SURVIVOR PRIVACY BY DESIGN™
Embedding Privacy into Digital Services That Support Vulnerable People
By Samantha Avril-Andreassen, LLB (Hons), LLM, LPC, FRSA
Founder, SAFECHAIN™
Executive Summary
Privacy is often treated as a legal requirement.
For survivors of domestic abuse, coercive control and technology-facilitated abuse, privacy is something far more fundamental.
It is safety.
It is dignity.
It is autonomy.
A single notification, exposed document or shared piece of information can place a survivor at immediate risk. While legislation such as the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018 establish important legal obligations, compliance alone does not guarantee safety.
SAFECHAIN™ introduces Survivor Privacy by Design™, a governance framework that places survivor safety, autonomy and informed choice at the centre of digital service design.
Privacy should not be something organisations add after building a service.
It should be designed into every decision from the outset.
Why Survivor Privacy by Design™ Matters
Every digital interaction generates information.
Names.
Addresses.
Contact details.
Location data.
Health information.
Financial records.
Support requests.
Journal entries.
Risk assessments.
For survivors, this information may reveal:
where they live;
where they work;
who they contact;
when they seek help;
what support they receive;
whether they are preparing to leave an abusive relationship.
If poorly managed, this information can increase vulnerability rather than reduce it.
Digital privacy is therefore a safeguarding responsibility.
SAFECHAIN™ Definition
SAFECHAIN™ defines Survivor Privacy by Design™ as:
A safeguarding and governance framework that embeds survivor-centred privacy, informed choice, proportional information management and protective digital design throughout the lifecycle of a digital service.
The framework recognises that privacy is not merely about protecting information.
It is about protecting people.
The Purpose of Survivor Privacy by Design™
Survivor Privacy by Design™ seeks to:
reduce the risk of digital exposure;
strengthen safeguarding;
increase trust in digital services;
support informed participation;
promote ethical information governance;
protect dignity and autonomy;
improve organisational accountability.
Privacy should empower survivors—not create additional barriers.
Principles of Survivor Privacy by Design™
SAFECHAIN™ proposes eight core principles.
1. Safety Before Convenience
Where privacy and convenience conflict, organisations should prioritise safety.
Features that improve efficiency should never unintentionally increase risk for vulnerable users.
2. Data Minimisation
Only collect information that is genuinely necessary.
Every additional item of personal data creates additional safeguarding responsibility.
Organisations should regularly review whether information collected remains proportionate.
3. Informed Choice
Users should understand:
what information is collected;
why it is collected;
how it will be used;
who may receive it;
how long it will be retained;
how they can exercise their rights.
Clear information supports meaningful participation.
4. Survivor Control
Where appropriate, survivors should retain meaningful control over their information.
This may include:
communication preferences;
notification settings;
consent options;
information sharing;
account management;
deletion requests, subject to legal obligations.
Empowerment strengthens safeguarding.
5. Protective Default Settings
The safest settings should be the default settings.
Privacy should not depend upon users discovering hidden configuration options.
Examples include:
limited notifications;
neutral communications;
restricted data visibility;
minimal information sharing.
6. Secure Information Management
Sensitive information should be protected through:
appropriate encryption;
secure storage;
role-based access;
audit logging;
access monitoring;
regular security reviews.
Good governance supports good safeguarding.
7. Transparency and Accountability
Organisations should clearly explain:
how decisions are made;
who can access information;
how incidents are managed;
how complaints are investigated;
how privacy risks are reviewed.
Transparency builds public trust.
8. Continuous Privacy Governance
Privacy risks evolve alongside technology.
Organisations should regularly review:
emerging technologies;
artificial intelligence;
data sharing practices;
safeguarding risks;
legislative developments;
survivor feedback.
Privacy by Design is an ongoing governance process—not a one-time exercise.
Beyond Compliance
Many organisations focus primarily on legal compliance.
Compliance is essential.
It is not sufficient.
An organisation may satisfy legal requirements while still creating experiences that survivors perceive as unsafe.
Survivor Privacy by Design™ asks a broader question:
Does this service genuinely help vulnerable people feel safe enough to use it?
Relationship to Other SAFECHAIN™ Frameworks
Survivor Privacy by Design™ complements:
Quick Exit™ — enabling rapid, discreet departure from digital services.
Stealth Mode™ — reducing digital visibility and exposure.
Journal Lock™ — protecting sensitive personal reflections and evidence.
Digital Evidence Integrity™ — ensuring trustworthy management of digital information.
The Cumulative Harm Model™ — recognising the long-term consequences of repeated privacy failures.
Together these frameworks form the foundation of the SAFECHAIN™ Digital Safeguarding Framework.
Organisational Responsibilities
Every organisation supporting vulnerable people should ask:
Have we designed privacy around survivor needs?
Are our default settings protective?
Do users genuinely understand how their information is used?
Have survivors contributed to service design?
Have we assessed privacy as a safeguarding issue rather than only a compliance issue?
Can we demonstrate accountable governance?
If these questions cannot be answered confidently, opportunities for improvement remain.
Applications Across Sectors
Survivor Privacy by Design™ supports:
domestic abuse services;
family justice;
policing;
healthcare;
mental health services;
housing providers;
financial services;
education;
victim support organisations;
charities;
regulators;
public authorities.
Any organisation handling sensitive information relating to vulnerable individuals can benefit from this framework.
The SAFECHAIN™ Perspective
SAFECHAIN™ believes that privacy should be recognised as a core safeguarding principle.
Survivors should never have to choose between seeking support and protecting their personal information.
Technology should reduce vulnerability.
Not create new opportunities for harm.
Privacy is therefore more than information governance.
It is a measure of institutional integrity.
Looking Ahead
Digital services will continue to expand across every area of safeguarding.
Artificial intelligence, connected devices and integrated public services will increase both the opportunities and the risks associated with personal information.
The organisations that earn public trust will be those that treat privacy not as a regulatory burden but as a commitment to human dignity.
Survivor Privacy by Design™ provides a governance framework for achieving that goal.
Because safeguarding begins long before information is shared.
It begins with how organisations choose to protect it.
Survivor Privacy by Design™ is a proprietary governance framework developed by Samantha Avril-Andreassen as part of the SAFECHAIN™ Governance Architecture and Digital Safeguarding Framework. It is intended to support organisational governance, digital service design and safeguarding practice. It does not constitute legal, regulatory or data protection advice.
SAFECHAIN™
Protecting privacy. Preserving dignity. Designing safety from the beginning.
Copyright
© 2026 Samantha Avril-Andreassen. All Rights Reserved.
Published by SAFECHAIN™
This publication is protected by international copyright law. No part of this publication may be reproduced, distributed, transmitted, stored in a retrieval system, translated, adapted or published in any form or by any means without the prior written permission of the copyright holder, except for brief quotations used for academic, educational, journalistic or review purposes with appropriate attribution.
SAFECHAIN™, Survivor Privacy by Design™, SAFECHAIN™ Digital Safeguarding Framework, Digital Evidence Integrity™, Quick Exit™, Stealth Mode™, Journal Lock™, Institutional Fragmentation™, The Cumulative Harm Model™, Jurisdictional Integrity™, and all associated frameworks, methodologies, governance models and publications are proprietary intellectual property of Samantha Avril-Andreassen.