Skip to main content
See also Sensitive data masking, which detects and masks clear-text data — including keystrokes and clipboard data — on Windows Clients based on custom regex patterns.

Keystroke logging

Keystroke logging helps detect malicious insiders and protect sensitive data on endpoints. Combine it with keyword-triggered monitoring to record activity only when a suspicious keyword is typed. To support compliance with privacy laws and regulations like GDPR:
  • Logged keystrokes are hidden by default in the Session Player and in reports — they’re searchable, and alerts can trigger on specific keywords typed, but the raw keystrokes themselves aren’t displayed.
  • Keystrokes are encrypted in the MS SQL Server or PostgreSQL database using the Syteca master certificate generated at installation — anyone with direct database access can’t read them.
To enable displaying keystrokes in the Session Player and in reports, contact the Syteca Support team.

Password masking

During monitoring, the Client detects passwords using a regular expression and masks any match with asterisks before it’s sent to the Application Server — masked passwords are never transmitted or stored in clear text.
To change the default password-detection regular expression to match your organization’s password policy, contact the Syteca Support team.

Keystroke logging parameter

Enable and configure keystroke logging.

Sensitive data masking

Mask custom sensitive data patterns beyond passwords.

Master certificate

The certificate used to encrypt keystroke data.

Alerts

Trigger notifications on specific keystroke patterns.