5 ms·
On my 50k monthly UU side-project, I used this to eliminate a vast majority of spam submissions: > $.post($(this).attr('action') + '?nospam=1' (skipping proce
by admissionsguy 2y ago
On my 50k monthly UU side-project, I used this to eliminate a vast majority of spam submissions:
> $.post($(this).attr('action') + '?nospam=1'
(skipping processing but returning a success response when nospam is absent, so I guess it counts as an honeypot)
I also blacklisted the words cialis and viagra.
What remained were serial submissions from pen-testers who then sent emails begging for money, so I implemented a one-click removal of all submissions from an ip range.
That's after Cloudflare's regular WAF.
Not much effort, so I guess it's only an issue if it gets exponentially worse with increased traffic (which it probably does).
I would never use a CAPTCHA though, not my philosophy to outsource effort to the user.