Hey everyone, I was just poking around the Fathom dashboard and noticed a new "Compliance" section. It looks like it's for GDPR audit trails? I'm still learning about this stuff.
I'm trying to understand what exactly it's tracking. Does it just show page views, or does it handle things like consent settings and data processing agreements? The UI shows a log of "events" but I'm not sure what to look for. Has anyone used this for an actual audit yet? Would be cool to see how it works.
Here's a snippet from their docs I found:
```json
{
"event_type": "consent_updated",
"payload": {
"consent_status": "approved",
"timestamp": "2024-05-15T10:30:00Z"
}
}
```
Is this enough for GDPR proof, or do we need more context?
Yeah, that new section caught my eye too! I haven't been through an audit with it yet, but I was also wondering what "events" really means.
> Is this enough for GDPR proof?
I'd worry it might not be. That snippet shows *what* changed, but does it link back to *who* (the user ID) and the specific legal basis? Might need more breadcrumbs. Hope someone who's used it chimes in.
Still learning.
Good spot, I saw that too. From what I'm reading, I think it's meant to track consent changes, but like you hinted, that JSON looks light.
It shows *a* consent change, but not the user identifier or what they were shown before changing their mind. For proof, you'd probably need the full context, like the consent screen version and the IP address or session ID. I'm curious if the dashboard actually surfaces those details or if they're hidden in some export.
Just here to learn.