PII field controls
Choose which fields are recorded on user profiles and responses — turn off anything you don't need. Applies to anonymous visitors too.
Privacy Controls
Administrators control which data is captured, how long it's kept, and how it's deleted: field-level capture settings, user-level deletion, per-form purges, project-wide retention, and account-wide deletion on request.
Data field controls
Admin onlyConsent tracking
User data deleted
u_3374 · all fields purged · logged
How it works
Privacy Controls gives administrators granular oversight over every piece of data encatch touches — from what is recorded in the first place to how long it is kept and who can act on it.
Administrators can inspect every field encatch collects and choose to include it on profiles, include it with responses, or leave it out entirely. Settings apply uniformly — including to anonymous visitors. No data should slip through because someone forgot to configure it.
User data field settings
Applies to all users, including anonymous visitors — no exceptions.
Accountability and identity
Review portal access, manage retention and exports, and protect the voice behind each response.
On Enterprise, the access log records who signed in to your encatch admin portal and when, giving compliance teams a clear record of portal access.
Access log
portal_access
priya@acme.com · Admin portal
portal_access
admin@acme.com · Admin portal
portal_access
sam@acme.com · Admin portal
portal_access
admin@acme.com · Admin portal
Enterprise: see who accessed your admin portal and when.
Zero-data segmentation · Segmentation Engine
Pair the encatch Segmentation Engine with your CDP or identity system through the Admin API to run targeted feedback campaigns without ingesting personal data. Your first-party data stays where it belongs: encatch only receives segment membership, as a user trait or a manual-segment update, against an internal user ID.
Full capabilities
Privacy Controls gives administrators the tools to honour user rights, meet compliance requirements, and keep sensitive data under tight control — at every level of the system.
Choose which fields are recorded on user profiles and responses — turn off anything you don't need. Applies to anonymous visitors too.
Control what is recorded even for users with no identity — device context, session data, and more.
Manual feedback forms continue to work for visitors who decline cookies — no session tracking required.
Delete or anonymize all of a user's data in one action.
Choose which user fields are stamped on each response, and leave out anything you don't need.
Set how long response data is kept. When the window expires, records are purged automatically.
Schedule daily exports to your own storage before the retention window closes. Your data, your archive.
See who accessed your admin portal and when.
Hold off the encatch session until a user consents. Until then nothing is stored on the device, a server-side ID rotates every 24 hours, auto-triggered forms pause, and manually launched forms still work.
Let your CDP decide who's in a segment and send encatch only the membership, as a user trait or a manual-segment update through the Admin API. Use an internal user ID and no other customer data has to cross systems.
All privacy settings are gated to administrator roles — team members see only what they need to.
Field settings apply to new data immediately; user deletions and purges run as background jobs you can track.
AI neutralises writing style in free-text responses — protecting identity in small groups without losing a word of meaning.
Product journey
A little more detail
Common questions about data capture, retention, and deletion controls in encatch.
Which data is captured (field by field), how long it's kept (project-wide retention), and how it's deleted: per user, a form's responses, or the whole account on request through support.
Yes — Privacy Controls include a cookie-less mode so feedback collection still works without tracking cookies.
Yes. Data Settings let admins decide exactly which automatic fields, such as device, browser, or country, are recorded on user profiles and responses for each project.
Your next step
Privacy Controls gives your team the tools to handle user data responsibly — from field-level capture settings to full account deletion on request, in your hands.