ControlShift + Friendly Captcha
Be sure to use Friendly Captcha securely
If you’re subject to the EU GDPR, you’ll need to evaluate the compliance of Friendly Captcha separately from your Data Processing Agreement with us. Friendly Captcha is not an authorized GDPR subprocessor under our agreement with you.
Introduction
Friendly Captcha is used to secure webforms and protect sites from fraudulent use. Most people have probably interacted with a captcha at some point. If you've ever been asked to type a a slightly distorted alphanumeric code or choose all images of bridges, bikes, buses, etc. before submitting a webform, you were completing a captcha challenge. These challenges are aimed at preventing bots and other malicious activities.
The most popular captcha provider is Google via their free reCAPTCHA tool. However, because the captcha challenges are provided by Google, some have raised data privacy concerns. Friendly Cap claims to be a "Privacy-First Bot Protection" solution, so it may be of interest to organizations subject to GDPR or other privacy legislation.
We recommend using a captcha service as a security best practice, though each organization will need to clarify any privacy requirements for their local context.
Connecting with Friendly Captcha
To connect with Friendly Captcha, you'll need to create a Friendly Captcha API key that you'll pair with the site key. Once you've gotten those keys, log into ControlShift and go to the org admin homepage > Settings > Integrations > Friendly Captcha and click Add.
Once you've entered your information, click Save. Then click to Verify and you'll be all set.
Depending on your context, you may need to update your privacy policy and/or terms of service to cover your use of Friendly Captcha. If you're not sure, we recommend seeking legal advice.