Privacy-preserving organizational intelligence is the practice of learning from people in an organization without making their individual sensitive responses available to the organization.
The objective is not to know less about the organization. It is to know less about each person than is necessary to understand the organization.
That distinction matters when the subject is sensitive: workplace experience, demographic information, organizational culture, technology adoption, trust, risk or other questions where people may reasonably care who can see their answer.
Organizations often need population-level answers. Where are experiences different? What changed? Where does confidence fall? Which assumptions are wrong?
Those questions do not necessarily require a file containing every individual's response.
A privacy-preserving design separates the information needed to invite people from the information needed to understand their answers.
In SafePorter, identity stays on systems controlled by the organization. SafePorter receives responses without names or email addresses. The organization receives aggregate results, and groups that cannot be reported safely are withheld.
It is an information architecture for situations where the pattern is necessary and the identity is not.