Active
Project:
OpenID
Version:
master
Component:
OpenID Client
Priority:
Normal
Category:
Feature request
Assigned:
Unassigned
Reporter:
Created:
11 Sep 2007 at 14:53 UTC
Updated:
23 Nov 2007 at 16:22 UTC
Jump to comment: Most recent
It would be nice to have an option to include Bot Bouncer (http://botbouncer.com/site/documentation) with the OpenID module, so when a user first logs in, it checks with Bot Bouncer that they have confirmed a CAPTHA with their service. An options page should be provided to add the API key
Comments
Comment #1
Anonymous (not verified) commentedAgreed, I would like to see Bot Bouncer support. It seems like the most appropriate solution combining ease of signups vs the inevitable spammers that OpenID will eventually attract.
Actually, what would be really fantastic would be a Whitelist of "trusted" OpenID providers and then if a provider does not match that list, Bot Bouncer comes into play. So no provider gets truly blacklisted, but non-repeating CAPTCHAs are used (via Bot Bouncer) if they aren't recognized. This would nullify any spammers via anonymous providers without being too cumbersome on the legitimate users.