Skip to content

Privacy

The feedback widget follows the same privacy approach as the tracker: no cookies for identification, minimal data, and explicit screenshot consent.

DataWhenPurpose
Rating, optional commentEvery submissionReview feedback
EmailOnly if the visitor enters it or via usertrax.identify()Follow-up / matching
Page URL, title, referrerAutomaticallySubmission context
Viewport, user agent, localeAutomaticallyDevice and language
Buffered JS errorsWhen presentReproduce bugs
Optional screenshot (PNG)Only after the visitor explicitly sharesVisual page context
IP addressServer-sideAbuse prevention (same as tracker)
session_idWhen a tracker session existsJourney and channel context
  • No tracking cookies and no local storage for identification by the widget itself
  • No screenshot without user action — the browser shows the Screen Capture API share dialog
  • No automatic recording of keystrokes, form fields, or passwords

Screenshots use the browser Screen Capture API. The visitor must click Add a screenshot and share their tab. Cancelling the dialog submits feedback without an image.

Avoid showing sensitive data in the viewport on pages where the widget is embedded — a screenshot could capture it.

For the cookieless feedback widget alone you typically do not need a cookie banner. It sets no cookies. Still review your full stack (analytics, ads, other scripts) and your counsel’s requirements.