Benchmark Methodology
ZYNAGI's industry benchmarks are built on anonymized, aggregated assessment data from organizations across six verticals. This page explains exactly how that data is collected, protected, and used to produce meaningful governance comparisons.
When organizations complete an assessment and opt into benchmarking, their scores are anonymized before being added to the benchmark pool. Raw organizational data is never shared. Only processed, normalized scores enter the aggregation layer.
Anonymized scores are aggregated weekly. Each aggregation run recalculates industry averages, quartile distributions, and percentile breakpoints using the current benchmark population. Minimum pool sizes are enforced to prevent de-anonymization.
Organizations are classified by industry vertical (Dental, Medical, Hospital, ASC, Financial Advisory, Law Firm) and location count tier (1 / 2–10 / 11–50 / 51–250 / 250+). Benchmark comparisons are always made within the same classification.
Each organization receives a percentile rank within their classification. A 75th percentile rank means the organization scores higher than 75% of peers in the same vertical and location tier. Rankings are recalculated on each benchmark refresh.
The industry Trust Index is the median composite AI Trust Score among all benchmark participants in a classification. It is updated weekly and displayed on Trust Index pages as the industry baseline for comparison.
The Governance Index is the median governance domain score across benchmark participants. It reflects the industry's average maturity in policy documentation, oversight structures, and incident response infrastructure.
The Risk Index is an inverted aggregation—representing the industry's median vendor risk and operational exposure score. Higher Risk Index scores indicate industries with more documented, managed risk programs.
ZYNAGI enforces strict privacy controls across all benchmark operations: email-based identity is hashed before storage, minimum pool sizes prevent inference attacks, no raw organizational data is shared with any third party, and benchmark data is never used for commercial purposes other than improving ZYNAGI's scoring models.
Privacy Commitment
Email-based identity is SHA-256 hashed before any benchmark record is created.
Minimum pool sizes are enforced before any benchmark result is displayed.
No raw organizational data is ever shared with third parties.
Benchmark data is never sold, licensed, or monetized externally.
All benchmark operations are isolated from user-facing data.
FAQ
We use a third-party analytics service (Google Analytics) to understand site traffic. Your choice is stored on this device. You can change it anytime in our Privacy Policy.