TRACKLAYERv4.2
ProductIntegrationsPricingCompareComplianceSIGN INSTART
§ 00 · COMPLIANCE

We sign the DPA. We hash the PII.
We keep the audit log.

TrackLayer is built for EU-based merchants by EU-based engineers. Compliance isn't a feature we bolted on — it's how the pipeline is shaped. Hashing at the edge, residency by default, delete cascades that actually work.

SOC 2 TYPE II
In audit
Q3 2026
GDPR
Compliant
Art. 28 processor · DPA available
CCPA
Compliant
Do Not Sell respected
ISO 27001
Roadmap
2027
§ 01

Six principles we don't move on.

§ 01

PII hashed at the edge

Email, phone, and any identifier matching PII heuristics are SHA-256 hashed in the ingestion Worker before they hit our storage. The raw values never reach a database we control.

§ 02

EU data residency by default

All merchant data is stored in eu-west-1 (Frankfurt) by default. US-east-1 and AP-south-1 are available on request for Scale and Unlimited plans. No cross-region replication.

§ 03

Right to delete in <2 minutes

POST /v1/identity/{profile_id} with method DELETE → cascade deletion across events, deliveries, profile graph, and CAPI-delete signals to Meta/Google/TikTok. Completes in under 2 minutes.

§ 04

Consent flows through

If your store passes IAB TCF v2.2 consent strings or Shopify customer privacy API signals, we respect them — platforms configured as 'analytics-only' don't receive marketing events.

§ 05

No data resale, ever

We never pool, resell, or aggregate merchant data across customers. Your events, your attribution, your ROAS — TrackLayer's commercial model is your subscription, not your data.

§ 06

Audit log for every write

Every write operation (replay, delete, platform-connect, rule-create) is logged to an immutable audit log retained for 365 days. You can export it via API or in-app CSV.

§ 02

What happens to PII.

§ 01
PIXEL
browser · raw email entered
§ 02
EDGE
sha256(lower(email))
§ 03
INGEST
stored as email_hash only
§ 04
CAPI
hash forwarded per platform spec
Raw email is hashed at step §02 in the Cloudflare Worker (edge compute, RAM-only). It does not persist to any database at step §03 — only the hash does. Every subsequent hop carries the hash, never the plaintext.
DATA RESIDENCY
EU
eu-west-1 default
HASHING
SHA-256
at the edge
DELETE CASCADE
<2m
right to be forgotten
AUDIT LOG
365d
every write
§ 03

Documents.

DATA PROCESSING AGREEMENT
Sign online · countersigned instantly
SUBPROCESSORS
4 listed · 14-day notice on changes
SECURITY WHITEPAPER
Email to request · NDA optional
TRACKLAYER
© 2026 · Warsaw · Amsterdam
A telemetry console
for your pixel.
Product
Server-side tracking
Identity resolution
Event intelligence
Anomaly detection
Data quality
AI agent
Resources
Pricing
Integrations
vs. Stape
vs. Elevar
vs. Converge
vs. GTM
Signal
status.tracklayer.io ● operational
hello@tracklayer.io
Compliance · SOC2 · GDPR
DPA · Subprocessors
SER. TLR-04-21·2026