Privacy
How svyLab handles your information
Last updated 2026-08-15 · Samplics LLC, operator of svylab.com and svyLab
This page says, in plain language, what we collect, why, where it lives, and how to reach us about
it. It covers the website (svylab.com), the svyLab platform, and the emails we send. It does not
cover the open-source svy libraries, which run on your own machine and send us nothing.
What we collect, and why
Your account
Email address, name, a hashed password (we never store the password itself), and your organization and workspace memberships. Used to sign you in, to scope what you can see to your organization, and to send account emails such as password resets.
What you send us through forms
A walkthrough request or design-partner application (name, work email, organization, role, the survey program you describe, your current tooling, and your answers to the form's questions), a contact message, or a newsletter signup (email, optional name and organization). We store these in our database and forward them to our inbox so a person can reply. Newsletter emails carry an unsubscribe link; we do not add form submitters to the newsletter without asking.
What you put in the platform
Datasets, questionnaires, weighting and analysis plans, results, and reports that you upload or create. We process them only to provide the service to your organization. They live in your organization's own space: there is no cross-organization data sharing, by architecture, and members of other organizations cannot see them. We do not use your data to train models, and we do not sell it.
AI features
When you use an AI-assisted feature (for example, drafting weighting steps from a sentence of intent), the information needed for that request — such as variable names and labels, your instructions, and the plan being edited — is sent to a third-party AI model provider to generate the draft. Every draft is shown to you before it is used, and nothing is run without a person accepting it.
Usage and security data
Standard server logs (IP address, browser, pages requested, timestamps) for security, rate limiting, and debugging, kept for a limited time; and Google Analytics 4 on the public website and documentation to understand which pages are read. We do not run advertising trackers.
Cookies
A session cookie to keep you signed in, a CSRF cookie to protect forms, and the Google Analytics cookies on the public pages. Signing out clears the session; the platform also signs you out after a period of inactivity.
Where it lives, and who processes it
svyLab is hosted on Google Cloud. We use Postmark to send transactional and newsletter email, and Google Analytics for website statistics. These providers process data on our behalf under their own terms; we do not share your data with anyone else, except if the law requires it.
How long we keep it
Account and platform data for as long as your organization uses svyLab; you can delete datasets and other artifacts yourself, and deleted items are removed after a short recovery window. Form submissions for as long as the conversation they started is live. If you leave, tell us and we remove your organization's data — the engine is open source and results are plain, versioned files, so what you built can be re-run elsewhere. Lock-in is not part of the design.
Your choices
Ask us to see, correct, or delete what we hold about you, or to stop emailing you, at info@svylab.com. Newsletter emails also carry an unsubscribe link. svyLab is not directed at children and we do not knowingly collect information from anyone under 16.
Changes
We will post changes here and update the date at the top. Material changes for signed-in members will also be announced by email.
Contact
Samplics LLC · info@svylab.com · svylab.com