Privacy Policy

1. Data We Collect

Our visitor analytics script does not use cookies. In many cases you will not need a cookie consent banner for that analytics on sites where you install it (see section 5).

The list below describes data collected from end visitors via the tracking script you embed on your websites—not data collected while you browse datibase.dev (see Cookies on datibase.dev).

We collect only the following anonymized data to analyze website usage:

  • Page URL visited: Parameters that may contain personal information (email, token, password, etc.) are automatically stripped
  • Device type: Mobile, tablet, or desktop
  • Browser and OS: Chrome, Safari, Windows, macOS, etc.
  • Country-level location: City or precise location data is never collected
  • Screen resolution: For device optimization purposes
  • Referrer URL: Which site the visitor came from
  • Time on page: For content improvement purposes

Cookies on datibase.dev

When you use the Datibase web application (sign-in, dashboard, settings), we use essential cookies and similar technologies so the product works—for example, to keep your session after you log in, and to remember UI preferences such as sidebar layout. These are not used to replicate the visitor analytics described above, and they apply only to your use of our site as a customer.

2. Data We Never Collect

For visitor analytics delivered through our embedded script, we never collect the following:

  • Cookies for analytics: The tracking script does not set or read cookies (Plausible-style approach)
  • IP addresses: Discarded immediately after geolocation lookup, never stored
  • Precise location data: Nothing below country level
  • Personally identifiable information: No names, addresses, or phone numbers
  • Email addresses or usernames: Automatically removed even if present in URLs
  • Full User-Agent strings: Only parsed results are stored
  • Persistent identifiers: Visitor IDs reset daily (expire within 24 hours)

3. Data Retention

Collected data is retained according to your subscription plan and automatically deleted once the retention period expires. This ensures data is kept only for a statistically useful period while minimizing privacy risk.

  • Starter: Up to 2 years
  • Growth: Up to 5 years
  • Pro: Up to 5 years

Automatic deletion occurs when data reaches the limit defined by your plan.

4. Your Rights (GDPR / CCPA)

Under the EU General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA), you have the following rights:

  • Right of Access: You can request disclosure of the data we have collected
  • Right to Erasure: Visitor analytics data is fully anonymized (no IP addresses stored, visitor IDs reset daily) and cannot be linked to a specific individual. Therefore, targeted erasure of visitor data is not applicable under GDPR Article 17. If you are a registered Datibase user, you can permanently delete your account and all associated data from the account settings page.
  • Right to Data Portability: You can request a copy of your data
  • Right to Opt Out (Do Not Track): We respect your browser's DNT setting
  • Right to Withdraw Consent: You can withdraw consent for tracking at any time

5. Visitor analytics without tracking cookies

✅ Our embedded analytics script does not use cookies

We use the same broad approach as Plausible Analytics: the script does not set or read cookies for measuring visitors on your site.

  • Daily reset method: Visitors are identified using a hash of browser information combined with the current date. This hash resets at midnight (UTC) every day, making long-term individual tracking impossible.
  • Session management: For a single browsing session, the script may use sessionStorage (cleared when the tab closes)—not cookies—to group page views. No cross-site or long-lived identifier is stored in the visitor's browser for analytics.
  • Consent and regulation: Because the script does not use cookies for analytics, many site owners will not need a cookie banner specifically for this analytics product. Privacy rules depend on your jurisdiction, how you use other tools, and your overall site setup—please obtain qualified legal advice where needed.

This approach lets us provide useful analytics while maximally respecting visitor privacy. It does not change that datibase.dev itself uses essential cookies when you use your account (section 1).

6. Data Deletion

For Website Visitors

Because visitor analytics do not use cookies and visitor IDs reset daily, the analytics data we collect from the script cannot be linked to a specific individual. As a result, targeted deletion of visitor data is technically not possible.

If you wish to opt out of tracking entirely, you can enable the Do Not Track (DNT) setting in your browser. We respect this setting and will not record any data for your visits.

For Registered Users (Datibase Account Holders)

If you have a Datibase account, you can permanently delete your account and all associated data (websites, analytics data, and revenue records) from the account settings page. This action is irreversible.

For any privacy-related inquiries, please contact us at privacy@datibase.dev.

7. Data Security

All collected data is protected by the following security measures:

  • HTTPS encrypted communication
  • Restricted database access
  • Rate limiting to protect against DoS attacks
  • Regular security audits

8. Policy Updates

This Privacy Policy may be updated without prior notice. We will notify you of any significant changes on this site.

9. Contact

If you have any questions or concerns about privacy, please contact us at privacy@datibase.dev.

Last updated: April 10, 2026