Back to Home

Security & Data Ethics

Your data is your competitive advantage. We've built Badgerlytics with a privacy-first architecture so it stays that way.

Our core promises

You own your data

Analytics data your sites generate belongs to you. We process it on your behalf. We never sell, rent, or trade it.

Permanent deletion

Delete a property and all of its data from the dashboard at any time. Analytics older than two years is removed automatically on a rolling schedule. Deletions are irreversible.

Privacy-first analytics

Badgerlytics is built for anonymous analytics. We strongly discourage passing personally identifiable information — names, emails, phone numbers, government IDs — in events or audience traits. Use opaque identifiers like plan, signed_in, or tenure_bucket whenever you can.

We do not sell your data. Period.

This is the most important sentence on this page. We do not sell, rent, or trade your analytics data — or your account data, or your customers' data — to third parties. Not now, not later, not at any price. We are funded by customers paying for the product, not by repackaging their data for someone else.

Privacy-first analytics

Badgerlytics is designed for anonymous analytics. We strongly discourage sending personally identifiable information in custom events or audience traits.

Today, what you send is stored as you send it — we don't automatically detect or strip PII on ingest. Prefer opaque identifiers like plan, signed_in, or tenure_bucket over names, emails, or phone numbers.

We may add optional integrations that use contact fields (email, SMS, and similar) for audience workflows in the future. Those will be explicit, opt-in features — not something we silently collect from your tracking setup.

AI features and your data

AI features in Badgerlytics — insights, chat, session analysis, and similar — are built with the same privacy bar as the rest of the platform. Every request to an external language model runs under these guardrails:

  • No Badgerlytics training: we never use your data to train Badgerlytics-owned models.
  • No provider training: our AI configuration requires that model providers do not use your prompts or responses to train or improve their models.
  • No provider retention: requests are sent with no-retention settings. Providers do not keep your data after processing a request — no logging for caching, abuse review, or any other purpose.
  • PII blocked: outbound requests containing personally identifiable information are automatically rejected before they leave our systems.
  • Anonymized by default: except for UX Analyst session crawls (which visit your live site), data we send to AI is anonymized and doesn't identify your site. Session replay AI analysis includes page paths and viewport screenshots from the recording.
  • Data minimization: we send only what each feature needs — nothing more.

Security best practices

Encryption in transit

All traffic between your browser, your sites, and Badgerlytics is encrypted with TLS 1.3.

MFA available on all accounts

Optional multi-factor authentication on every account. We strongly recommend enabling it for owner and admin roles.

Hardened infrastructure

Hosted on reputable cloud platforms with regular security assessments, principle-of-least-privilege access, and continuous monitoring.

Questions about security?

We take this seriously and we're happy to talk specifics. with security questions, due-diligence requests, or vulnerability reports.