>>> On 10/15/2007 at 11:00 AM, David Hucklesby <[EMAIL PROTECTED]>
wrote:
| Hi Ann,
| 
| You asked:
| 
|> How about this feedback form?
|> http://www.thesitewizard.com/wizards/feedbackform.shtml 
|>
| 
|  From the sample page, it looks very "old school" - tables and font
| tags.  :(
Yeah, I did my own formatting.

| The other forms mentioned use a technique to defeat spam that
| has a "dummy" field that lead spam bots to fill it in, but humans
| will not. This has proven pretty effective at reducing spam. The
| form you refer to does not have this feature.
Ah, good point. Thanks for pointing this out! This would reduce or
eliminate spam to the site administrator, wouldn't it. Don't know why I
didn't consider that sooner. Thanks.
 
| On other thing you need to guard against - so-called "injection
| attacks." This is quite hard to guard against, but is taken care
| of in Wufoo and in Mike Cherim's solution. I did not look at the
| code in the site you referenced, so cannot advise you on that.
This, actually, was what led me to the sitewizard feedback form. It is
specifically set up to defeat injection attacks, which I was having at
the time.
 
| Cordially,
| David
| --
Thanks for the comments.
--
AnnR
--
______________________________________________________________________
css-discuss [EMAIL PROTECTED]
http://www.css-discuss.org/mailman/listinfo/css-d
List wiki/FAQ -- http://css-discuss.incutio.com/
List policies -- http://css-discuss.org/policies.html
Supported by evolt.org -- http://www.evolt.org/help_support_evolt/

Reply via email to