What makes a survey anonymous and why it matters
An anonymous survey is one where you collect responses without recording who gave them. The person answering stays unknown to you, and ideally, they cannot be identified even if someone else looks at your results later. This matters because people answer differently when they think nobody will know it was them — they are more honest about sensitive topics, less likely to give answers they think you want to hear, and more willing to admit mistakes or unpopular opinions.
The difference between anonymous and private is important. A private survey means you know who answered, but you keep that information confidential. An anonymous survey means you never collect the identifying information in the first place. If you need to know who said what — to follow up with them, to match their survey answer to other data about them, or to send them a thank-you — then you cannot make it truly anonymous.
Most survey tools let you turn off the features that collect names, email addresses, or IP addresses. But the default settings on many platforms collect this data automatically, so you have to actively disable it. This section walks you through what to turn off and why.
Key Takeaways
- Turn off the setting that records respondent email addresses or names before you send your survey, because most tools collect this by default.
- Disable IP address logging if your survey tool offers it, since IP addresses can sometimes identify a person or their location.
- Avoid questions that ask for names, birthdates, employee ID numbers, or other details that could identify someone later.
- If you are distributing the survey through email or a direct link, use a generic link that does not embed the recipient's identity in the URL.
- Test your survey by taking it yourself to confirm that no identifying information appears in the response data.
Disable email and name collection in your survey tool
Most survey platforms — Google Forms, Typeform, SurveyMonkey, Qualtrics — collect the respondent's email address by default if they are logged into an account when they take the survey. Some also collect their name. You have to turn this off manually in the settings.
In Google Forms, open your survey and click the gear icon for Settings. Under the Responses tab, find "Collect email addresses" and change it to "Do not collect." If you are using a Google account to distribute the survey, also check that "Sign in required" is turned off — if it is on, Google will know who answered even if you do not collect their email in the form itself.
In Typeform, go to Settings and look for "Respondent identification." Turn off "Collect respondent email" and "Collect respondent name." In SurveyMonkey, open your survey and click Collect Responses, then Settings. Uncheck "Require respondent name" and "Require respondent email." The exact location and wording changes between tools, but the principle is the same: find the section about respondent data and turn off anything that captures identity.
After you change these settings, take your survey yourself to confirm that you are not being asked for your email or name. If you are still prompted for either one, go back to settings and look for a second toggle — some tools have separate controls for "collect" and "require," and you need to turn off both.
Turn off IP address and device logging
An IP address is the number that identifies your computer or phone on the internet. It does not show your name, but it can narrow down your location and sometimes identify you if someone knows which IP addresses belong to your workplace or home network. Some survey tools log this automatically.
In Google Forms, the IP address setting is in the same Settings menu under Responses. Look for "Collect respondent location" and turn it off. This prevents Google from recording the IP address or approximate location of the person taking the survey. Google Forms does not have a separate IP logging toggle — turning off location collection is the main control.
In Typeform, go to Settings and search for "IP address" or "data collection." Typeform collects IP addresses by default but does not offer a built-in toggle to disable it. Your alternative is to use Typeform's anonymous link feature, which generates a link that does not embed respondent identity. In SurveyMonkey, open Settings and look under "Security" for options related to IP logging or respondent tracking. The availability of this setting depends on your account type.
If your survey tool does not offer an IP logging toggle, the next best step is to use an anonymous distribution method — a generic link that anyone can share, rather than a personalized link sent to specific people. This is covered in the section below.
Avoid questions that reveal identity
Even if your tool collects no email or IP address, a respondent can identify themselves by accident through their answers. If you ask "What is your employee ID?" or "What is your birth date and hometown?" or "Describe a project you worked on last month," someone reading the results might figure out who said it.
Review your survey questions and remove or rephrase anything that asks for a specific identifier. Instead of "What is your job title?" ask "What department do you work in?" Instead of "How many years have you been here?" ask "Are you in your first year, years two to five, or more than five years?" These versions collect the information you need without pinpointing the person.
Be especially careful with open-ended questions — the ones where people type a paragraph instead of picking from a list. Someone might write "I was frustrated when my manager did X" and include details that only one person would recognize. If you need open-ended responses, remind respondents in the survey instructions not to mention names, dates, or specific projects that could identify them.
After you write your survey, read through it as if you were a coworker or manager trying to figure out who said what. If you can narrow it down to a few people based on the questions alone, rewrite those questions.
Use an anonymous distribution method
How you send the survey matters as much as the survey settings. If you email a personalized link to each person, the survey tool might embed their email address in the URL even if you have turned off email collection. The safer approach is to share a generic link that anyone can use.
In Google Forms, click the Send button and copy the link under "Link." This is a generic link — anyone who has it can take the survey, and Google does not know who they are. Paste this link into an email, a Slack channel, or a document and let people share it. Do not use the "Email" option in the Send menu, because that creates a personalized link tied to each recipient's email address.
In Typeform, click Share and select "Anonymous link." This generates a URL that does not track who clicks it. In SurveyMonkey, go to Collect Responses and choose "Anonymous link" under the distribution options. If your tool does not have an anonymous link feature, use a URL shortener like bit.ly to mask the original link, though this is a weaker protection than a truly anonymous link.
If you are distributing through an email list or a messaging platform, include a note that the survey is anonymous and that people should not share their responses with you afterward — the whole point is lost if someone tells you "I answered yes to question three."
Check your response data before sharing results
After you close the survey and collect responses, read or export your data and look at it before you share it with anyone else. Open the file in a spreadsheet and check the column headers. You should see your survey questions, but you should not see columns labeled "Email," "Name," "IP Address," "Timestamp," or "Respondent ID."
If those columns are there, your survey was not truly anonymous, even if you turned off the settings. Some tools re-enable data collection if you change settings after responses start coming in, or they collect data in the background even when you have turned off the visible toggles. Delete those columns from your exported file before you share the results with anyone.
Also scan the actual responses for any information that could identify someone. If one response says "I work in the downtown office and I am the only accountant there," that person is identifiable. You may need to edit or remove responses that accidentally reveal identity, or you may need to aggregate your results so that no single response is visible — for example, showing that "40% of respondents said X" instead of listing each individual answer.
If you are publishing results online or sharing them widely, consider removing or combining response options that have very few answers. If only one person selected "I have been here for 20 years," that detail could identify them even without a name.
Decide whether you actually need anonymity
Before you build an anonymous survey, ask whether anonymity is what you really need. If you want to know how your team feels about a new policy, anonymity makes sense — people will be more honest. If you want to know which customers are most satisfied so you can reach out to them with a thank-you, anonymity defeats your purpose.
Some situations call for a middle ground. You might collect responses anonymously but ask people to opt in to follow-up contact — a checkbox that says "I would like to discuss my feedback further" with a space for their email. This way, most responses stay anonymous, but people who want to engage further can identify themselves.
Another option is to collect identifying information but keep it separate from the survey responses. You might use a second form or a separate email to collect names, then match responses to names only when you need to. This protects anonymity for most of your analysis while still letting you follow up with specific people if needed.
The key is to be intentional: decide what you actually need the data for, then choose the collection method that serves that purpose without collecting more information than necessary.
Frequently Asked Questions
Can someone figure out who answered based on when they took the survey?
Possibly, if you know when each person was at their desk or online. If you are surveying a small team and you know that only one person was in the office on Tuesday morning, the timestamp could identify them. To reduce this risk, keep your survey open for several days or a week so responses are spread out, and do not share the timestamp data when you publish results.
What if my survey tool does not have an anonymous link option?
Use a URL shortener like bit.ly or tinyurl.com to create a generic short link, then share that instead of the original survey URL. This hides some of the identifying information in the URL itself. It is not as find as a built-in anonymous link, but it is better than sharing a personalized link. You should still turn off email and IP collection in your survey settings.
Is an anonymous survey still anonymous if I know the person who took it?
No. Anonymity means you do not know who answered, not that you promised to forget who they are. If you send a survey to five specific people and four respond, you can figure out who did not answer, and you might guess who said what based on their personality or past comments. True anonymity works best with larger groups where individual responses blend into the crowd.
Can I use an anonymous survey to collect feedback about a specific person?
You can, but be careful. If you ask "How would you rate your manager's communication?" and send it to their direct reports, people might still worry about being identified. Make the survey longer and broader — include questions about the organization, the team, and the work environment alongside questions about the manager. This makes it harder to trace any single answer back to one person.
What should I do if someone identifies themselves in their response?
You have a few options. You can delete that response entirely and ask them to retake the survey without identifying themselves. You can edit the response to remove the identifying information, though this changes what they said. Or you can keep it but exclude it from any results you share publicly. Document what you did so you can explain your process if someone asks about the data later.