1. Improving site visitors’ privacy
All data processed by Yandex.Metrica has always been anonymous and de-personalized. In Yandex.Metrica reports, you can only see technical and non-sensitive data that cannot in any way be exploited to establish a user’s identity. In addition, we take further steps to exclude even the slightest risk of matching any data to an individual. We have redesigned our Session Replay tool so that it provides GDPR compliance out-of-the-box. The Session Replay tool automatically masks any data in the form fields that can be deemed confidential. Our algorithms analyze the names of form fields – but not the characters that users enter into those fields – and change their content to asterisks, so that no confidential data can potentially appear in Session Replay recordings.
2. Full control of potentially sensitive information
Site owners can further fine-tune the way Session Replay records content. This may be necessary for form fields that are not confidential per se – and therefore they won't be automatically masked by Yandex.Metrica, – but that still can contain data that can be deemed sensitive. Our users can altogether disable recording in all forms using a simple toggle in the Yandex.Metrica's interface. Alternatively, they can record only some fields' content, or, vice versa, disable recording only in some fields: that can be done with a special css class in a site's code. There are also css classes available to manage recording of any element of a site like an input field other than a form field (for example, a data picker), a chatbox, a picture, or any other piece of content. Learn more.
3. Data collection notice
We offer all our users a ready-to-use solution to ask for a site visitor’s consent to data collection with Yandex.Metrica, and to defer the loading of the code snippet for the Yandex.Metrica tag on site pages. Without the user's consent, the snippet will not load. We provide the sample text for such a notice, which is vetted by Yandex’s legal experts, as well as an example of implementing such a notice in a site’s code. Data is transferred to Yandex.Metrica servers via secure HTTPS channels.
4. Opt-out add-on
Collecting data about individual users can be blocked with the Yandex.Metrica opt-out browser add-on that is available for the most popular desktop browsers.
5. IP masking
All Yandex.Metrica users can request that a full IP address of site visitors will not be processed or stored on our servers. Even though this may affect the accuracy of visitor location data, we allowed this option to be easily available to all Yandex.Metrica users regardless of whether or not they need to be GDPR-compliant. All you need to do as a Yandex.Metrica user is check the relevant box in your tag settings.
6. Transparent Data Processing Agreement
We have thoroughly researched the GDPR requirements with the help of legal advisers both within Yandex and outside the company to make sure that our procedures of data collection, storage and processing are communicated fully and transparently. Click here to review our Data Processing Agreement.
7. Simple one-click acceptance of Data Processing Agreement
We have introduced the option to digitally accept the Data Processing Agreement. To do so, check the relevant box when viewing your tag’s settings or when adding a new tag.