Commanders Act Logo

Commanders Act

French PlatformX MarTech suite from Fjord Technologies: enterprise server-side tag management, integrated consent, real-time CDP, and Adloop media attribution for multi-channel marketing teams.

EU-operated (FR)Server-side TMSReal-time CDPIntegrated CMPAdloop attributionSaaS only

Shortlist when you need an EU-headquartered enterprise stack combining server-side tag management, consent, real-time CDP activation, and independent media attribution (Adloop). Skip when you only need lightweight privacy analytics or open-source self-hosting—consider etracker or fusedeck for narrower EU measurement/tagging scopes, or Matomo-class tools for self-host analytics.

Key capabilities

Collect first-party and omnichannel events, transform/enrich without code, and deliver to 1,200+ destinations including 100+ server-side paths and major CAPIs (Google, Meta, Amazon, TikTok, Snapchat per vendor). GTM-ready server-side integration supports hybrid Google Tag Manager workflows.

Native CMP/consent features (TrustCommander lineage) with Google Consent Mode support and Google CMP partner listing. Privacy monitoring, data-quality dashboards, filters before partner delivery, and cookie-related scanners help marketing ops control what leaves the property.

Unify profiles across sources (including CRM enrichment), build no-code audiences with many filter criteria, push dynamic segment updates into ad and personalization destinations, and support cross-device experience consistency under consent rules.

After the 2023 Adloop acquisition, centralize campaign data via API connectors, run behaviour-based attribution as an independent measurement layer versus ad-platform KPIs, set spend/anomaly alerts, and use AI-assisted ad-level recommendations.

No-code QA tooling (live event inspector, debug mode), continuous data-quality monitoring, and role/IP-restricted platform access claims reduce reliance on pure developer debugging when tags and server-side pipelines change.

Best fit when

  • Marketing ops teams replacing or complementing GTM with governed server-side destinations and CAPIs
  • Enterprises that want tag management, consent, CDP segments, and activation under one French SaaS contract
  • Performance teams needing independent multi-channel attribution and campaign data hub after Adloop
  • Organizations prioritizing an EU legal entity and EU data-center marketing claims for MarTech collection tooling
  • Teams that need no-code QA, data-quality monitoring, and consent-aware partner delivery controls

Poor fit when

  • Solo sites or SMBs that only need free/client-side GTM or lightweight privacy page analytics
  • Buyers requiring open-source or fully self-hosted tag/CDP infrastructure
  • Procurement that must prove vendor-owned ISO 27001/SOC 2 from public certificate registries before RFP (provider-level claims need clarification)
  • Use cases limited to pure product analytics without marketing destination/CAPI complexity

Consider instead when

  • When: You mainly need EU web analytics with lighter tag/consent tooling, not a full CDP + media stack

    Consider: etracker

    German analytics + tag/consent oriented stack; smaller surface than PlatformX

  • When: You want Swiss cookieless analytics plus server-side tagging/activation without a French enterprise CDP suite

    Consider: fusedeck

    Narrower product; different jurisdiction (CH)

  • When: You need free client-side tagging and Google-native defaults, and can accept US hyperscaler jurisdiction

    Consider: Google Tag Manager (and Google marketing stack)

    Often retained in hybrid with Commanders Act server-side

  • When: Self-host open analytics is a hard requirement

    Consider: Matomo (self-host or EU Matomo hosting peers such as Friendly Analytics)

    Not a CDP/CAPI replacement

  • Independent security / no-logs audit·Not applicable
  • Independent security / pentest program·Vendor claimed
  • ISO 27001·Partial
  • SOC 2 / SOC 3·Partial
  • +4

Considerations & known limitations

  • MediumLimited public subprocessor inventory

    Marketing site does not publish a clear list of subprocessors for customer event/CDP data. Cloudflare is observable on public hostnames; backend host is described generically as a French data center. Request written subprocessors, regions, and SCCs before relying on 'EU-only' narratives.

  • MediumISO/SOC claims tied to hosting provider

    Security sheet language credits the data-center provider for ISO 27001 and SOC Type 1/2. Do not treat footer logos as proof of Commanders Act's own certifications without certificate IDs.

  • MediumEnterprise SaaS scope and switching cost

    PlatformX spans TMS, CMP, CDP, and media optimization. Implementation (server-side migration, consent redesign, CAPI mapping) is non-trivial; not a drop-in free GTM replacement for all teams.

  • LowNo self-host option

    Fully managed SaaS only. Organizations with hard on-prem or open-source requirements need different tools.

Open questions for due diligence

  • Will Fjord Technologies provide a current Art. 28 DPA, subprocessor list, and data-flow diagram for PlatformX customer event data?
  • Which legal entity and cloud region process production customer data today, and are backups/DR in the same jurisdiction?
  • Does Commanders Act hold its own ISO 27001 or SOC 2 (certificate number/date), or only rely on hosting-provider attestations?
  • What is the minimum commercial package if the buyer only needs TMS + CMP versus full CDP + Adloop?
  • How are US ad-platform CAPIs and optional Google/Meta connections handled for transfer impact assessments?

Preguntas Frecuentes

It is a multi-product suite under PlatformX: Enterprise Tag Manager (TagCommander lineage), Real-time CDP, Ad Optimization (Adloop), and integrated consent/CMP capabilities. Buyers often enter via tagging or consent but evaluate the broader stack for activation and media measurement.

Vendor product pages market a GTM-ready server-side integration so teams can retain GTM authoring patterns while shifting delivery to Commanders Act server-side destinations. Exact architecture, dual-billing, and agency skills still need a technical design workshop—hybrid is common rather than a hard rip-and-replace.

Marketing claims EU data centers and the Security product sheet specifies a data center in France (certifications described for the hosting provider). The public privacy policy states site-collected personal data is stored in the EU. App/platform hostnames currently sit behind Cloudflare CDN. A detailed public subprocessor inventory for customer event data was not found—request hosting region, backups, and subprocessors in the DPA package.

No. PlatformX is a managed SaaS product operated by Fjord Technologies. There is no public self-host distribution comparable to Matomo Community or open TMS engines. Choose self-host analytics/tagging stacks if operational sovereignty of the compute layer is a hard requirement.

The Security sheet attributes SOC and ISO 27001 (and other) controls primarily to the hosting provider, and claims regular external pentests of the platform. Do not treat logo strips as verified Commanders Act–owned certificates without certificate numbers or registry checks. Entity is French with no known US parent, but CDN/cloud supply chain (e.g. Cloudflare on public hostnames) means CLOUD Act exposure should be assessed as partial/medium, not zero—confirm subprocessors in writing.

Enterprise-style demo and quote sales; public pages emphasize contact/demo and limited trial messaging. No durable public list price is used on the product pages reviewed. Budget for implementation (server-side migration, CAPI mapping, consent redesign) beyond licence fees.