The Governance page (project menu, owners and admins only) puts the governance-relevant facts about a project on one screen. It explains and warns; it does not add new data-processing rules, and most of what it shows is read from settings you configure elsewhere.
Governance warnings
The list at the top of the Overview tab aggregates every open governance warning for the project and its protocols. Warnings are specific and actionable — each one links to the screen that resolves it and can be expanded for a short "why this matters" note. They are meant to be visible, not alarming; a fully configured project shows none.
Typical warnings:
an active protocol with no consent requirement, or missing its legal basis / privacy notice / withdrawal instructions;
an export kept longer than recommended, or a protocol planned to collect data for an unusually long time;
a recent export that was more identifying than the project's usual norm.
Protocol-scoped warnings also appear inline on that protocol's detail page.
Data retention
Retention is informational only in the product today — there is no retention setting to edit here. The panel states, per data category, how long data is kept:
Survey access links / pending invitations — removed automatically once they expire.
Analytics export files — the downloadable file is deleted 7 days after the export is created; the export record is kept.
Responses & participant data — kept for the life of the project and deleted when the project is deleted.
Protocols inherit the project retention policy; there is no separate protocol-level retention.
Export identity
Analytics exports can be produced in three identity modes. The Governance page explains each one; the mode itself is chosen in the export flow, not here.
Identifiable — real participant identifiers; owners only. Use only when you must act on individuals.
Pseudonymized (project default) — stable per-project participant codes, no names. Fits most analysis.
Anonymized — no participant codes at all. For aggregate or one-off analysis.
When you start an export, the export screen shows which mode you are using and warns if that mode is more identifying than your stated purpose needs. The warning is advisory and never blocks the export.
Audit log
The Audit log tab is a unified, filterable view of governance-relevant activity — protocol governance-state changes, withdrawals, project and team access changes, and data exports — merged with routine operational events. Filter by date range, actor, event type, protocol, and switch between operational and governance events. Bearer tokens, invitation codes and secret payloads are never shown.
Access
Everything on the Governance page is restricted to project owners and admins. Project viewers do not see the Governance menu entry and are turned away from the page and its data.