Politique de confidentialité pour Google Analytics

Conformément aux lois internationales sur la protection des données, Google vous demande généralement de disposer d’une politique de confidentialité conforme lorsque vous utilisez ses produits. Cette exigence figure habituellement dans les conditions d’utilisation que vous acceptez lors de votre inscription à ces services.

En particulier, Google indique dans les Conditions d’utilisation de Google Analytics, à la section « 7. Vie privée » :

You will have and abide by an appropriate Privacy Policy and will comply with all applicable laws, policies, and regulations relating to the collection of information from Visitors. You must post a Privacy Policy and that Privacy Policy must provide notice of Your use of cookies that are used to collect data. You must disclose the use of Google Analytics, and how it collects and processes data. . . . You will use commercially reasonable efforts to ensure that a Visitor is provided with clear and comprehensive information about, and consents to, the storing and accessing of cookies or other information on the Visitor’s device where such activity occurs in connection with the Service and where providing such information and obtaining such consent is required by law.

Google repeatedly references “applicable law” throughout their terms as many of these privacy-related stipulations are related to actual legal requirements. Google is bound to many of the same privacy laws that you are and as such, their terms reflect this.

Comment ces conditions se traduisent-elles en pratique et quelles sont les lois applicables ?

Let’s assume you have a website, you run Google Analytics on it and you want to ensure that you comply with Google’s terms (and the law). What do you have to do?

  1. Create a legally compliant privacy policy. Read the specifics [below].
  2. Ensure that the privacy policy includes clauses specific to the processing activities handled via Google Analytics.
  3. Include a cookie policy. From the quote above, you’ll note that in addition to the general privacy policy requirement, Google further requires that you include notice of your use of cookies as well.
  4. Handle cookies and consent to cookies in a legally compliant way. This generally means informing users of the use of cookies (as mentioned in the previous point), obtaining consent to the use of cookies and maintaining proof of that consent. One Analytics feature that may help with the consent requirement here is the IP Anonymization feature, however, you’re still required to inform users in a conspicuous and detailed way, about the use of even these cookies. Furthermore, the use of cookies may be considered “monitoring behavior” under the GDPR, even where those cookies are anonymized statistical cookies. Therefore, it is recommended that you block cookies prior to obtaining express consent, by default. You can read more about Google Analytics and the GDPR here.

Generally, the national/regional laws of your base of operations will apply, as well as (in many cases), the laws governing the regions in which your users are based. This can be quite tricky online, as, unless you’re actively blocking some regions, you may need to address requirements across geographical boundaries and legal jurisdictions. For this reason, it’s always the best idea to handle these activities with the strictest applicable regulations in mind (which currently, is likely European Law, mostly the GDPR and Cookie Law).

You can read more about determining your law of reference here or read our in-depth Legal Overview Guide here.

Google Analytics Advertising Features

Google Analytics Advertising features allow you to enable features in Analytics that aren’t available through standard implementations. Advertising features include:

  • remarketing with Google Analytics;
  • Google Display Network Impression Reporting;
  • Google Analytics Demographics and Interest Reporting;
  • integrated services that require Google Analytics to collect data for advertising purposes, including the collection of data via advertising cookies and identifiers;
  • User-ID, a feature that you can use to associate multiple sessions with a unique ID.

For more information read Remarketing with Analytics and User-ID and Cross Device on Analytics Help.

How This Relates to Your Privacy Policy

In Google’s words:

If you use an SDK to implement any Google Analytics Advertising Features, such as Audience Reporting or Remarketing, you must comply with the Policy for Google Analytics Advertising Features, in addition to the Google Play Developer Program Policies, and any other applicable policy.

This requires slight modifications/additions to your privacy policy which is outlined in our guide How to update your Privacy Policy to reflect enhanced advertising features in Google Analytics.

Structure élémentaire d’une politique de confidentialité

Let’s start with the minimum legal requirements for a privacy policy. These are the most basic elements that a privacy policy should have:

  • Who is the site/app owner?
  • What data is being collected? How is that data being collected?
  • What is the Legal basis for the collection? (e.g consent, necessary for your service, legal obligation etc.) – This is more specifically related to the GDPR and EU Law, however, even if you fall outside of GDPR obligations, under most countries’ legislations, you’ll still need to say why you’re processing the personal data of users.
  • For which specific purposes are the data collected? Analytics? Email Marketing?
  • Which third parties will have access to the information? Will any third party collect data through widgets (e.g. social buttons) and integrations (e.g. Facebook Connect)?
  • What rights do users have? Can they request to see the data you have on them, can they request to rectify, erase or block their data? (under the GDPR most of this is mandatory)
  • Description of process for notifying users and visitors of changes or updates to the privacy policy
  • Effective date of the privacy policy

Comment créer une politique de confidentialité et de cookies pour Google Analytics

Here’s where our Privacy and Cookie Policy Generator comes in very handy: with 1700 + available clauses, our privacy policies contain all elements commonly required across many regions and services, while applying the strictest standards by default – giving you the option to fully customize as needed.

La politique relative aux cookies est une section de la politique de confidentialité consacrée aux cookies. Elle décrit en détail toutes les informations exigées par la loi, y compris les catégories de cookies utilisés, leurs finalités ainsi que les noms des tiers qui installent ou qui peuvent installer des cookies par le biais du site Web, avec des liens vers la politique de confidentialité et éventuellement le formulaire de consentement de chacun de ces tiers. Notre Générateur propose une configuration en un clic de la politique relative aux cookies qui récupère automatiquement toutes les informations pertinentes sur les cookies à partir des services mentionnés dans votre politique relative aux cookies.

Toutes nos politiques sont créées par des avocats, suivies par nos avocats et hébergées sur nos serveurs pour garantir qu’elles soient constamment à jour au regard des dernières évolutions juridiques et exigences de tiers.

Le processus de génération est facile et intuitif :

  • Click on any of the green “Start Generating” buttons visible throughout this site to begin, and select the “Generate Now” button under Privacy and Cookie Policy in your site area.
  • Add any service you may be using. In this case, it will be Google Analytics, and possibly Google Analytics with anonymized IP, User ID extension for Google Analytics, Remarketing with Google Analytics, Google Analytics Advertising Reporting Features and/or Google Analytics Demographics and Interests Reports depending on what features you have enabled.
  • Enable the optional Cookie Policy (strongly recommended, requires a Pro License).
  • Fill out your web/app owner and contact details.
  • Add the iubenda Privacy Policy to your site (best practice is to link to your privacy policy from your footer, where your users or visitors can find it at any given time).

Read the guide on How to Generate a Privacy Policy here.

Comment gérer l’utilisation des cookies

Comme nous l’avons mentionné plus haut, vous devez satisfaire deux sortes d’exigences : celles de Google et celles de la Loi cookies. Heureusement, ces exigences se recoupent et vous pouvez facilement les satisfaire en même temps grâce à notre solution complète de gestion des cookies, Cookie Solution.

Our Cookie Solution allows you to:

  • easily inform users via banner and a dedicated cookie policy page (which is automatically linked to your privacy policy and integrates what’s necessary for cookie law compliance);
  • obtain and save cookie consent settings;
  • preventively block scripts prior to consent; and
  • keep track of consent and save consent settings for each user for up to 12 months from the last site visit.
Google Consent Mode

To help advertisers manage cookies for analytics and advertising purposes, Google has introduced Consent Mode, a feature that allows you to avoid prior blocking for Google Analytics and Google Ads (including Google Ads Conversion Tracking and Remarketing).

Learn how to implement it with our Cookie Solution.

You can collect consent via multiple mechanisms including continued browsing, scrolling, and/ or specific clicking actions. Keep in mind though that allowed consenting actions may differ depending on the Member State law.

Le processus est simple et intuitif :

After creating your account simply go to your website area:

  • click on “Generate Now” under Cookie Solution;
  • configure and customize as you’d like;
  • integrate your cookie policy; and
  • embed into your site.

It’s easy to run, fast and does not require heavy investments. For more information on our Cookie Solution click here.

Create a privacy policy for Google Analytics

Start generating

Voir aussi