Skip to main content

Security & Privacy

Sealmetrics measures websites without collecting personal data: four non-identifying variables per hit, nothing written to the visitor's device, no identifier carried across sessions, and all customer analytics data stored in Dublin, Ireland. Because there is no personal data, the consent requirements of GDPR and the ePrivacy Directive are not triggered — the reasoning is set out in full in What is Consentless Analytics?.

Sealmetrics holds no third-party security certification (no ISO 27001, no SOC 2), and no supervisory authority certifies analytics tools. The pages under compliance are our own self-assessments against published criteria. A Data Processing Agreement is included and ready to sign at sealmetrics.com/dpa; Annex 3 of that DPA is the authoritative subprocessor list.

Start here

The consentless model

Privacy practice

Data, hosting and quality

Account security

Auditing someone else's tags