HTTPS Link Tracking in Customer.io

Customer.io partner logo

Table of Contents

Summarize this documentation using AI

This banner was added using fs-inject

Lorem ipsum dolor sit amet, consectetur adipiscing elit.

Overview

HTTPS link tracking in Customer.io is the difference between clicks that reliably land and clicks that get blocked, stripped, or flagged, especially in high intent flows like abandoned cart and replenishment. For D2C teams, it protects attribution (so you can trust which message drove revenue) and reduces friction at the moment someone is ready to buy.

If you want this configured alongside your domain setup, UTM standards, and deliverability guardrails, Propel can implement it end to end inside Customer.io and validate it against real purchase journeys, book a strategy call.

How It Works

HTTPS link tracking in Customer.io works by rewriting links in your emails to a trackable URL on a domain you control, then redirecting the shopper to the final destination while recording the click.

In practice, you set up a branded tracking domain (usually a subdomain like click.yourbrand.com), point DNS records to Customer.io, and Customer.io issues and manages the SSL certificate so links resolve over HTTPS. Once enabled, links in your emails route through that secure tracking domain, which helps avoid “Not secure” warnings and reduces the chance that email clients or security tools treat your links as suspicious.

For implementation specifics and how this connects to your sending domain strategy, we typically align it with your overall Customer.io deliverability setup so tracking, authentication, and reporting all match.

Step-by-Step Setup

HTTPS link tracking in Customer.io is quick to turn on, but it is worth doing carefully because one DNS mistake can break click tracking across your highest revenue campaigns.

  1. Choose a dedicated tracking subdomain (example: click.yourbrand.com). Avoid using your root domain, and do not reuse the same subdomain you use for your website or other tools.
  2. Confirm your sending domain plan (example: email.yourbrand.com for sending, click.yourbrand.com for tracking). Keeping them separate makes troubleshooting easier and reduces risk when you rotate vendors.
  3. Add the DNS records Customer.io provides for link tracking. This typically includes CNAME records that point your tracking subdomain to Customer.io infrastructure.
  4. Wait for DNS propagation (often minutes, sometimes hours). Plan this outside of peak send windows if you are changing anything existing.
  5. Enable HTTPS link tracking in your workspace once Customer.io verifies the domain and provisions SSL.
  6. Send a test email to multiple inboxes (Gmail, Outlook, iOS Mail). Click at least one link and confirm it resolves cleanly, stays HTTPS throughout, and lands with the right UTM parameters.
  7. Validate reporting by confirming clicks appear in message metrics and that your analytics platform attributes sessions and purchases as expected.

When Should You Use This Feature

HTTPS link tracking in Customer.io is most valuable when you rely on email clicks to drive measurable revenue and you cannot afford broken attribution or blocked redirects.

  • Abandoned cart recovery: cart and checkout links are the highest intent clicks you send. Secure, branded tracking reduces friction and improves confidence at the moment of purchase.
  • Post-purchase cross-sell: if you send “pairs well with” or “complete the routine” emails, you want clean attribution so you can double down on the offers that actually create second orders.
  • Reactivation: winback flows often go to older lists where spam filtering is stricter. HTTPS tracking on a branded domain can help keep links from looking sketchy.
  • Creator or affiliate drops: when you are measuring performance across multiple segments or campaigns, reliable click tracking keeps reporting clean when leadership asks, “Which send drove the spike?”

Scenario: A skincare brand runs a 3-step abandoned checkout sequence. Step 2 includes a deep link back to a prefilled checkout. After enabling HTTPS link tracking on click.brand.com and standardizing UTMs, the team sees fewer “link warning” complaints from Outlook users and cleaner purchase attribution in analytics, making it easier to justify increasing SMS spend only for the segments that do not click email.

Operational Considerations

HTTPS link tracking in Customer.io touches deliverability, analytics, and template operations, so treat it like infrastructure, not a campaign tweak.

  • UTM governance: decide whether UTMs are set globally or per message, and keep naming consistent (source, medium, campaign, content). Inconsistent UTMs will make “click tracking” look broken when it is really a taxonomy problem.
  • Multi-brand or multi-store setups: each brand should have its own tracking subdomain. Do not funnel multiple brands through one tracking domain unless you are intentionally consolidating reputation and reporting.
  • Redirect destinations: confirm links resolve correctly for both logged-in and logged-out shoppers, and that redirects do not drop query parameters (common with some storefront apps).
  • Security scanners and prefetch: some inbox providers and corporate filters “click” links to scan them. Watch for inflated click rates, then rely on downstream metrics like session quality and purchase conversion to judge performance.
  • Change management: if you ever change tracking domains, expect temporary reporting discontinuity. Document the cutover date so your reporting does not mix domains and confuse trend lines.

Implementation Checklist

HTTPS link tracking in Customer.io is considered done only when clicks, attribution, and shopper experience all match what your team expects.

  • Tracking subdomain selected (not shared with web hosting or another ESP)
  • DNS records added exactly as provided
  • SSL verified and HTTPS active on the tracking domain
  • Test sends completed across major inboxes
  • All key revenue links tested (PDP, collection, cart, checkout, account, subscription portal)
  • UTM parameters confirmed present and consistent after redirect
  • Click metrics visible in Customer.io reporting
  • Analytics and attribution validated with a test purchase

Expert Implementation Tips

HTTPS link tracking in Customer.io performs best when you pair it with disciplined measurement and a few deliverability habits that D2C teams often skip.

  • Use a “click” subdomain that matches brand expectations: in retention programs we’ve implemented for D2C brands, click.brand.com tends to earn fewer shopper trust issues than generic tracking-looking subdomains.
  • Validate deep links with real devices: in retention programs we’ve implemented for D2C brands, the most common “tracking problem” is actually a mobile redirect or app link handler that breaks query parameters and loses UTMs.
  • Focus on revenue per recipient, not click rate: once HTTPS tracking is stable, optimize flows based on conversion downstream. Security scanners can make click rate a noisy metric, especially for winback segments.

Common Mistakes to Avoid

HTTPS link tracking in Customer.io is straightforward, but a few execution mistakes can quietly undermine your reporting and revenue decisions.

  • Reusing the same subdomain across tools: mixing tracking domains between ESPs can create confusing redirects and reputation issues.
  • Turning it on without testing checkout links: cart and checkout URLs are where parameter loss hurts most. Always test with a real cart, not just a homepage link.
  • Assuming clicks equal intent: inflated clicks from scanners can lead you to over-credit a message. Cross-check with add-to-cart, checkout started, and purchase events.
  • Changing DNS during high-volume sends: even short propagation windows can cause broken links for thousands of recipients.

Summary

Use HTTPS link tracking when email is a meaningful revenue lever and you need reliable clicks and attribution across cart recovery, post-purchase, and reactivation. It is foundational infrastructure that makes optimization in Customer.io more trustworthy.

Implement with Propel

Propel sets up HTTPS link tracking, validates DNS and SSL, and pressure-tests your highest intent journeys inside Customer.io so clicks and revenue attribution stay clean. If you want it implemented quickly and correctly, book a strategy call.

Contact us

Get in touch

Our friendly team is always here to chat.

Here’s what we’ll dig into:

Where your lifecycle flows are underperforming and the revenue you’re missing

How AI-driven personalisation can move the needle on retention and LTV

Quick wins your team can action this quarter

Whether Propel AI is the right fit for your brand, stage, and stack