Research Operations
86 articles
Build a scalable research practice with governance frameworks, insight repositories, and cross-team collaboration.
How to Hire a UX Researcher: When You Need One, the Job Description, and the Interview Loop (2026)
A hiring manager's guide to the first (and next) research hire: the four-signal threshold test, real 2026 cost math, a job description template, and a 5-stage interview loop with 25 questions.
Legal Hold and E-Discovery for Customer Research Data
How to place a legal hold on interview transcripts, recordings, and research records — what triggers the duty to preserve, how it overrides your deletion schedule, and how to reconcile a hold with GDPR erasure requests.
DORA and Research Tools: ICT Third-Party Risk, Registers of Information and Vendor Due Diligence for Financial Firms
If you are a regulated financial entity in the EU, your customer research platform is an ICT third-party service provider under DORA. Here is what goes in the register, which contract clauses you actually need, and why the criticality classification matters more than any of it.
How to Connect Koji User Research to Figma & FigJam
Bring Koji AI interview insights — themes, verbatim quotes, and structured-question charts — into Figma and FigJam so research informs design directly. Covers export, API, Claude MCP, and Zapier/n8n workflows.
How to Build a Research Request and Intake Process
A step-by-step guide to designing a research intake process: the request form fields that matter, how to triage and prioritize incoming requests, SLAs, and how AI-native research lets you say yes to more requests without adding headcount.
Research Democratization: The 2026 Playbook for Scaling User Research Across Your Whole Organization
A complete playbook for democratizing user research without sacrificing rigor — what democratization actually means in 2026, what fails, what works, and how AI-native platforms like Koji make scale safe.
Survey Fraud & Respondent Quality: How to Detect Fake and Low-Effort Responses (2026)
Between 5% and 26% of survey responses are fraudulent, and AI-generated answers now pass standard quality checks. Learn the warning signs, the detection tactics that still work, and how Koji's conversational quality gate filters bad data before it reaches your report.
How to Build a Self-Service User Research Program That Scales Across Your Organization
Learn how to enable product managers, CSMs, and other non-researchers to run high-quality AI-moderated studies — reducing research bottlenecks without sacrificing data quality or introducing new chaos.
Closed-Loop Feedback: How to Turn Customer Feedback Into Action (and Tell Them)
A practical guide to building a closed-loop feedback process — the inner and outer loops, how to route and act on feedback, why closing the loop with customers drives retention, and how to run it at scale with AI.
How to Build a UX Research Strategy That Drives Decisions
A complete guide to building a research strategy — connecting user research to business goals through prioritization, cadence, roles, a repository, and impact measurement. Learn continuous discovery, research democratization, and how to avoid the service-desk trap.
AI Interview Data Privacy & Security: A Buyer's Evaluation Guide
How to evaluate the privacy and security of an AI customer research platform — the questions to ask about data handling, PII, retention, sub-processors, and compliance — plus how Koji approaches each one.
The Modern User Research Tech Stack: How to Build One in 2026
A blueprint for assembling a user research tech stack — the four layers every team needs, the difference between a fragmented legacy stack and an AI-native consolidated one, how to evaluate each layer, and where AI collapses four tools into one.
Research Contact Policy: Frequency Caps, Suppression Lists and Who Owns the Customer Inbox
A research contact policy governs how often any single customer can be asked for feedback, by whom, and with what cooling-off period. Here is how to set the cap, run a suppression list, rotate your sample, and stop five teams from independently surveying the same 200 accounts.
Paying Doctors and Nurses for Research: Sunshine Act Reporting, EFPIA Disclosure and Fair Market Value
When you pay a physician or nurse to take part in research, transparency law may require the payment to be published under their name. In both the US and the EU, the deciding factor is not the amount — it is whether the sponsor learns who took part.
Enterprise Security for AI Customer Research Platforms: SOC 2, SSO, and Vendor Review
A procurement-ready guide to evaluating the security of an AI customer research platform — SOC 2, encryption, SSO/SAML, data residency, sub-processors, and the questions your security team should ask.
Using Research Quotes in Marketing: FTC Endorsement Guides, Material Connections, and the Reviews Rule
The moment a customer quote leaves your research repository and appears in an advertisement, it stops being data and becomes an endorsement. Three obligations attach immediately: the words must be faithful, the experience must be typical or disclosed, and any material connection must be visible.
Google Analytics + Koji: Turn GA4 Behavior Into the "Why"
Google Analytics tells you what users do and where they drop off. Koji AI interviews tell you why. Learn how to pair GA4 quantitative signals with Koji qualitative research to close the what-plus-why loop and fix the right problems.
Voice of the Employee: How to Build an Employee Listening Program That Drives Real Change
Learn how to build a Voice of the Employee (VoE) program that goes beyond annual engagement surveys. Covers continuous listening methods, AI-powered employee interviews, analysis frameworks, and how to close the feedback loop.
Research Kickoff Meeting: How to Align Stakeholders Before Any User Research Project
A complete playbook for running a research kickoff meeting — including a 60-minute agenda, who to invite, the artifacts to produce, and how Koji turns the kickoff into an operational research brief.
How to Build a Voice of Customer Research Program That Drives Real Change
A complete guide to building a Voice of Customer (VoC) research program using AI interviews — covering strategy, cadence, channels, and how to connect insights to business decisions.
Survey Data Quality: How to Detect and Prevent Bad Responses (2026)
The threats that corrupt survey data — straightlining, speeding, bots, fraud, and inattentive respondents — how to detect and prevent each, and why conversational AI interviews are structurally resistant to the junk that plagues panel surveys.
How to Build a Continuous Product Feedback Loop
A step-by-step guide to building a durable product feedback loop — using trigger-based AI interviews, structured question trend tracking, and webhook integrations to keep your product decisions grounded in real user experience.
UX Research Operations (ResearchOps): The Complete Guide to Scaling Your Research Practice
ResearchOps is the infrastructure behind great user research — the people, processes, and tools that let research teams scale their impact without scaling their headcount. Learn what ResearchOps is, its six core pillars, when your team needs it, and how to build a practice from scratch.
Research With Adults Who May Lack Capacity: Proxy Consent, Assent, and Safeguards
Capacity is decision-specific and time-specific, not a diagnosis. This is how to test whether an adult can consent to your study, how to make consent achievable rather than assumed impossible, and why a family member signature is usually not the answer in commercial research.
UX Researcher Salary and Research Team Cost Benchmarks (2026)
2026 UX researcher salary data by level, geography, and seniority — plus the fully loaded cost model, research operating budgets by ARR stage, and the cost-per-insight math that decides how to allocate the function's budget.
Research Peer Review: The Pre-Launch QA Gate That Catches Broken Studies
Most research quality programmes police respondents. Almost none police the study design. A 30-minute structured review before fieldwork catches the errors that no amount of data cleaning can fix afterwards.
Is It Legal to Email or Text Someone for Research? CAN-SPAM, TCPA, CASL and PECR Rules for Recruitment
Research invitations are governed by marketing communications law, not just privacy law. Here is how CAN-SPAM, the TCPA, CASL and PECR treat genuine research outreach — and the one mistake that strips the exemption.
Anonymizing Customer Interview Data: A Practical Guide for Privacy-Safe Research
Five operational techniques for handling PII in AI customer interviews — from intake-time anonymization to stakeholder-safe quote sharing — without sacrificing research signal.
HIPAA-Compliant AI User Research: A Practical Playbook for Healthcare and HealthTech
Run AI-moderated customer research in healthcare contexts without putting PHI at risk. Patterns for HIPAA alignment, anonymous-mode interviews, BYOK, sub-processor handling, and what Enterprise teams need from a vendor.
How to Pilot AI Customer Research at Your Company: A 60-Day Playbook
A practical playbook for piloting AI-moderated customer research at your company — including the right use case to start with, success metrics, stakeholder management, and the 60-day timeline that gets you from skeptical first conversation to organization-wide rollout.
How to Get Stakeholder Buy-In for User Research: The Complete 2026 Playbook
A practical, evidence-backed playbook for winning executive and cross-functional support for user research — with templates, ROI math, and modern AI-powered workflows that make research impossible to ignore.
Time to Insight: How to Cut Research Cycles from Weeks to Hours
Time to insight is the lag between asking a question and acting on the answer. Here is how to measure it, where teams lose time, and how AI interviews collapse the cycle to under a day.
GDPR-Compliant AI User Research: A Practical Guide
How to run AI-moderated customer interviews under GDPR. Lawful basis, consent flows, data minimization, retention, sub-processors, and how Koji handles each requirement.
Customer Research Habit: A 30-Day Plan for Founders and Product Managers
Build a daily customer research habit in 30 days. A weekly plan with concrete actions, AI interview templates, and metrics for founders and PMs using Koji.
Customer Feedback Management: The 2026 Guide to CFM Strategy, Process, and Software
A complete framework for managing customer feedback at scale: collection channels, triage, analysis, action loops, and software comparison. Includes how AI-native interview platforms replace the traditional survey-and-ticket-tracker stack.
The EU AI Act and User Research: What AI-Moderated Interviews Actually Require (2026)
AI-moderated customer interviews sit in the EU AI Act's limited-risk transparency tier, not the high-risk tier. Here is exactly what Article 50 requires from 2 August 2026, the two things that escalate a study to high-risk, and a compliance checklist you can run this week.
CCPA/CPRA Compliance for Customer Research: The 2026 Practitioner Guide
Most US teams assume GDPR is the hard one and California takes care of itself. It does not. Here is what CCPA/CPRA actually requires for interviews, surveys, and voice research — the service provider contract that keeps your vendor out of "sale" territory, and the enforcement record that shows what regulators punish.
Research Participant Incentives and Taxes: 1099 Rules, Thresholds, and Clean Payouts (2026)
The 1099 reporting threshold jumped from $600 to $2,000 for 2026 payments — the first change since 1954. Here is what that means for research incentives, why gift cards are not a loophole, how the W-9 requirement collides with anonymous research, and how to structure payouts so tax admin never becomes your bottleneck.
Do You Need IRB Approval for User Research? A 2026 Decision Guide
Most commercial UX and product research does not require IRB approval - but four specific situations flip the answer to yes. Here is the actual regulatory test, the exempt categories, and how to prepare a submission that clears review fast.
Interview Recording Consent Laws: One-Party, All-Party, and Biometric Rules (2026)
Federal law allows one-party consent recording, but roughly a dozen US states require all-party consent - and biometric laws like Illinois BIPA add a separate written-consent duty for voiceprints. Here is how research teams stay on the safe side of both.
User Research With Children and Teens: COPPA, Parental Consent, and Assent
Researching under-13s triggers COPPA verifiable parental consent - including a separate consent before any child data trains AI. Here is the compliance path, the parent-mediated pattern most teams should use instead, and how to design sessions that actually work with young participants.
Research Data Retention and Deletion: How Long Should You Keep Interview Data?
There is no universal legal number - which is exactly why having no retention schedule is itself the compliance failure. A tiered, per-artifact schedule for recordings, transcripts, quotes, and reports, plus how to handle deletion requests without losing your insights.
DPIA for User Research: When You Need One and How to Write It (2026)
A practical guide to Data Protection Impact Assessments for customer and user research: the Article 35 triggers, the WP29 nine criteria, what belongs in each section, and a worked example for AI-moderated interviews.
FERPA-Compliant User Research: Interviewing Students, Parents, and Educators
How FERPA, PPRA, and state student-privacy laws apply to edtech user research — when the school official exception covers you, when PPRA consent kicks in, and how to run compliant student interviews.
Research Data Residency and International Transfers: Where Your Interview Data Actually Lives
Data residency, sovereignty, and localisation explained for research teams — GDPR Chapter V transfer mechanisms, transfer impact assessments, the DPF's current status, and the questions to ask any research vendor.
Proving Research ROI: How to Justify Your Customer Interview Program to Stakeholders
Learn how to calculate, communicate, and build a compelling business case for your customer research program using concrete ROI frameworks.
Customer Advisory Board: The Complete Guide for Product and Research Teams
Learn how to build and run a Customer Advisory Board (CAB) that generates strategic product insights, reduces churn, and closes the gap between your roadmap and real customer needs.
ResearchOps: The Complete Guide to Scaling Research Operations
Everything you need to build, run, and scale a research operations function — from participant recruitment systems to knowledge management to AI-powered research infrastructure.
Closing the Loop on Customer Feedback: The 2026 Playbook for Inner and Outer Loops
A complete guide to closing the customer feedback loop — inner loop vs outer loop, response-time benchmarks, automation playbooks, and how AI-native research turns 95% collected → 10% acted on into 100% closed.
User Research Program KPIs: What to Measure (and What to Stop Measuring) in 2026
A practical framework for measuring user research impact — activity vs outcome KPIs, the 3-layer model (operations, program, impact), benchmark targets, and how AI-native platforms make every research dollar measurable.
How to Automate User Research: Build a Pipeline That Runs 24/7
A step-by-step guide to automating user research — from setting up AI-moderated interviews to continuous discovery pipelines that generate insights every week without manual effort.
How Long Is User Research Valid? Insight Decay and When to Re-Run a Study
Research does not expire on a fixed schedule — different finding types decay at wildly different rates. A half-life table by insight class, the five decay triggers, and a refresh protocol that keeps your repository honest.
Customer Interview Cadence: How Often Should You Talk to Users? (2026)
Set the right customer interview cadence for your team — from one a week (Teresa Torres' baseline) to daily continuous discovery — and how AI moderation makes higher cadences sustainable.
User Research Maturity Model: 5 Stages from Ad-Hoc to Strategic (2026 Framework)
A practical 5-stage user research maturity model — from ad-hoc to strategic — with assessment criteria, common roadblocks at each stage, and the playbook for advancing your team's research practice. Modeled on the Nielsen Norman Group framework with a 2026-era AI-native lens.
How to Scale Your User Research Practice
A practical guide to building a research operation that generates more insights with the same headcount — using automation, democratization, and continuous research pipelines.
Continuous Discovery: How to Run Weekly Customer Interviews Without Burning Out
Continuous discovery is the practice of conducting customer interviews every week as part of your normal workflow. This guide explains how to build an always-on research practice that actually scales.
Accessibility Compliance Research: What WCAG, the ADA, and the European Accessibility Act Require You to Test
WCAG conformance is an audit standard, not proof your product works for disabled users. Here is what the EAA, ADA Title II, and Section 504 actually demand in 2026 — and how to run the user research that closes the gap.
AI Governance for Customer Research: ISO 42001, the NIST AI RMF, and What Procurement Actually Asks
Security review is asking whether your AI research platform is ISO 42001 certified and NIST AI RMF aligned. Here is what each framework covers, what a certificate does and does not buy you under the EU AI Act, and how to answer.
DSARs for Research Data: Handling Access, Deletion, and Portability Requests from Participants
A participant asks what you hold on them, or asks you to delete it. The clock is one month under GDPR and 45 days under CCPA. Here is what counts as their data in an interview study, why the research exemption rarely saves you, and a seven-step runbook.
Reviewing a Research Vendor DPA: Article 28 Clauses, Sub-Processors, and Transfer Annexes
Every research platform will send you a DPA. Most reviewers skim it. Here are the eight clauses GDPR actually requires, the two that decide whether you can operate, and the annexes where the real answers hide.
UX Research Team Structure: Centralized, Embedded, and Hub-and-Spoke Models Compared (2026)
The four ways to organise a research function — centralized, embedded, hub-and-spoke, and ops-enabled democratized — with benchmark data on adoption, reporting lines, ratios, headcount math, and a 90-day plan for changing models.
UX Researcher Career Path: Levels, Competencies, and Promotion Criteria (2026)
A complete career ladder for user researchers — six levels with scope and comp anchors, six behaviourally-anchored competency dimensions, the IC/manager fork, the promotion evidence packet, and how AI has changed what actually gets you promoted.
Research Handoff to Design and Engineering: What to Hand Over, in What Format, and How to Close the Loop
A stakeholder readout is not a handoff. Here is the exact packet design and engineering need from a research study — evidence-linked tickets, severity and confidence labels, edge cases, and the post-ship verification loop that proves the fix worked.
FCA Consumer Duty Customer Research: How to Evidence Consumer Understanding and Fair Value
The FCA's 2026 reviews were blunt: sales data and an absence of complaints prove nothing about consumer understanding. Here is how to test communications with real customers, hit a comprehension target, and build a board-report evidence pack that survives scrutiny.
Vulnerable Customer Research: How to Evidence Good Outcomes Under FCA Rules
The FCA told firms in 2025 that customers in vulnerable circumstances still report worse outcomes — and that outcomes monitoring and customers who never disclose are the two hardest gaps. Both are research problems. Here is how to design a programme that closes them.
AI Incident Postmortems: How to Investigate Model Failures with User Evidence (2026)
Logs tell you what your model output. They cannot tell you what it cost the person on the other end. A practical guide to running blameless AI incident postmortems with real user evidence - and meeting the reporting clocks that now apply.
The First 90 Days as a UX Researcher: A Week-by-Week Onboarding Plan (2026)
Your first 90 days set your credibility ceiling for the next two years. A concrete 30/60/90 plan for new research hires: what to audit, who to interview, which study to ship first, and the one process to change before day 90.
US State Privacy Laws for Customer Research: The Multi-State Compliance Guide (2026)
Twenty states now have comprehensive privacy laws and they do not agree with each other. Here is what actually applies to research interviews, why most B2B participants fall outside every law except California, and how to build one compliant process instead of twenty.
UX Research Certifications in 2026: Which Ones Are Worth It (and Which Are Not)
An honest comparison of NN/g UX Certification, HFI CUA/CXA, UXQB CPUX, and the Google UX Design Certificate — what each costs, what it actually signals to a hiring manager, and the four situations where paying for one genuinely pays off.
Research Data Access Controls and Audit Trails: Who Can See Your Interview Data
Your vendor's SOC 2 report proves the vendor is secure. It says nothing about which colleague opened a raw transcript last Tuesday. Here is how to build access tiers, audit trails and access reviews for research data — and what an auditor will actually ask you for.
AI Model Cards and User Disclosure: Documenting Intended Use, Limitations, and What You Tell People (2026)
A practical guide to model cards, system cards, and user-facing AI disclosure — what belongs in each section, what the EU AI Act's Article 50 has required since 2 August 2026, and how to source the Limitations section from real user research instead of guesswork.
User Research Privacy Laws Beyond GDPR and CCPA: Brazil, Canada, India, Japan, China and More
Most research compliance guidance stops at the EU and California. Here is what actually applies when you interview customers in Brazil, Canada, India, Japan, China, South Korea, Australia and South Africa — which law reaches you, what legal basis works, and the one design that satisfies all of them.
Works Councils and Employee Research: How to Run Employee Studies in Germany and the EU
In Germany and much of Europe, an employee survey is not an HR decision — it is a co-determination matter, and employee consent is usually not a valid legal basis. Here is how to get a works agreement, why anonymity is the technical requirement that unlocks everything, and the sequence that keeps a study from being blocked.
Prize Draw Research Incentives: Free Entry Routes, Registration Rules, and the Sample You Actually Buy
Prize draws look ten times cheaper than guaranteed research incentives. Here is the lottery law that governs them in the UK and US, the four-condition free entry route, Florida registration and bonding thresholds, and the response bias you pay for instead of cash.
Research Provenance: How to Prove an Interview, a Quote, or a Report Is Genuine (2026)
When any text can be generated, a customer quote proves nothing on its own. Content Credentials, the EU AI Act marking rules, and the hash-anchored capture method that actually works for research text.
Deception and Debriefing in Research: When a Cover Story Is Justified and What You Owe Participants
Masking your hypothesis is routine and licensed. Asserting something false is a different act with a justification test, a debriefing duty, and a contamination cost you pay in every future study. Here is where the line sits and how to debrief properly.
Panel Conditioning: Why Your Most Reliable Participants Give You the Least Reliable Data (2026)
Panel conditioning is the measurement error you create by asking the same people again. Government statistical agencies have measured it for seventy years and it moves headline numbers by a full percentage point. Here is how to detect it in a product research panel and design around it.
Survey Evidence in Court: Daubert, FRE 702, and Research That Survives Cross-Examination
The standard courts apply to survey evidence is a free quality bar for ordinary product research. Here is the checklist, the attacks it defeats, and why the control group is a legal instrument as much as a statistical one.
Changing a Study While It Is Running: Pre-Planned Adaptations vs Protocol Amendments
Every other discipline in research assumes the instrument holds still. In practice teams rewrite questions, add segments and drop arms while fielding. Here is which mid-study changes are free, which are expensive, and which destroy the study.
Research Independence: Why the Team That Built the Feature Should Not Grade It
The five threats to independence from professional ethics codes, applied to product research - and why structural independence is a different problem from cognitive bias.
The Research Expectation Gap: Why Stakeholders Are Disappointed by Studies That Were Done Right
Auditing measured its own credibility gap and found only 16% was sub-standard work. Half was scope. Here is how that decomposition changes what research teams should fix.
The Research Risk Model: How to Decide Which Questions Deserve a Rigorous Study
Rigor is a residual, not an input. Borrow the audit risk model to allocate research effort by what is left over after inherent risk and your existing controls, instead of by how important the question feels.
Test the Process or Test the Output: When Research Controls Let You Review Less Data
Auditing splits its work into tests of controls and substantive procedures. Learn how testing your research process lets you justifiably review less raw data, where the floor is, and which seven research controls to test first.
Process Controls vs Output Checks: How to Earn the Right to Read Fewer Transcripts
Evidence that your research process worked substitutes for evidence about each individual output. The trade auditors formalized, why existence is not operation, and how reperformance proves a control actually ran.
Preventive vs Condition-Based: Why Scheduled Check-Ins Are Wasted on Most Accounts (2026)
Scheduled account check-ins only reduce churn when risk rises with tenure. In aviation, 89 percent of items could not benefit from a scheduled age limit. How to replace calendar cadence with validated condition triggers.
Subsequent Events in Research: What You Owe a Decision After Fieldwork Closes
The gap between fieldwork closing and the readout is invisible and unmanaged. Auditing attaches three different duties to three windows. Learn the four-procedure check, the adjusting versus non-adjusting split, and when a finding should be withdrawn.