ClearStat – Privacy-Friendly Local Analytics

Description

ClearStat shows what is working on your WordPress site without sending visitor analytics to an external analytics account. First-party activity is stored in purpose-built tables in your WordPress database and reported inside wp-admin.

There is no Google Analytics property to configure, no ClearStat account required for Free, and no ClearStat product telemetry.

WordPress analytics that answers useful questions

  • Overview: see views, activity, conversions, trends, top content, traffic sources, and devices at a glance.
  • Content analytics: find the posts, pages, and public content attracting useful activity.
  • Traffic sources: understand direct, search, social, email, referral, and unknown traffic.
  • Campaign tracking: compare validated UTM source, medium, campaign, term, and content dimensions.
  • Activity and conversions: measure page views, outbound clicks, downloads, email clicks, phone clicks, site searches, 404 views, and supported form completions.
  • Technology reports: compare device, browser, operating system, and screen-size groups.
  • WordPress dashboard widget: check cached headline numbers without opening the full report.
  • CSV exports: download bounded report tables with spreadsheet-formula protection.

Privacy-first by design

Choose the measurement mode that fits your site:

  • Consent-aware continuity: counts identifier-free activity until your supported consent signal is affirmative, then uses a random first-party HttpOnly cookie for estimated visitors and 30-minute visits.
  • Strict identifier-free totals: records eligible views and activity without cookies or persistent visitor identifiers. Visitor, visit, funnel, and attribution metrics remain unavailable instead of being presented as false zeros.
  • Acknowledged custom legal basis: enables local continuity only after an administrator accepts responsibility for the site’s legal basis and notices.

ClearStat never stores raw IP addresses or full User-Agent strings in analytics tables and does not fingerprint visitors. Query strings are excluded from stored paths except for validated campaign dimensions. Administrators, known bots, Do Not Track requests, and sensitive paths are excluded by default.

ClearStat provides privacy-conscious defaults and controls, but no plugin can guarantee legal compliance for every site or jurisdiction. Site owners remain responsible for their configuration, notices, consent tooling, and legal basis.

Your data stays under your control

  • Configure raw-event and aggregate retention.
  • Inspect collection, aggregation, database, and privacy status in Data Health.
  • Purge a date range or delete all analytics with explicit confirmation.
  • Choose whether analytics tables are preserved or removed on uninstall.
  • Keep multisite settings, data, jobs, identifiers, and permissions isolated per site.

Free collection, storage, reporting, exports, and privacy controls run on your WordPress site. Free does not contact a ClearStat licence or update service.

Read the ClearStat documentation · Get support · Review the privacy boundary

Privacy

Strict mode stores no visitor or visit identifier and does not use cookies, local storage, fingerprinting, raw IP addresses, or full User-Agent strings. Visitor- and visit-dependent metrics are unavailable in this mode.

Consent-aware mode can issue a random first-party HttpOnly cookie only after an affirmative supported consent signal. Tables store a rotating site-local HMAC, never the raw cookie value.

Free sends no analytics, configuration, or product telemetry to ClearStat or WPGeared. Query strings are excluded from stored page paths apart from validated campaign dimensions. Sensitive endpoints and parameters are suppressed or stripped.

Uninstall preserves analytics tables by default. The Data Management page provides an explicit delete-on-uninstall choice. Short-lived report caches and abuse counters may expire naturally after uninstall and contain no raw visitor identifiers.

Screenshots

Installation

  1. Install and activate ClearStat – Privacy-Friendly Local Analytics.
  2. Open ClearStat > Settings and complete the four-step setup.
  3. Choose the privacy mode appropriate for your site.
  4. Review exclusions and retention, then save the configuration.
  5. Visit a public, non-excluded page and confirm the first view under ClearStat > Data Health.

If a page cache or CDN serves old HTML after a tracking-setting change, purge that cache once.

FAQ

Does ClearStat require Google Analytics or an external account?

No. ClearStat Free collects, stores, aggregates, and reports analytics inside your WordPress installation. No ClearStat account is required.

Where is the analytics data stored?

Analytics is stored in dedicated tables in your WordPress database. Free sends no analytics, configuration, or product telemetry to ClearStat or WPGeared.

Does ClearStat use cookies?

Strict mode uses no cookies or persistent visitor identifiers. Consent-aware continuity can issue a random 30-day first-party HttpOnly cookie only after an affirmative supported consent signal.

Does ClearStat store IP addresses or fingerprint visitors?

No raw IP address or full User-Agent is stored in analytics tables. ClearStat does not fingerprint visitors. A short-lived abuse-control key may be derived server-side without retaining the raw address.

Why are Visitors or Visits unavailable in Strict mode?

Strict mode deliberately cannot link activity into visitor or visit estimates. ClearStat shows continuity-dependent metrics as unavailable rather than inventing numbers.

Which activity can ClearStat track automatically?

Free supports page views, outbound clicks, downloads, email and phone clicks, searches, 404 views, and supported basic form completions.

Can I export or delete my data?

Yes. Report tables can be exported as bounded CSV files. Data Management provides retention controls, date-range purge, delete-all, and an explicit delete-on-uninstall choice.

Will ClearStat slow down the public site?

The small dependency-free tracker is deferred and sends a first-party asynchronous request. Reporting and aggregation run separately from page rendering. Performance still depends on hosting, traffic, caching, and other plugins.

Does ClearStat guarantee GDPR, ePrivacy, or CCPA compliance?

No. ClearStat is built to support responsible privacy work, but compliance depends on the site’s jurisdiction, purposes, configuration, notices, consent tools, legal basis, and other software.

What are the current limitations?

Geography is currently disabled. Plain-permalink content URLs can aggregate under / in strict query-free mode. Security or caching layers must allow anonymous POST requests to /metricpress/v1/collect. Strict Content Security Policy deployments may require a nonce or hash for the inline tracker configuration.

ClearStat requires WordPress 6.4+, PHP 7.4+, InnoDB, and utf8mb4 on MySQL 5.7+ or MariaDB 10.4+. A maintained database release is recommended for production.

Reviews

There are no reviews for this plugin.

Contributors & Developers

“ClearStat – Privacy-Friendly Local Analytics” is open source software. The following people have contributed to this plugin.

Contributors

Changelog

1.0.5

  • Applied the complete ClearStat light/dark admin design system to every report, settings, health, and data-management screen.
  • Aligned Free and Pro brand titles consistently inside the WordPress admin shell.
  • Refined the public directory description, screenshots, installation guidance, and privacy explanations for the first WordPress.org publication.

1.0.4

  • Added patch-release provenance and package-integrity hardening so updated source is never published under the historical 1.0.3 artifact identity.
  • Improved form timing validation and protected database diagnostics from exposing raw driver errors.

1.0.3

  • Simplified analytics terminology with Views, Visits, Visitors, Conversions, and Activity across the WordPress interface.
  • Made report, export, collector, cache, migration, and multisite failure paths safer and more truthful.

1.0.2

  • Redesigned the ClearStat admin experience with compact report controls, clearer metrics, comparisons, and responsive layouts.

1.0.1

  • Restored the ClearStat sidebar and full dashboard access for authorized administrators.

1.0.0

  • First stable release of privacy-first, self-hosted WordPress analytics.