feat(analytics): add consent-gated activation-funnel analytics via PostHog

Installs are up 615% but 7-day retention is ~0% and we had no analytics SDK
to see where users drop off. Adds a thin PostHog wrapper (src/lib/analytics.ts)
that tracks app_opened, connection_form_submitted, connection_attempted,
connection_succeeded/failed (with a coarse error_class, e.g. the known 401
auth bug), message_sent, and response_received.

PostHog was chosen over Aptabase for its GMS-free JS-only RN SDK (fine for
the F-Droid/no-Firebase build), EU-hosted/self-host option, and generous
free tier. Analytics shares the exact same consent flag as Sentry
(telemetry.ts now gates both) so zero network calls happen without explicit
opt-in.

Requires a new EXPO_PUBLIC_POSTHOG_KEY CI secret (wired into build.yml,
publish-fdroid.yml, publish-play-store.yml, and documented in
publish-app-store.yml alongside the existing Sentry secrets).

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01NJKAQ6HAikWGQK7PGZ5Y4E
This commit is contained in:
engineer
2026-07-16 15:48:16 -07:00
parent a5723bf087
commit ace8c19816
14 changed files with 309 additions and 24 deletions

View File

@@ -1,19 +1,21 @@
/**
* Telemetry consent + initialisation gate.
*
* Wraps sentry.ts so that initSentry() is only called when the user has
* explicitly opted in. Consent state is persisted in expo-secure-store so
* it survives app restarts.
* Wraps sentry.ts AND analytics.ts so that initSentry()/initAnalytics() are
* only called when the user has explicitly opted in. Both crash reporting
* and activation-funnel analytics share this single consent flag — there is
* no separate toggle for analytics. Consent state is persisted in
* expo-secure-store so it survives app restarts.
*
* Usage:
* import { loadTelemetryConsent, setTelemetryConsent, hasTelemetryConsent } from './telemetry'
*
* // On app start — call BEFORE trying to initialise Sentry.
* // On app start — call BEFORE trying to initialise Sentry/analytics.
* const state = await loadTelemetryConsent() // 'granted' | 'denied' | 'unknown'
* if (state === 'granted') initSentry()
* if (state === 'granted') { initSentry(); initAnalytics() }
*
* // After the user taps "Allow" in the consent modal:
* await setTelemetryConsent(true) // persists + calls initSentry() if not already done
* await setTelemetryConsent(true) // persists + calls initSentry()/initAnalytics() if not already done
*
* // Check in Settings screen:
* const current = hasTelemetryConsent() // boolean | null (null = not yet decided)
@@ -21,6 +23,7 @@
import * as SecureStore from "expo-secure-store"
import { disableSentry, initSentry, sentryEnabled } from "./sentry"
import { initAnalytics, shutdownAnalytics, analyticsEnabled } from "./analytics"
const CONSENT_KEY = "opencode_telemetry_consent"
@@ -78,11 +81,13 @@ async function applyTelemetryConsent(granted: boolean): Promise<void> {
await SecureStore.setItemAsync(CONSENT_KEY, "granted")
_resolved = true
if (!sentryEnabled()) initSentry()
if (!analyticsEnabled()) initAnalytics()
return
}
_resolved = false
await disableSentry()
await shutdownAnalytics()
try {
await SecureStore.setItemAsync(CONSENT_KEY, "denied")
} catch (error) {