{
  "slug": "limesurvey",
  "category": "forms",
  "name": "LimeSurvey",
  "description": "Open-source survey software from LimeSurvey GmbH in Hamburg. It can be self-hosted for free or used as the paid LimeSurvey Cloud service hosted in Germany.",
  "website": "https://www.limesurvey.org",
  "source": "https://github.com/LimeSurvey/LimeSurvey",
  "license": null,
  "platforms": [
    "web"
  ],
  "jurisdiction": {
    "code": "DE",
    "name": "Germany",
    "eyes": "Fourteen Eyes",
    "eu": true,
    "gdpr": true,
    "cloud_act": null
  },
  "pick": false,
  "pick_reason": null,
  "disclosure": null,
  "grade": "D",
  "score": 47,
  "coverage": 100,
  "summary": "LimeSurvey scores 47 out of 100 (grade D) on the forms and surveys criteria. It meets 3 of 8 criteria: open source, no ads or data sales and TLS configuration. It partly meets security headers. It does not meet no trackers or telemetry, independent audit, transparency report and tells users about requests. It is based in Germany: Fourteen Eyes member; EU member (GDPR). Automated tests: SSL Labs grade A+ and Mozilla HTTP Observatory grade B.",
  "url": "https://privacyratings.com/forms/limesurvey/",
  "markdown": "https://privacyratings.com/forms/limesurvey/index.md",
  "answers": {
    "open_source": {
      "title": "Open source",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://raw.githubusercontent.com/LimeSurvey/LimeSurvey/master/LICENSE",
      "note": "Licensed under GPL-2.0 or later."
    },
    "no_trackers": {
      "title": "No trackers or telemetry",
      "weight": 3,
      "answer": "no",
      "evidence": "https://www.limesurvey.org/privacy-notice",
      "note": "The website uses Google Analytics, Google Tag Manager and Zoho PageSense."
    },
    "no_ads": {
      "title": "No ads or data sales",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://www.limesurvey.org/pricing",
      "note": "Funded by LimeSurvey Cloud subscriptions and services. The privacy notice states no external marketing providers are involved."
    },
    "independent_audit": {
      "title": "Independent audit",
      "weight": 2,
      "answer": "no",
      "evidence": null,
      "note": "No independent audit is published."
    },
    "transparency_report": {
      "title": "Transparency report",
      "weight": 2,
      "answer": "no",
      "evidence": null,
      "note": "No transparency report or government request policy is published."
    },
    "user_notice": {
      "title": "Tells users about requests",
      "weight": 1,
      "answer": "no",
      "evidence": null,
      "note": "No published policy on notifying users about data requests."
    },
    "tls": {
      "title": "TLS configuration",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://www.ssllabs.com/ssltest/analyze.html?d=account.limesurvey.org&hideResults=on",
      "note": "Grade A+"
    },
    "security_headers": {
      "title": "Security headers",
      "weight": 1,
      "answer": "partial",
      "evidence": "https://developer.mozilla.org/en-US/observatory/analyze?host=account.limesurvey.org",
      "note": "Grade B (75/100+)"
    },
    "web_standards": {
      "title": "Modern web standards",
      "weight": 1,
      "answer": "pending",
      "evidence": null,
      "note": "Not tested yet."
    }
  },
  "tests": {
    "ssllabs": "A+",
    "observatory": "B",
    "internetnl_web": null,
    "internetnl_mail": null,
    "trackers": [
      {
        "name": "Google Tag Manager",
        "host": "inline code",
        "effect": "no"
      }
    ],
    "tested_at": "2026-10-01T06:38:55.705Z"
  },
  "last_modified": "2026-10-01T06:56:31Z"
}