App Tracking Transparency (ATT)

App Tracking Transparency (ATT) is a framework introduced by Apple that requires apps to display a prompt where users need to opt in to enable tracking across apps and websites. Apple enabled this feature in iOS 14.5, iPadOS 14.5, tvOS 14.5, and later versions.

The change affects Apple’s identifiers for advertisers (IDFA). These are unique identifiers assigned to a user’s device, which advertisers employ for customized advertising.

Any app that collects data about end users and shares it with other companies to track across apps and sites must use ATT. The framework presents an app-tracking authorization request to the user and provides the tracking authorization status.

If users see a request to track their activity, they can tap Allow or Ask App Not to Track. They can still use the app fully even if they don’t allow the app to track their activity. If the user taps Ask App Not to Track, the app developer can’t access the IDFA. The app is also not permitted to track user activity using other information that identifies them or their device, like an email address.

Read about other technological measures that aim to protect user privacy:


  • 4 ways to make your analytics HIPAA-compliant: Implementation guide

    Healthcare organizations have four main approaches to achieving HIPAA-compliant analytics. Each has different trade-offs in cost, technical complexity, and analytics capabilities. This guide compares all four implementation methods – from using Google Analytics with workarounds to deploying fully HIPAA-compliant analytics platforms – so you can choose the right approach for your organization’s needs and resources.

  • Is Google Analytics HIPAA-compliant?

    If you use Google Analytics or similar software, you’re likely already optimizing your website to serve your customers better. But what about Google Analytics and HIPAA compliance? In short – if you’re a HIPAA-covered entity, using GA4 puts you at serious risk of a HIPAA breach. Google states that Google Analytics doesn’t satisfy HIPAA requirements. And…