Stored data
The feedback widget sets no cookies for identification. It only stores what the submission needs and asks for explicit consent before screenshots.
What is stored
Section titled “What is stored”| Data | When | Purpose |
|---|---|---|
| Rating, optional comment | Every submission | Review feedback |
Required — entered by the visitor or set via usertrax.identify() | Follow-up / matching | |
| Page URL, title, referrer | Automatically | Submission context |
| Viewport, user agent, locale | Automatically | Device and language |
| Buffered JS errors | When present | Reproduce bugs |
| Optional screenshot (PNG) | Only after the visitor explicitly shares | Visual page context |
| IP address | Server-side | Abuse prevention (same as tracker) |
session_id | When a tracker session exists | Journey and channel context |
What is not stored
Section titled “What is not stored”- No tracking cookies and no local storage for identification by the widget itself
- No screenshot without user action — the browser shows the Screen Capture API share dialog
- No automatic recording of keystrokes, form fields, or passwords
Screenshot consent
Section titled “Screenshot consent”Screenshots use the browser Screen Capture API. The visitor must click Add a screenshot and share their tab. Cancelling the dialog submits feedback without an image.
Avoid showing sensitive data in the viewport on pages where the widget is embedded — a screenshot could capture it.