Skip to main content

Privacy & Compliance

19

Ensure GDPR and CCPA compliance. Learn about data collection practices, consent management, and privacy-first tracking.

CCPA Compliance

Comply with California Consumer Privacy Act requirements for website analytics and visitor data. Learn about ccpa in this privacy compliance guide.

CCPA: how do I opt out under CCPA?

California residents can opt out of the sale or sharing of their personal data. Here's how to exercise the right with Zenovay specifically.

Consent & privacy metrics: see how your cookie banner performs

View your own cookie-banner accept/reject/dismiss rate over time, an identified-vs-anonymized split, and a data-provenance audit — fed by one line of code from your banner. Zenovay stays cookieless.

Cookie Consent Implementation

Implement cookie consent banners and integrate with Zenovay for compliant analytics tracking. Learn about cookies in this privacy compliance guide.

Data Collection Practices

Understand what data Zenovay collects, how it's used, and how to minimize collection. Learn about data in this privacy compliance guide.

Data Export for Users

Export personal data and analytics data for GDPR data portability requests and compliance. Learn about the two export paths in this privacy compliance guide.

Where is my data stored? (Data residency)

Zenovay's primary data is stored in the EU (Frankfurt, eu-central-1) on Cloudflare and Supabase infrastructure. Here's the full picture, including international transfers.

Data Retention Policies

Understand Zenovay's two-phase data retention lifecycle, plan-specific retention periods, and how to recover hidden data through upgrades.

GDPR Article 17: how do I delete my account and all data?

Step-by-step procedure for deleting your Zenovay account under GDPR Article 17 (right to erasure) — and what gets cascaded across our subprocessors.

Do I need a cookie consent banner with Zenovay?

In cookieless mode (the default) you do not need a banner just for Zenovay. Here's when you still need one, and what the banner has to cover.

Does Zenovay use cookies?

No — by default Zenovay runs in cookieless mode. Here's exactly what we use to identify visitors instead, and how it stays compliant with ePrivacy and GDPR.

GDPR Article 20: how do I download my personal data?

GDPR Article 20 (data portability) lets you export your personal data in a machine-readable format. Here's the self-service flow and what's in the file.

Where can I find Zenovay's DPA?

The Data Processing Agreement (DPA) is the contract that governs how Zenovay processes EU personal data on your behalf. Here's where to find it and how it becomes binding.

GDPR Compliance Overview

How Zenovay helps you comply with GDPR requirements for website analytics and visitor tracking. Learn about gdpr in this privacy compliance guide.

Global Privacy Control (GPC)

How Zenovay honors the Sec-GPC: 1 browser signal end-to-end, what it means for your visitors, and what you need to do as a site owner.

IP Address Handling

How Zenovay processes IP addresses - geolocation, daily-salted hashing, and why raw IPs are never stored. Learn about ip address in this privacy compliance guide.

Cookieless Tracking Mode

Run Zenovay analytics without any browser-side cookies or storage. Learn how cookieless mode works, what it changes, and when to use it.

Right to Erasure (RTBF)

Handle data deletion requests from visitors and comply with right to be forgotten requirements. Learn about erasure in this privacy compliance guide.

Third-Party Data Sharing

Understand how Zenovay handles data sharing with third parties and sub-processors. Learn about third party in this privacy compliance guide.