trivsel you ask from the same link. In PersonalityIntelligence the request goes through the consultant who invited you — the receipt has the address. In every case it is the organisation that invited you that decides over the information, and that has to answer you.
-
To read your own consent again. The text is stored in the version you were actually shown, along with the timestamp — not in the version that applies today.
-
To have the result explained. Anybody who answers is entitled to have the result explained by somebody trained to use it, and to say where the picture does not fit.
-
To say no. You can refuse to take part. Without your consent not a single question is asked, and there are no answers held.
-
To complain. If you are unhappy with the processing, you can complain to the Danish Data Protection Agency. You are also welcome to write to kontakt@profectify.com first.
What we do not do
We do not sell responses on, we do not use them to train language models, and we do not score anything in the background that the participant has not been told about. There are no analytics tools, no advertising pixels and no third-party cookies on the public pages, and the typefaces sit on our own server, so nothing is fetched from other domains while you read here.
And then the thing that is not a security measure but belongs here anyway: a profile is a snapshot built on self-description. No profile is better than another, and none of the personal instruments may stand alone as the basis for a decision about a human being. A Trivsel report is a group report and cannot be used to select or dismiss anybody.
The questionnaire and report in Trivsel are produced by Profectify. No language model runs on well-being responses.