GDPR-compliant analytics

GDPR-compliant analytics, EU-hosted

Most analytics make GDPR your problem: add a banner, sign a DPA, hope you configured retention correctly. Satsu is compliant by design — it collects no personal data, sets no cookies, and is hosted in the EU, so there's far less to get wrong.

No personal data, no consent needed

GDPR governs personal data. Satsu doesn't store any — no IP, no user-agent, no persistent ID, no cross-site profile. With nothing personal collected, there's no lawful-basis headache and no consent banner to maintain.

  • No cookies and no persistent visitor identifiers
  • Raw IP and user-agent discarded, never stored
  • EU-hosted infrastructure — data stays in the EU
  • Plan-based retention, clamped automatically

EU-hosted, not just EU-friendly

Your analytics data lives on EU infrastructure. There's no transfer to a US ad company, no Schrems-II grey area to paper over with clauses — the data simply doesn't leave.

Compliant for ePrivacy and CCPA too

The same design that satisfies GDPR — no device storage, no personal data — also means no ePrivacy consent requirement, and it maps cleanly onto CCPA/CPRA expectations.

Frequently asked questions

Is Satsu GDPR compliant out of the box?

Yes. Satsu collects no personal data, sets no cookies, and is EU-hosted, so it's compliant by design — you don't need a consent banner or a complex configuration to get there.

Do I need a Data Processing Agreement?

Because Satsu processes no personal data, the usual DPA burden is minimal. If your organization requires one for procurement, get in touch.

Where is my data hosted?

In the EU. Your analytics data stays on EU infrastructure and is never sold or shared with advertisers.

One private place for everything about your site.