* As a starter: The source code is only a JS snippet. No HTML in there.
* Right away I "fullstory.com" appear in the JS. So I have reason to believe that all user interactions (mouse, keyboard, etc.) are uploaded to fullstory.com. Not sure this is actually the case. Certainly not in favour of it.
* In the network tab, I see requests to heapanalytics.io.
Setting aside the question if such data use is necessary, appropriate, or done elsewhere. I wonder if this is actually legal. I certainly did not consciously agree to my data being collected in this way and shared with third parties.
When you scroll down, you eventually see a Privacy Policy and TOS links in grey:
> By using this site you agree to the [Terms and Conditions] and the [Privacy Policy].
- Is a text like this actually effective?
- Am I violating EU law, if I use the same patterns in my Apps? (I am EU based.)