Privacy-First Analytics

All the insights.
None of the cookies.

PrivMetrics is GDPR-native web analytics. No cookies, no consent banners, no personal data collection, no US data transfers. EU-hosted, lightweight (<1KB script), and 100% compliant by design.

Analytics without the legal risk.

No Cookies

Privacy-preserving session detection. No cookies, no local storage, no fingerprinting. Consent banners become optional.

EU-Only Hosting

All data processed and stored in EU data centers. No Schrems II concerns. No Standard Contractual Clauses needed.

<1KB Script

Our tracking script is under 1KB. Zero impact on Core Web Vitals. No third-party requests. Your Lighthouse score stays perfect.

The Problem

Google Analytics is a legal liability.

Three converging legal and UX crises are forcing EU businesses to rethink their analytics stack.

DPA Rulings: GA Is Illegal

Austria's DSB and France's CNIL both ruled Google Analytics illegal under GDPR in 2022. Similar rulings followed across Denmark, Italy, and Sweden. Using Google Analytics exposes your business to enforcement action and fines of up to €20M or 4% of global turnover.

Consent Banners Destroy Conversions

Cookie consent popups reduce page interaction by an average of 22% and increase bounce rates significantly. Studies show only 30–60% of users accept tracking — meaning your Google Analytics data is already missing nearly half your audience, while also annoying the other half.

Schrems II: US Transfers Are Risky

The EU Court of Justice's Schrems II ruling invalidated the Privacy Shield framework for EU–US data transfers. Any tool that sends EU visitor data to US servers — including Google Analytics — requires Standard Contractual Clauses and a Transfer Impact Assessment, which courts are increasingly rejecting.

How PrivMetrics stacks up

Not all analytics tools are created equal. Here's how the major options compare on what actually matters for GDPR compliance.

Feature PrivMetrics Google Analytics Matomo (cloud)
Cookies required No Yes Yes
Consent banner needed No Required Required
EU-only hosting Always US servers Optional
Tracking script size <1 KB ~45 KB ~22 KB
Data transfer to US Never Always Depends
Built For

Who uses PrivMetrics?

Trusted by teams where privacy is not a nice-to-have — it's a hard requirement.

EU SaaS Companies

Growing SaaS businesses operating under GDPR that need accurate, full-consent analytics without the legal overhead.

73% of EU SaaS teams
report GDPR compliance
as a top concern

Healthcare & Finance

Highly regulated sectors where any data leakage creates disproportionate risk. No patient or customer data ever leaves EU borders.

HIPAA-adjacent sectors
face fines up to €20M
for analytics violations

Government & Education

Public sector organisations with legal obligations to protect citizen and student data. PrivMetrics satisfies procurement requirements out of the box.

EU member states require
EU-hosted tools for public
sector digital services

Tired of Consent Popups

Any site owner frustrated with consent management platforms, cookie audits, and the endless maintenance of keeping CMP configurations up to date.

Avg CMP adds 300ms
page load delay and
costs €3–15K/year

Frequently asked questions

Everything you need to know before switching.

How does cookieless tracking work?
PrivMetrics identifies unique sessions using a combination of anonymised request attributes — including a rotating daily hash of IP address, user agent, screen resolution, and timezone — that cannot be used to identify any individual. The hash is one-way and discarded after 24 hours. No data is ever stored in the visitor's browser. This approach is validated under GDPR's data minimisation and purpose limitation principles, and does not require informed consent because no personal data is processed.
Is PrivMetrics really GDPR compliant?
Yes. PrivMetrics was designed from the ground up to comply with GDPR Articles 5 and 6. We do not collect personal data, we do not use cookies or persistent identifiers, and all data is processed and stored exclusively in EU data centres (Frankfurt). We provide a Data Processing Agreement (DPA) on request. Because no personal data is processed, you are not required to list PrivMetrics in your cookie policy, and no consent banner is needed for analytics. Our legal basis is legitimate interest under Article 6(1)(f), and our DPO has confirmed this analysis in writing.
Can I migrate from Google Analytics?
Migration takes under 10 minutes. Replace the GA snippet with our single <1KB script tag and you're live. PrivMetrics maps directly to the core metrics teams actually use: pageviews, unique visitors, bounce rate, session duration, referral sources, and top pages. We also provide a Migration Guide that walks through replicating your most-used GA reports in PrivMetrics. Historical GA data can be exported via the GA Data API and imported as a baseline if needed. For Google Tag Manager users, we provide a GTM template that can be deployed in a few clicks without touching any code.
What about conversion tracking?
PrivMetrics supports server-side goal tracking and custom event firing without cookies. You can track form submissions, button clicks, checkout completions, and any custom event by calling our Events API or using our JavaScript helper. Conversion funnels are supported natively in the dashboard. Because events are tracked server-side or via a cookieless JS call, conversion data is 100% complete — unlike GA4, where consent rejection silently drops conversion events, often understating your true conversion rate by 30–50%.

Ditch Google Analytics.
Keep the insights.

Free for sites under 10K pageviews/month.