Data Collection
TapMind trust and compliance information for publishers' engineers.
What the SDK collects
Applies to CA-SDK [version] / Orchestration SDK [version]. This page is generated from each release's machine-produced disclosure inventory; the tables below describe the intended behaviour of the release named above and are confirmed against the inventory before that release ships.
A. Always collected (every release)
Scroll horizontally to view all columns on smaller screens.
| Data | Field | When read | Sent to | Note |
|---|---|---|---|---|
| App and placement context | appId, placementId, demand tag, adapter, SDK version, partner names, ad format, size | Per request | TapMind serving and telemetry | Not personal data |
| Installation identifier | installId (random UUID) | Per request | TapMind serving and telemetry | Created by the SDK; stored in the app's no-backup directory; changes on reinstall; never derived from or linked on the device to any other identifier |
| Session identifier | sessionId (random UUID) | Per request | TapMind | Rotates after a period of inactivity |
| Device characteristics | OS, OS version, device model, time-zone offset (telemetry); country code | Per session / per request | TapMind | Country is server-derived from IP; the SDK's value is a fallback |
| Ad outcomes | Event type, result, latency, time-to-fill, waterfall position, failure reason, ad-server code, error text (truncated, sanitised), reported revenue | Per event | TapMind telemetry | Never contains identifiers or user text |
B. Collected only when enabled for your app
Scroll horizontally to view all columns on smaller screens.
| Data | Field | Condition | Sent to |
|---|---|---|---|
| Consent and privacy signals | IAB TCF string and applicability, Additional Consent string, CMP ID, GPP string and section IDs, US Privacy string, your consent-API values, iOS ATT status | Consent forwarding enabled | TapMind serving; forwarded unaltered to advertising partners |
| Device block | WebView user agent, make, model, screen size and density, language, connection type, carrier name | Device block enabled | TapMind serving; advertising partners |
| Age and child signals | Google Mobile Ads age-restricted / child-directed treatment flags; your consent-API age flag | Consent forwarding enabled | TapMind serving; partners as the COPPA flag |
| Advertising identifier | Google Advertising ID (Android) / IDFA (iOS) | All of: identifier feature enabled for your app · permitted for the user's country by TapMind's policy · no child flag · user has not limited ad tracking · consent present where required (TCF purpose 1 and TapMind's vendor bit where GDPR applies) · iOS: ATT authorised | TapMind serving (encrypted at rest); advertising partners where the user's choices permit |
The advertising identifier is held only in memory for the session; it is never written to storage, telemetry or logs.
C. Never collected
- Android ID, IMEI, MEID, serial number, MAC or Bluetooth addresses, build fingerprints, or any hardware identifier.
- Device fingerprints or probabilistic identifiers built from device characteristics.
- Precise location (GPS, fused location, Wi-Fi or cell scans), even if your app has permission.
- Contacts, accounts, email, phone number, name, or any directly identifying data.
- Installed-app lists, clipboard, sensors, screenshots, keystrokes, microphone, camera.
- Third-party or hashed-email identifiers.
- The advertising identifier when the user has limited ad tracking, when any child flag is set, in Families or Kids apps, or when ATT is not authorised on iOS.
D. On-device storage
Scroll horizontally to view all columns on smaller screens.
| Item | Location | Written by |
|---|---|---|
| Installation identifier | File in the app's no-backup files directory | TapMind SDK |
| Telemetry segments | App-private files | TapMind SDK |
| SDK configuration (including privacy settings delivered by TapMind) | App-private preferences | TapMind SDK |
| IAB consent keys (IABTCF_*, IABGPP_*, IABUSPrivacy_String) | Default shared preferences / standard user defaults | Your CMP — TapMind reads only, never writes |
| Your consent-API values | SDK-private preferences | TapMind SDK, on your call |
E. Changes from the previous version
[Generated from the inventory diff at release.]