Captcha Features
Determine the protection level
CAPTCHA FEATURES IN DETAIL
More protection!
POWER CAPTCHA continuously checks whether access is authorized – whether by humans or bots. Depending on your license, you can adjust the protection behavior of POWER CAPTCHA yourself and thus define the security level and usability factors to protect your forms and login areas. The Enterprise version also offers a 2-factor solution via email for barrier-free access. The no-captcha setting also protects your site without a captcha display. Find out more about the captcha features in detail in our setting examples.
SYSTEM DESCRIPTION
Every interaction with POWER CAPTCHA generates an encrypted code (client footprint), which POWER CAPTCHA evaluates and remembers. For further interactions, we will increase the level of difficulty of the solution, for example, or reject further interactions for a defined period of time. You can find a system description with more details in our free white paper.
How to protect your forms
You can customize the protection of your forms to suit your needs and set the security level yourself. The setting options depend on your POWER CAPTCHA plan. The following examples show some of the possible settings for the Enterprise license.
Example 1: Limit the transmission of data via an IP address / the client footprint:
- Display a captcha directly on the first transmission attempt.
- If the IP address/client footprint is used a second time within 30 minutes, you could block the IP address for one hour, for example.
Example 2: Limit the use of email addresses in 3 stages:
- First use within 48 hours: no captcha will be displayed.
- Second use: a captcha with 4×4 solutions is displayed; if the solution is wrong, the difficulty level can be increased to 6×6/8×8, etc.
- Third use: is rejected
How to protect your login areas
To protect your login areas from unauthorized access, you can set the protection behavior of POWER CAPTCHA (as part of the Enterprise plan) as follows:
Example 1: Limit access via the IP address / client footprint:
- E.g. set a maximum of 10 login attempts within one hour and block them for 30 minutes after exceeding the limit.
Example 2: Limit login attempts via the user name:
- Set that e.g. a maximum of two login attempts are allowed within 24 hours per user.
- Alternatively, you can limit the number of incorrect password entries per user and hour and allow e.g. a maximum of three incorrect entries.
- You can also limit the number of login attempts using a combination of user name and client footprint.
CAPTCHA SETTINGS
Determine the protection level
SECURITY LEVEL
What difficulty level should the displayed captcha have? When should the complexity be increased?
BLOCKING TIME
How long should users remain blocked in the event of a blocking time?
OBSERVATION
After what monitoring period should POWER CAPTCHA reset the user’s previous events?
USABILITY
After how many interactions should a captcha be displayed for the first time?
CUSTOM ACTIONS
Example: what should happen in the event of a lock time? If you have a different requirement than the standard message, please contact our sales department.
ACCESSIBILITY
Activate the integrated 2-factor solution for barrier-free access to your protected area.
No Captcha Setting
With the No Captcha setting, the data is transmitted and checked in the background, invisible to users. This means that you use the security mechanisms of POWER CAPTCHA (e.g., limiting login attempts per hour) without a captcha image being displayed.
How to use POWER CAPTCHA as a no captcha solution:
Limit the number of permitted requests from users/bots (per website or domain). If the limit you set is exceeded, you can – depending on your strategy – trigger various follow-up actions, e.g.
- Display of a corresponding notice
- Display of a captcha
The open programming allows you to make individual adjustments by your own developers.
For example, you could delay requests (extending the response time of POWER CAPTCHA) or trigger a real-time alert (e.g. via e-mail).
Accessibility
Use POWER CAPTCHA’s e-mail authentication for barrier-free access! Simply click on the button “Access code via e-mail”.
POWER CAPTCHA then sends you an access code via e-mail, which you can enter in the verification mask instead of the captcha solution. Try out the feature in our demo!
PROTECT YOUR WEBSITE
Get started with POWER CAPTCHA
You want to use POWER CAPTCHA on your website? Then get your license here and follow our step-by-step instructions.