Method

Privacy-first app measurement is a deletion practice, not a slogan.

This page is the working brief we use in studio. It is not a vendor comparison. If you want the syllabus that teaches it, start with the programs.

Team collaborating around laptops in a loft studio

What “first-party” has to mean here

First-party is not “we collected it, therefore we may keep it.” On this desk it means: the app observed a behaviour, stored only what the product needs to improve that behaviour, and can delete the row when consent ends. A hashed phone number that still joins to support tickets is not first-party measurement. It is a quieter CRM.

We still allow account-scoped analytics after a person signs in, provided the join key is the account they control and the export path is documented. Guest funnels stay aggregate.

The three refusals

  • No durable device keys Advertising IDs, IMEI echoes, and “anonymous” IDs that never rotate are refused in critique even if the SDK offers them as defaults.
  • No silent re-join If consent is withdrawn, properties that would stitch the next session to the last one are dropped. New sessions start cold.
  • No vendor shadow copies If a crash or engagement kit duplicates identifiers into a second cloud, it is treated as your warehouse, not “their problem.”
  • No fake precision We would rather ship a 19% day-7 return than a 41% that depended on a fingerprint. Honesty is a feature of the method.

A weekly review that survives counsel

The Mindtracegrid review has four panes: consented funnel, declined funnel, crash surface without user payloads, and a deletion log for the prior 31 days. Product still argues about copy. Legal can see that names are not in the room. That is usually when the meeting gets shorter.

Teams who skip the deletion log tend to relitigate identity every quarter. We treat the log as seriously as the conversion chart.

Where this method stops

We do not teach paid acquisition graphs that depend on SKAdNetwork postbacks, MMP identity graphs, or cross-app fingerprinting. If your growth team needs those, they should learn them elsewhere and keep them off the first-party warehouse.

We also do not certify you for PDPA compliance. We teach measurement habits that make a compliance conversation possible. Counsel still signs the memo.

See the programs

Bring the event list you would rather not read aloud.

The desk will tell you whether a studio, a lab, or a written audit is the honest next step.

Write the desk