Analytics and Visibility
Who can see analytics?
Section titled “Who can see analytics?”Users with the roadmap_view_analytics capability, which Administrators have by default. Since 1.8.0 the Analytics screen, the analytics REST routes and the analytics CSV export all check this capability; holding edit_posts (for example a Contributor) is not enough. See Analytics dashboard.
How long is analytics data kept?
Section titled “How long is analytics data kept?”Analytics events are pruned once a day by a background job. The default retention is 90 days, and you can change it with Analytics Retention (days) under Roadmap > Settings > Advanced.
Is the tracking endpoint public?
Section titled “Is the tracking endpoint public?”Yes, POST /wp-json/roadmap/v1/analytics/track accepts events from visitors. It is limited to 30 events per minute per IP address and a 2048 byte payload. Callers over the limit get 429, and oversized payloads get 413.
Who can read member profile data?
Section titled “Who can read member profile data?”The member profile REST routes (/users/{id}/activity and /users/top-contributors) require a logged-in user. To make them public, add add_filter( 'roadmap_pro_public_user_profiles', '__return_true' );.
Can logged-out visitors submit suggestions?
Section titled “Can logged-out visitors submit suggestions?”Yes, when Allow guest suggestions is turned on under Roadmap > Settings > Advanced. It is off by default. Submissions arrive as pending and wait for review under Roadmap > Guest Suggestions. See Guest suggestions.

