Web Analytics Company, RudderStack, Accidentally Collecting Passwords
RudderStack is an open source data collection and routing tool. It collects data from your website with a bit of Javascript and allows you to send it to different tools like a database or 3rd party analytics tool. Three months ago, I reported a serious issue where under certain circumstances, RudderStack will collect passwords.The specific issue is that their autotrack feature collects every DOM attribute of any element a user clicks on:{% c-block language="js" %}const attrLength = elem.attribut...
Read more at freshpaint.io