We are exploring other options with the right balance between minimizing information leak and usability.
2 karma · joined August 22, 2018
We are exploring other options with the right balance between minimizing information leak and usability.
Typically this will be a few MBs for the default 10 minutes of history.
The typical critique (including the one you linked to) referring to the presence of scripts from multiple untrusted soutces doesn’t quite apply in this case because the encryption used isn’t really meant to protect against such scripts. Any script active on the page already has access to all the information RecapJS is gathering (and eventually encrypting) so there is no need for RecapJS to worry about them.
The only time RecapJs handles sensitive data that needs to br protected from third party access is during replay/playback. In this case the threat is mitigated by either hosting the player (which is a static web application) in a closed off network in the case of offline replay or by loading an audited piece of js in case of remote full session storage.
Regarding blurring: It’s just a visual layer on top. The actual content that is underneath the blurring layer is just some randomly generated data. If you are familiar with chrome debugger you can check it out for yourself. The actual data is never recorded when blurring is on.
Regarding console logging: It’s already supported! There is a panel on top right of the replayer UI that opens a panel at the bottom. This will show you a record of console logs as well as network logs. We’ll work on making it more discoverable.
Sorry that you are facing errors. Please send an email to hello@recapjs.com and we can sort it out for you.