GDPR Compliance
Last updated: May 27, 2026
1. Overview
Moonship is designed to be fully compliant with the General Data Protection Regulation (GDPR). This page explains how we handle personal data — both for users of the Moonship platform and for visitors to websites that use the Moonship analytics snippet.
2. Cookie-Free Analytics
The Moonship tracking snippet does not use cookies, localStorage, or sessionStorage. No data is written to the visitor's browser at any point. Visitor and session identity are computed entirely server-side using a daily-rotating hash of the visitor's IP address and browser user-agent string. This means:
- No consent banner is required for analytics under the EU ePrivacy Directive.
- Individual visitors cannot be tracked across days — the hash resets at midnight UTC.
- The raw IP address is never stored; only the irreversible hash is retained.
- Moonship analytics are GDPR-compliant out of the box, with no configuration required.
3. Data Controller vs. Data Processor
When you use Moonship to collect analytics for your website:
- You are the data controller — you determine the purpose of analytics collection on your site.
- Moonship is the data processor — we process visitor data on your behalf, strictly to provide the analytics service.
A Data Processing Agreement (DPA) is available on request. Please contact us at [email protected].
4. What Data We Collect from Site Visitors
The Moonship snippet collects the following data when a visitor loads a page on a Moonship-enabled website:
- Page URL — the full URL of the page visited
- Referrer — the referring URL (cross-origin only)
- UTM parameters — campaign source, medium, and name from the URL
- Device type — Desktop, Mobile, or Tablet (derived from user-agent; raw user-agent is not stored)
- Country, region, and city — derived from IP address via MaxMind GeoLite2; the raw IP is not stored
- Timezone — the visitor's local timezone (e.g., "America/New_York")
- Page load time — how long the page took to load in milliseconds
- A daily-rotating anonymous visitor ID — a 16-character hash that changes every day and cannot be reversed to identify an individual
We do not collect names, email addresses, or any other personally identifiable information from your site visitors.
5. What Data We Collect from Moonship Account Holders
When you create a Moonship account, we collect:
- Your name, email address, and profile picture (from Google OAuth)
- Billing information (processed by Stripe — we do not store card details)
- Your site configuration, analytics settings, and usage data
6. Legal Basis for Processing
For Moonship account holders, we process your data under:
- Contract — to provide the analytics service you signed up for
- Legitimate interest — to operate, secure, and improve the platform
For analytics data collected on your behalf from your site visitors, the legal basis is your legitimate interest in understanding how your website performs. Because Moonship's cookie-free approach is privacy-preserving by design, this basis is robust under GDPR proportionality requirements.
7. Data Retention
- Visitor analytics events — retained for the lifetime of your Moonship account. You can delete all data for a site at any time from your settings.
- Account data — retained until you close your account. Contact us to request deletion.
- Billing records — retained as required by applicable financial regulations (typically 7 years).
8. Data Transfers
Moonship is hosted on infrastructure based in the United States. If you are located in the EU/EEA, data is transferred to the US under Standard Contractual Clauses (SCCs) as permitted by GDPR Article 46.
9. Your Rights
As a Moonship account holder, you have the right to:
- Access — request a copy of the personal data we hold about you
- Rectification — correct inaccurate data
- Erasure — request deletion of your account and associated data
- Portability — receive your data in a machine-readable format
- Objection — object to processing based on legitimate interest
- Restriction — request that we restrict processing in certain circumstances
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.
You also have the right to lodge a complaint with your local data protection authority.
10. Sub-processors
We use the following sub-processors to operate the service:
- Heroku / Salesforce — cloud hosting and infrastructure
- Stripe — payment processing
- SendGrid — transactional email
- MaxMind — IP geolocation (GeoLite2, processed server-side only)
- Anthropic — AI insights generation (data is not used to train models)
11. Contact
For any GDPR-related enquiries, data subject access requests, or to request a Data Processing Agreement, contact us at: