Ask DN: Captchas

almost 7 years ago from Raphael Loder

  • Erik BeesonErik Beeson, almost 7 years ago

    I feel you. The whole premise of captchas is broken.

    Spammers/scammers leverage cheap human labor, so "verify that you're human" is absolutely meaningless for preventing abuse.

    Verify email address by requiring a link be followed out of an email you send (double opt-in). Rate limit submissions to prevent abuse. Anything less than that is cutting corners in ways that's asking for abuse.

    Every project that I've worked on where management rejects requiring email (or phone) verification has always ended up being abused in one way or another.

