[Pkg-mailman-hackers] Bug#900648: mailman: Set SUBSCRIBE_FORM_SECRET per default to reduce subscription spam

Ralf Jung post at ralfj.de
Sun Jun 3 09:37:26 BST 2018


Hi,

> On Sun, June 3, 2018 10:15, Thijs Kinkhorst wrote:
>>> like 1500 messages per day per server.  Unfortunately mailman does not
>>> come with support for a CAPTCHA,
> 
> By the way, it does in fact come with support for CAPTCHA, but only since
> 2.1.26 which is in testing/buster.

Ah, good to know!  Thanks for pointing this out.

Unfortunately, that seems to be for reCAPTCHA only, which I don't consider
usable.  Not only does it expose my users to Google's tracking, it also actively
discriminates against people not having Google accounts as the CAPTCHA gets
harder when Google doesn't know you.  And of course it would require me as a
site admin to create a Google account, for which Google requires more data than
I am willing to provide (e.g. a working phone number).

Kind regards,
Ralf



More information about the Pkg-mailman-hackers mailing list