Discussions

Stay up-to-date with the latest news from NetSuite. You’ll be in the know about how to connect with peers and take your business to new heights at our virtual, in-person, on demand events, and much more.
Now is the time to ask your NetSuite-savvy friends and colleagues to join the NetSuite Support Community! Refer now! Click here to watch and learn more!
Update your Profile with your Support type to get your Support Type badge.
Don't miss out on our Pop Quiz You only have until October 31, 2025, 2:00PM ET to comment your answers and earn rewards! Click here for more details.
Uncover the power of data with the Analytics Hub —your ultimate guide to mastering NetSuite Saved Searches and Reports. Simplify the complex and unlock your organization's true potential. Dive into the Analytics Hub now and soar to new heights!
To help you get the most out of your 2025.2 Release Preview account, review the topics outlined in the 2025.2 Release Preview Guide.
Nominate Your Peers for NetSuite Support Community's Choice of the Quarter! Submit your nomination today.
Intelligent Payment Automation version 1.0.3 is now available in the SuiteApp Marketplace. The SuiteApp, powered by BILL, lets you automate payments, manage vendor details, and bank account information within NetSuite. Learn more

*** Screen-scrapers beware! ***

edited Sep 14, 2007 3:24PM in Web Site / E-Commerce 1 comment

Let me explain a problem I have seen several sites get themselves into by "screen-scraping" without fully understanding URL parameters.

"Screen scraping" is grabbing some HTML from NetSuite by viewing source, finding a snippet of HTML that appears to do something useful, then pasting that HTML back into a template or a hosted page.

The site I was investigating had a problem that every user who shopped at their site ended up sharing the same shopping cart. Eventually the cart had an astonishing 90 million items in it, valued at $10B! How could this happen?

It turns out that user had screen-scraped a personalized login URL from the source of their store, then pasted that into hosted HTML that everyone would see, and would forevermore use when logging in. Reusing an URL would generally be ok, except that this particular URL that they scraped happened to contain a personalized parameter that sets the shopping cart id to a specific cart, that user's cart. Thus every user who clicked login in their site assumed (and shared) that one cart! You can imagine how things went after that.

Howdy, Stranger!

Log In

To view full details, sign in.

Register

Don't have an account? Click here to get started!

Leaderboard

Community Whiz

Quarter 4 (Oct-Dec 2025)

This Week's Leaders

This Month's Leaders

All Time Leaders