webtracking.org
F 16/100

TikTok Pixel & Events API

Advertising pixel that sends behavior and hashed identifiers to TikTok for targeting; a server-side Events API bypasses client-side blocking. Data-governance and residency concerns are well documented.

verified 2026-06-08 · grade set per the published methodology

How the grade breaks down

Data minimization 0/5

How little it collects, and whether collection is purpose-bound.

Consent honoring 1/5

Whether it respects GPC, consent state, and tracking-prevention signals.

Identifier strategy 1/5

Cookieless vs. persistent IDs, cross-site linkage, fingerprinting risk.

Residency & sharing 1/5

Where data lives and whether it is shared with third parties.

Transparency 1/5

How verifiable and documented its real behavior is.

At a glance

Category advertising-pixel
Cookieless no
Consent for lawful use required
Data residency global
Shares w/ third parties yes
Sends PII by default hashed
Honors GPC no
Open source no

The TikTok Pixel transmits events and hashed identifiers to TikTok for ad targeting and optimization, feeding its advertising systems. Its Events API provides a server-side path that bypasses browser-based blockers. Beyond the usual ad-pixel data flows, TikTok’s parent-company data-governance and cross-border data-handling have been the subject of sustained regulatory and governmental scrutiny. It requires consent and does not honor GPC by default.

Sources & basis for grade

Grades reflect documented behavior, vendor documentation, and ad.rip scans as of the date above. Each assessment is reproducible and vendors may request correction.

  • TikTok Pixel & Events API documentation
  • TikTok Advanced Matching docs
  • Public regulatory actions regarding TikTok data handling