Every definition agrees on that much. What almost none of them tell you is where the first row comes from, or how little of it most collection tools actually capture — ours included, which is the part of this page worth reading.
The distinction is the source, not the sensitivity.
An email address typed into a signup form. A size preference chosen in a quiz. A birthday given to a loyalty program.
They know they gave it to you, and they know why. That is the whole definition — intent, not merely consent.
Pages viewed, orders placed, emails opened, time on site. Collected on your own properties.
Yours to use, but the customer never chose to hand it over. Behaviour, not declaration.
A partner brand shares its audience with you under an agreement.
Rare in ecommerce, and the agreement is the hard part.
Purchased audience segments assembled from many sites the customer never visited.
The category privacy regulation and browser changes have been steadily dismantling. It is what the other three are a response to.
Four sources, in descending order of how much you will get.
An address given in exchange for something — a discount, early access, a restock alert. This is the highest-volume source of zero-party data in ecommerce, and for most stores it is the only one that ever produces meaningful numbers.
A page where a subscriber picks how often to hear from you and about what. Lives in your email platform, not in a popup, because it needs to know who the person already is.
A one-question survey on the thank-you page or in the order confirmation. Answers here are unusually honest, because the transaction is already done and nothing is being sold.
A finder that asks about skin type, room size, or riding style. The genuine article needs a tool that stores each answer against the profile — most popup widgets, ours included, do not do this.
BetterPopup captures a contact detail at the moment someone decides to give it, in 2 opt-in modes — single, or double with a confirmation email — and syncs the email address or phone number, and nothing else to whichever of the 6 connected providers you use. That is a real and genuinely useful piece of zero-party data, and it is the whole of what we transmit.
Our mini-quiz step exists because an easy first click lifts completion on the step that follows. It is a first-click warm-up, not segmentation — answers are not stored or synced. We could describe that as “quiz-based zero-party data capture” and it would not be true, so we do not. If answer-level segmentation is what you are shopping for, ask every vendor on your list the same question: which field does the answer land in, and can I export it?
Including the question vendors answer least honestly.
Data a customer intentionally and proactively shares with a brand — an email address, a stated preference, a purchase intention, a birthday. The distinguishing feature is intent: the customer knows they are handing it over and generally knows what they are getting for it. It contrasts with first-party data, which you collect by watching what someone does on your own site, and with third-party data, which is assembled by brokers from places the customer never visited.
Yes, when it is typed into a form by the person it belongs to. That is the textbook case: a deliberate exchange, usually for a discount or an alert. An address appended from a data broker, or one inferred from a login elsewhere, is not — the customer never chose to give it to you.
Declaration versus observation. Zero-party data is what someone tells you: their size, their preferred send frequency, that they are shopping for a gift. First-party data is what you notice: pages they viewed, the order they placed, whether they opened the last campaign. Both are collected on your own properties and both are yours to use. Zero-party data is usually more accurate about intent, and much scarcer.
Third-party cookies and cross-site identifiers have been narrowing for years, and privacy law in most markets now requires a clear lawful basis for processing. Data the customer handed you on purpose is the one category that does not depend on any of that infrastructure and is the easiest to defend. It is also the smallest category, which is the part that tends to go unmentioned.
It collects the first and most valuable piece of it — the contact detail, given deliberately in exchange for an offer. Be careful with what comes next, because this is where vendor copy tends to overreach. BetterPopup syncs the email address or phone number, and nothing else to your connected provider. Our mini-quiz step is a first-click warm-up, not segmentation — answers are not stored or synced. If you need answer-level segmentation, that belongs in a quiz tool or your email platform's preference centre, and any vendor telling you their popup does it should be asked exactly which field the answer lands in.
Start with the contact detail, because it gates everything else — you cannot ask someone about their preferences until you have a way to reach them. Make the exchange explicit, ask for the minimum number of fields, and record consent properly so the record is usable later. Once a list exists, add a preference centre in your email platform and a post-purchase question. In that order: the sophisticated collection methods are worthless against an empty list.
It is the easiest kind to make compliant, not automatically compliant. You still need a lawful basis, a clear statement of who is collecting and why, and a working way to withdraw consent and request deletion. What zero-party data gives you is a defensible answer to the hardest question — where did this come from — because the customer gave it to you directly and you can show when.