Since the script is just pasted into the head of our code, that is client side information thus a potential to be copied and misused. I have read a lot on your website about how you protect privacy and data security on your platform but nothing regarding the actual code snippet.
Hi
- First, create a metric grouped by URL Host to monitor domains captured in your FullStory account. Here’s a short video that walks you through this!
- If you see any domains that shouldn’t be there, update your Data Capture settings to block them.
- After they’re blocked, FullStory’s Support Team can help with deleting any sessions captured from the rogue domain.

Hi
As Megan noted this isn’t a common issue but limiting the capture to specific domains will give you the confidence that the script won’t run if deployed maliciously.
Reply
Enter your username or e-mail address. We'll send you an e-mail with instructions to reset your password.