diff --git a/src/extensions/replay/config.ts b/src/extensions/replay/config.ts
index 5181c60c1..df1ca92ab 100644
--- a/src/extensions/replay/config.ts
+++ b/src/extensions/replay/config.ts
@@ -75,7 +75,7 @@ const PAYLOAD_CONTENT_DENY_LIST = [
     'mysql_pwd',
     'privatekey',
     'private_key',
-    'tokenconst',
+    'token',
 ]
 
 // we always remove headers on the deny list because we never want to capture this sensitive data