Request a Demo

Medallia & Data Protection

Ensure data privacy, security and accuracy across your CX programs

Setting the Bar for CX Data Protection

Whether you need to comply with GDPR, CCPA, or other similar privacy laws, Medallia Experience Cloud has you covered with enterprise-grade controls.

 Compliance with CCPACompliance with GDPR
Data deletion tools and processes
Data export tools and processes
Data modification tools and processes
Data security

Our commitment to our customers

Medallia does not sell your personal information or your end users’ personal information.
See Medallia’s Privacy Policy for more.


California Consumer Privacy Act FAQ

Learn about the CCPA and how your use of Medallia fits within the law.

Read More


Medallia Experience Cloud End-to-End Data Protection

Learn how the Medallia Experience Cloud controls data access and security, and ensures compliance with information security requirements.

Read More

Personal data privacy

All personal data or personally identifiable information (PII) in Medallia Experience Cloud can be cataloged and masked so that is only viewable through specified access rights. With this feature, customers can be assured that personal data or PII data can be viewed only by those staff or markets who have a need to know. This allows customers to retain data in Medallia Experience Cloud over time so that they can realize the power of Medallia’s reporting platform.

Full service data management

Medallia Experience Cloud automates GDPR and CCPA compliant deletion of customer or employee data for customers who receive  requests from individual customers. Medallia’s reporting application also provides flexible options for data export and modification that comply with GDPR, CCPA, and other applicable laws.

Compliance reporting

Medallia provides reports to substantiate data deletion compliance. Our aim is to automate and ease the burden of GDPR and CCPA compliance verification, assuring our clients’ legal and compliance departments that we’re a safe place to store data.

Data retention

Medallia purges personal data from internal processing systems to minimize the data we retain per GDPR Article 5. Our reporting system retains customer data until our clients delete it or end their relationship with Medallia Experience Cloud.