1. Who this policy covers
This policy describes how AnalyticsDrop (“AnalyticsDrop”, “we”, “us”) processes data in two roles:
- As a processor — for analytics data that our customers (app developers) collect from their own users through our SDK. The customer is the data controller and decides why the data is processed.
- As a controller — for the account data of the customers who sign up for AnalyticsDrop directly (name, email, billing details).
2. What the SDK collects
When a customer integrates our SDK into their mobile app, we collect a minimal set of signals needed to reconstruct screen journeys:
- Screen views — a stable, non-reversible fingerprint identifying which screen appeared, and the order in which screens appeared within a session.
- Session & sequence data — a session identifier and a per-session sequence number used to order events.
- Identifiers — an anonymous device identifier generated on the device, and, if the customer’s app calls
identify(), the customer’s own user identifier so a journey can be attributed to a known account. - Conversion events — named events (e.g. a purchase) the customer chooses to send, with any properties they attach.
- Technical context — app version and build, operating-system version, device model, and SDK version.
- Redacted thumbnails — a one-time, on-device preview of a screen’s layout rendered as gray boxes.
3. What we never collect
This is the core of how AnalyticsDrop is designed, and we treat it as a hard invariant:
- On-screen text is never collected. The words, values, and content shown on a user’s screen are never logged, transmitted, or stored.
- Thumbnails contain no readable text. Screen previews are redacted to gray shapes on the device before anything leaves it. This is enforced by an automated test that checks generated thumbnails contain no recognizable text.
- No keystrokes, no screen recording, no precise location. We do not capture input, record the screen, or collect GPS coordinates.
Any personal data that reaches AnalyticsDrop does so only because a customer explicitly sent it (for example, a user identifier passed to identify(), or a property attached to a conversion event). Customers are responsible for not placing sensitive personal data into those fields.
4. How we use data
- To build the journey graph, funnels, and per-user timelines shown in the customer’s dashboard.
- To operate, secure, and troubleshoot the service.
- To communicate with account holders about their subscription and service changes.
We do not sell personal data, and we do not use customer end-user data to build advertising profiles.
5. Where data is stored
Analytics events and account data are stored in databases hosted in the European Union. Data is transmitted over encrypted connections (TLS) and access is limited to the systems and personnel that need it to run the service.
6. Retention
Analytics data is retained for the window associated with the customer’s plan, after which it is deleted or aggregated. Account data is retained while an account is active and for a limited period afterwards as needed for legal and accounting obligations.
7. Sub-processors and sharing
We use a small number of infrastructure sub-processors (for hosting, database, and email) under agreements that require appropriate safeguards. We disclose data only to operate the service, to comply with the law, or with a customer’s instruction. A current list of sub-processors is available on request.
8. Your rights
Depending on your location (for example under the GDPR or UK GDPR), you may have rights to access, correct, delete, or export personal data, and to object to or restrict its processing. If you are an end user of an app that uses AnalyticsDrop, please contact that app’s developer, who controls the data; we will assist them in responding. For account data, contact us using the details below.
9. Changes to this policy
We may update this policy as the product evolves. Material changes will be reflected by the “last updated” date above and, where appropriate, communicated to account holders.
10. Contact
Questions about privacy can be sent to privacy@analyticsdrop.com.