Plausible and Fathom analytics are not GDPR compliant
blog.paranoidpenguin.net
Plausible and Fathom analytics are not GDPR compliant
1–4 of 4 posts
Re: Plausible and Fathom analytics are not GDPR compliant
#2If you are going to try to turn a profit by yelling about how you're so respectful and compliant, maybe not intentionally try to bypass end-users' explicit, human-set, consensual opt-out with your forced shady opt-in.
You are not being "privacy friendly", you are refusing the user's explicit "no consent, please don't do this" and forcing yourself on them anyway.
--
An unrelated note on technical infrastructure: many of these projects are EU based and proudly tell everyone that they are EU based.
Unfortunately, for example - see https://en.wikipedia.org/wiki/CLOUD_Act:
- Plausible hosts on DigitalOcean
- Plausible uses Cloudflare
- Simpleanalytics uses Cloudflare
- Fathom is on AWS
Re: Plausible and Fathom analytics are not GDPR compliant
#3They use a technique called "device fingerprinting" by collecting online identifiers, such as IP addresses, and browser characteristics for identification. Thus user consent is needed.
1: https://usefathom.com/gdpr-ccpa-pecr-compliant 2: https://plausible.io/data-policy
Re: Plausible and Fathom analytics are not GDPR compliant
#4Both Fathom [1] and Plausible [2] claim to be GDPR compliant, but they are not. They use a technique called "device fingerprinting" by collecting online identifiers, such as IP addresses, and browser characteristics for identification. Thus user consent is needed. 1: https://usefathom.com/gdpr-ccpa-pecr-compliant 2: https://plausible.io/data-policy