whats-best.ai

Conversion Optimization

GrowthBook

Rest of world Report an error

Panel rating · 6 judges · How to read the stars

Category median

Sovereignty: 1 of 4 dimensions proven

0–5 in half steps. 5 means the rubric's top anchor is met on the evidence.

by GrowthBook, Inc. · www.growthbook.io

Compare with Statsig → Report an error on this page Is this your product? →

Read this page as one judge. Each weighs the same scores by what they care about.

The CRO Consultant

Weighted verdict

Sets up testing programmes for several clients and has to recommend a platform each can afford and defend. Reads for multi-project management, clean analytics integration, a consent setup a client's DPO will sign off, and a traffic metric she can estimate before the contract.

Same scores as the panel view — this lens weights them the way this judge cares.

Scored by The CRO Consultant

Experiment types & delivery

How this is scored

What can be tested and where: client-side changes through an editor, server-side and feature experiments through SDKs, multivariate and multi-page tests, and personalisation — judged on what the documentation shows rather than on the feature grid.

0 — Simple A/B split of one page element through a visual editor; no server-side option, no targeting beyond URL.

3 — Client-side A/B and split-URL tests with basic audience targeting, and no SDK or server-side delivery.

5 — Client-side and server-side experiments through documented SDKs for common languages, multivariate and multi-page tests, audience targeting on behaviour and attributes, and rule-based personalisation.

8 — Feature-flag-based experiments sharing one audience and metric model with web tests, mutually exclusive experiment groups, holdouts, edge or CDN delivery, and personalisation that can itself be tested against a control.

10 — One experimentation programme across every surface: web, app, server and edge from the same platform, experiment interactions managed, a documented experiment lifecycle from hypothesis to archived result, and a library of past results a team can search.

Report an error

The CRO Consultant

Feature-flag experiments, a visual editor, URL redirects and even custom assignment from third-party systems all feed one results model, with namespaces for mutually exclusive tests, holdouts, sticky bucketing and multivariate, sequential and bandit test types documented. Edge delivery on Cloudflare Workers is documented in detail, and 24+ SDKs cover server, client, mobile and edge. We found no public information on personalisation that can itself be tested against a control, which keeps this just under the top band. 1 6 7 12

Report an error

Statistical method & guardrails

How this is scored

Which statistics decide the winner and what protects the customer from misreading them. Scored on what the vendor documents: the method by name, how peeking and multiple comparisons are handled, and whether sample ratio mismatch is detected.

0 — A "winner" or "probability to beat" figure with no documented method, no stated sample-size guidance and no warning against stopping early.

3 — The method is named (frequentist or Bayesian) but its assumptions are not documented, and nothing prevents a test from being called while it is still underpowered.

5 — Documented method with confidence or credible intervals, a sample-size or test-duration calculator, and stated guidance on when a result may be read.

8 — Sequential testing or an equivalent documented protection against peeking, correction for multiple metrics or variants, sample ratio mismatch detection, variance reduction such as CUPED, and guardrail metrics that can stop a harmful test.

10 — The statistics are auditable: methodology published in enough detail to reproduce a result, the choice of method explained per use case, raw per-visitor data available for independent re-analysis, and the interface refuses to present an underpowered result as a conclusion.

Report an error

The CRO Consultant

Both Bayesian and frequentist engines are documented down to default priors, two-sample t-tests and correction families (Holm-Bonferroni and Benjamini-Hochberg), with SRM detection, CUPED, guardrail metrics, minimum-data checks against reading 5-vs-2 results, and suspicious-uplift and multiple-exposure alerts. Analysis runs in visible SQL on the customer's own warehouse with only aggregates accessed, and the implementation is open source under MIT, so a client's data team can audit a result end to end. Corrections apply only to the frequentist engine and adjusted p-values export to CSV but not the API — minor caveats on an otherwise reproducible setup. 8 9 5 7

Report an error

Snippet performance & flicker

How this is scored

The cost the client-side snippet imposes on the page it tests: blocking load, flicker of original content, script weight and the effect on Core Web Vitals — scored on what the vendor measures and publishes, not on "lightning fast".

0 — A synchronous snippet with no stated size, no flicker handling and no mention of performance.

3 — An anti-flicker snippet that hides the page until the test loads, with a timeout, and no published figures for script size or load cost.

5 — Script size and loading behaviour documented, asynchronous loading option, flicker handling explained with its trade-off, and CDN delivery of the snippet.

8 — Published performance figures including impact on Core Web Vitals, a self-hosting or first-party-domain option for the script, per-project bundles containing only active experiments, and a server-side or edge alternative for flicker-sensitive tests.

10 — Performance is a stated commitment: measured overhead published and maintained, flicker eliminated by edge or server-side rendering as a documented path, and tooling that shows the customer what their own configuration costs the page.

Report an error

The CRO Consultant

The documentation is unusually honest that the Edge App's default mode makes a blocking API call on every request, and spells out the fixes: a KV push model or just-in-time payload cache to eliminate it, plus edge-rendered visual and redirect experiments that cut flicker before HTML ships. Self-hosting with your own CDN or the Proxy server is documented, and the SDKs are claimed 50% smaller with zero network calls. We found no published figures for script weight or Core Web Vitals impact, only relative claims. 11 12 14 1

Report an error

Analytics, data export & integrations

How this is scored

Getting results and raw data out: integration with analytics and tag management, export of visitor-level results, warehouse-native analysis, and an API — because an experiment result that cannot be checked in the customer's own data is a claim, not a finding.

0 — Results visible in the vendor's dashboard only; no export, no analytics integration, no API.

3 — CSV export of aggregated results and one analytics integration, with no visitor-level data and no documented API.

5 — Integrations with common analytics and tag managers, export of results, and a documented API for managing experiments and reading results.

8 — Visitor-level raw data export or streaming to a data warehouse, warehouse-native analysis on the customer's own metrics, CDP integration for audiences, and an API with stated limits.

10 — The platform treats the customer's warehouse as the source of truth: metrics defined once and computed there, full historical experiment data exportable in open formats, and a versioned API a team can build its own programme tooling on.

Report an error

The CRO Consultant

Warehouse-native is the architecture, not a connector: metrics are defined in SQL and computed on Snowflake, BigQuery, Databricks or Redshift with no PII leaving the warehouse, every query is visible, and a versioned REST API includes a per-experiment results endpoint for pulling analysis into our own reporting. Results including adjusted p-values export to CSV, and native integrations cover Slack, Datadog, Shopify, WordPress and more. We found no published API rate limits and no CDP integration for audience syncing, which keeps it a notch below fully self-serve. 7 14 9 13 5

Report an error

European sovereignty

How this is scored

Where visitor data is processed and stored and who the contracting entity is. Independently sourced by the sovereignty pipeline; weighted higher here than in categories that hold only the customer's own data, because the script runs on every visitor to the customer's site and their behaviour is what the platform records.

0 — Non-EU vendor and contracting entity, hosting unstated, subprocessors unnamed, and visitor data leaving the EU without a stated safeguard.

3 — EU data residency offered as an option or an enterprise add-on while the contracting entity is non-EU, or the subprocessor list is absent.

5 — EU processing of visitor data as standard and an EU contracting entity, but parts of the chain — CDN, support access, analytics — are non-EU without an explained safeguard.

8 — EU hosting on named infrastructure including the delivery of the snippet, EU contracting entity, subprocessor list published, and a DPA covering the visitor data the script collects.

10 — Sovereign end to end and evidenced: vendor, entity, hosting, snippet delivery and every subprocessor European, certification published, and no visitor data reaching a non-EU party at any point.

Report an error

The CRO Consultant

GrowthBook, Inc. of Anaheim, California is the contracting entity, cloud hosting is stated as AWS in the United States, the privacy notice asks users to consent to transfer and processing in the United States, and the terms say the website is for use only by persons located in the United States. US AI providers are named as subprocessors for optional features, but we found no public information on a published subprocessor list, EU data residency, or a transfer safeguard such as adequacy or standard contractual clauses. Self-hosting air-gapped, where no data leaves the customer's system, is the only documented path that keeps visitor data off US infrastructure. 3 4 5

Report an error

Pricing transparency

How this is scored

A category priced by traffic — monthly tracked users, visitors or impressions — where the tier a site lands in depends on numbers the buyer has to estimate. Whether a buyer can compute the real annual cost including traffic limits, overage, server-side or personalisation modules and seats — from public pages alone.

0 — No public prices at all; every tier is a sales conversation.

3 — A starting price or a free tier exists, but the traffic metric, the limits and what happens above them are unstated — the invoice is unknowable.

5 — Tier prices public with the traffic metric and its limits defined, but at least one commonly needed piece (server-side SDKs, personalisation, overage) is unpriced or "contact sales".

8 — Every tier priced publicly with the traffic metric defined, limits, overage rates, module prices, minimum term and VAT treatment stated.

10 — Complete price computability: annual invoice derivable for a given traffic volume, set of modules and team size, with overage and every add-on published.

Report an error

The CRO Consultant

The seat model is public and computable: Starter free with one project and up to three users, Pro at $40 per seat per month up to 30 users and three projects, with published overage rates for managed warehouse events ($30 per million above the tier), CDN requests ($10 per million) and CDN bandwidth ($1 per GB) — plus unlimited traffic and unlimited experiments on every tier. The traffic meter here is events and CDN usage rather than monthly tracked users, which I can still estimate before a contract. Enterprise is custom-priced, and we found no public information on minimum term or VAT treatment. 2 7

Report an error

European sovereignty — proven facts

1 of 4 dimensions proven

Built only from facts shown on the vendor's own pages. A dimension we could not prove is left open, not scored as zero.

Ownership Not determined — uncited Report an error
Data residency Not determined ⚠ unverified — uncited Report an error
Subprocessors US CLOUD Act reach ⚠ unverified 0/2 pts 5 Report an error

Where this could be wrong

What we left out

A claim that does not survive our checks costs us the claim, not the page. This is what was taken off this one.

Sources (14)

The pages every claim on this page was read from — each one checked, dated, and kept verifiable.

  1. 1 Vendor homepage www.growthbook.io Checked 22 Sep 2026 Details →
  2. 2 Pricing page www.growthbook.io Checked 22 Sep 2026 Details →
  3. 3 Privacy policy www.growthbook.io Checked 22 Sep 2026 Details →
  4. 4 Terms of service www.growthbook.io Checked 22 Sep 2026 Details →
  5. 5 Security / trust page www.growthbook.io Checked 30 Sep 2026 Details →
  6. 6 Experiment types & delivery — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →
  7. 7 Experiment types & delivery — found from sitemap www.growthbook.io Checked 1 Oct 2026 Details →
  8. 8 Statistical method & guardrails — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →
  9. 9 Statistical method & guardrails — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →
  10. 10 Consent & visitor tracking — found from sitemap www.growthbook.io Checked 1 Oct 2026 Details →
  11. 11 Snippet performance & flicker — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →
  12. 12 Snippet performance & flicker — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →
  13. 13 Analytics, data export & integrations — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →
  14. 14 Analytics, data export & integrations — found from sitemap docs.growthbook.io Checked 1 Oct 2026 Details →