Skip to content

You get the numbers. Your visitors get left alone.

Most analytics starts from what could be collected and asks afterwards what is allowed. Metrimato starts from the promise that no visitor can be identified, and then measures everything that still fits inside it. That turns out to be almost everything a site owner actually wants to know.

What you get

Enough to decide what to do next and where to spend.

  • Visitors, pageviews, reading time and bounce rate, per page and over time
  • Where the traffic came from: search, social, referrals, campaigns and AI services
  • Devices, browsers, operating systems, countries and languages
  • Goals, funnels, user paths, saved segments, alerts and scheduled email reports
  • Every site on one page, and the figures out as CSV, JSON or an API call

What your visitors get

An ordinary page. Nothing is left on their device and nothing follows them anywhere.

  • No cookies and nothing written to browser storage
  • No consent banner to click past before reading
  • No profile, no advertising identifier and no tracking between sites
  • Do Not Track and Global Privacy Control are respected by default
  • Nothing they type is stored, apart from the site's own search term if you switch that on

No persistent tracking of any kind

The goal is to see the trends in your traffic, not to follow individual people. Everything is aggregate. The visitor identifier is isolated in three directions at once, so there is nothing left to join up.

One device
The identifier is computed from what the request itself carries. A visit from a phone and a visit from a laptop are two visitors, and there is no way to tell they were the same person.
One site
The site's own key goes into the identifier, so the same person on two sites gets two different ones. They cannot be matched, by anyone.
One day
The random value the identifier is built from changes every night, and the old one is deleted. Yesterday's identifier cannot be computed again, so days cannot be chained together.

This is a limit on us, not only on outsiders. Once the random value is gone, nobody can recompute the identifier, which is why unique visitors over a month is one figure Metrimato will never show you. We think that is the right trade, and we would rather say it here than hide it in a footnote.

What actually reaches the database

Anonymisation happens while the request is still being handled. The IP address, the browser identification string and the full referring address are used to work out the country, the device and the source, and then they are gone. They never reach the database, the queue or the log.

The visitor identifier is an irreversible hash of 32 characters, built with a random value that changes daily. The value is deleted within two days, so the identifier cannot be produced again afterwards.

What we store and what we don't

Stored
Path, referring domain, channel, UTM parameters, browser, operating system, device type, screen size class, country code, language, timestamp.
Not stored
IP address, user agent, cookies, browser fingerprint, precise location, query parameters, user ids or any cross-site tracking.

Because the data cannot be tied to a person, no cookie banner is needed and no personal data register comes into being.

The data is yours, and you can take it out whenever you like

Owning your data means being able to take it out and being able to delete it, without asking us. Both are in the settings.

Take everything out
Export the account's data in machine-readable form whenever you like. The same figures are available as CSV, as JSON and through the read API.
Delete everything
Delete a site with its data, or the whole account, from the settings. There is no period afterwards during which we keep a copy.
Choose how long it is kept
Set the retention period within your plan's limits. Anything older is deleted automatically every night.
See who did what
Every change on the account is written to an audit log you can read, including anything our support has done on your behalf, marked as ours.
We do not use it
Your figures are not analysed, not pooled across customers, not sold and not used to train anything. They are yours to look at.

Where it is and who can reach it

The application, the database and the backups are in a Finnish data centre. Neither customer data nor visitor data is transferred outside the EU. The suppliers who could reach any of it are named below, and there are no others.

Company Country What data it processes
Phenomenal Development Oy Development and operation of the service Finland Admin access to the production environment, and the customer's account details in a support situation
Lettermint Email delivery (password resets and other service messages) Netherlands (EU) The email addresses of the account's users and the content of the messages. No visitor data
Cloudflare, Inc. Turnstile bot protection on the invite request form United States The IP address and technical browser details of the person filling in the invite request form, for the duration of the check. No customer data and no visitor data

We tell customers about a new supplier 30 days before it is taken into use. We use no analytics, advertising or AI services to process customer data.

Switch to a measure that respects the visitor

We onboard new companies by invitation so we have time to help everyone get started.