Data & privacy

You decide what Aurora collects, where it's stored and how long it's kept. This page explains the controls available to you and how to use them to meet GDPR, UK GDPR, CCPA and similar requirements.

4 min read Updated Aug 1, 2026
On this page
  1. What Aurora collects
  2. Consent and cookies
  3. Cookieless mode
  4. Data residency
  5. Retention
  6. Data subject requests
  7. Exporting your data
  8. Deleting a workspace

What Aurora collects#

By default, the tracker collects only what's needed to score behavior: page URLs and titles, referrers and campaign parameters, timestamps, a coarse device and browser category, browser language, and an approximate location derived from the IP address. The full IP address is used for location and company resolution in memory and is then truncated before storage.

Aurora never collects keystrokes, form contents you haven't mapped, passwords, payment details or session recordings. Custom events and traits contain only what your own code sends. For the full legal description, see the Privacy Policy and the Data Processing Agreement.

The tracker sets one first-party cookie, aur_vid, with a lifetime of 13 months. Whether you need consent before setting it depends on your visitors' location and your legal basis. For visitors in the EU, EEA and UK, most teams treat Aurora as analytics and wait for consent.

Start the tracker in pending mode and tell it when the visitor makes a choice:

HTML
<script async src="https://cdn.aurora.io/v2/aurora.js"
        data-workspace="pk_live_YOUR_WORKSPACE_KEY"
        data-consent="pending"></script>

<script>
  // Call these from your consent banner or CMP callbacks
  aurora("consent", "granted");   // start tracking and set the cookie
  aurora("consent", "denied");    // stay cookieless, discard queued events
</script>

In pending mode, no cookie is set and events are held in memory. If consent is granted, they're sent; if it's denied or the visitor leaves, they're discarded. Aurora has ready-made integrations for OneTrust, Cookiebot, Usercentrics and Google Consent Mode v2 under Settings → Privacy.

Cookieless mode#

If you'd rather not set any cookie, turn on Cookieless mode. Visitors are then recognized only within a single session, and identified visitors are still linked by their user ID after login. Scores will be lower for anonymous traffic because repeat-visit signals can't be observed.

Data residency#

Each workspace chooses a region at signup: EU (Frankfurt, Germany, with failover in Dublin, Ireland) or US (Oregon, with failover in Virginia). Visitor data, scores and backups stay in that region. Account and billing metadata — your team's names and emails, invoices — is processed in the US under Standard Contractual Clauses.

Existing workspaces can be migrated between regions once, free of charge, by contacting support. Migration takes up to 48 hours, during which tracking continues and data is backfilled after the move. The Scale plan adds contractual residency commitments in the DPA.

Retention#

DataStarterTeamScale
Visitor events and sessions30 daysUnlimited (configurable)Unlimited (configurable)
Visitor profiles and scoresWhile active + 30 daysUntil deletedUntil deleted
Webhook delivery logs30 days30 days30 days
Audit logs——13 months
Backups35 days35 days35 days

On Team and Scale you can set a shorter retention period under Settings → Privacy → Retention, for example 12 months. Data older than the period is deleted nightly and removed from backups within 35 days.

Data subject requests#

When a person asks you to access or delete their data, find them under Visitors by email or visitor ID and choose Export data or Delete visitor. You can also automate requests with the API:

Terminal
curl -X DELETE https://api.aurora.io/v1/visitors/vis_7c1e02 \
  -H "Authorization: Bearer sk_live_YOUR_SECRET_KEY" 

Deletion removes the profile, events, scores and identifiers immediately from the live system and from backups within 35 days. If CRM sync is enabled, Aurora clears the fields it wrote but doesn't delete the CRM record itself — handle that in your CRM according to your own process.

Exporting your data#

Owners can export all workspace data at any time, on any plan, including Starter. Go to Settings → Data → Export to download visitors, events, scores and rules as CSV or newline-delimited JSON. Large exports are prepared in the background and a download link is emailed when they're ready. The REST API provides the same data for scheduled exports to your warehouse.

Deleting a workspace#

An Owner can delete the workspace under Settings → Data → Delete workspace. All data is removed from the live system within 24 hours and from backups within 35 days, and the deletion is confirmed by email. If you cancel a paid plan without deleting, data is kept for 30 days in case you change your mind, then deleted.

Last updated Aug 1, 2026 Report an issue with this page

Ready to try it on your own site?

Install the snippet in five minutes and see your first scored visitors today. Starter is free forever for one seat.

No credit card required · Setup help from real engineers