After you’ve enabled session replay, go through the following list to make sure all your Heap settings are configured correctly.
1. Set your CSP directives
This step requires changes to your website’s code.
Content Security Policies (CSPs) are a “trusted list” of content providers for a website. These directives prevent malicious actors from attacking your website, but it can interfere with session replay unless properly configured.
See the Additional CSP directives for session replay for the specific CSP directives you should include to make sure session replay works. If you are unfamiliar with this topic, we recommend that you ask a technical member of your team for help.
2. Configure firewall settings
Allow ports 80 (HTTP) and 443 (HTTPS) and the following IP addresses to prevent your proxy, firewall, or server configuration from blocking the crawler.
52.18.162.157
20.75.90.236
100.24.76.90
34.192.98.148
20.67.250.109
54.247.44.196
52.51.9.12
35.72.153.38
35.73.99.41
3. Review session replay privacy settings
Navigate to Account > Manage > Replay & Heatmaps and review your selections. By default, the most conservative settings are selected. Note that if you keep the default settings, no form inputs will be captured.
Many of our customers will instead opt to enable some inputs to be captured, then choose specific elements to exclude.
Troubleshooting
If your replays are not rendering correctly after you have gone through the list above, check out these troubleshooting tips for additional settings that may be hindering the session replay web crawler.