Closed (cannot reproduce)
Project:
SpamSpan filter
Version:
6.x-1.x-dev
Component:
Code
Priority:
Normal
Category:
Feature request
Assigned:
Unassigned
Reporter:
Created:
21 Apr 2009 at 15:36 UTC
Updated:
17 Nov 2014 at 20:55 UTC
Jump to comment: Most recent
Comments
Comment #1
lakka commentedA couple of questions. (1) What would happen if javascript was disabled/how would users without JS read this? (2) What do you mean by "the variable could just be defined in the node body"?
L
Comment #2
peterx commentedThe safest approach is to link to a form.
If you cannot link to a form, you are open to hacking by the classier hackers who use Drupal for their Web sites and know about this module. Anything in this module can be reverse engineered by the hackers. They have more time than us and more incentive.
Consider the other problems with fake domains. Your visitors will see the incorrect domain name and think your page is hacked. Intelligent visitors would not use a link to an address that is not your domain. Intelligent anti virus software should pick up the same error and blacklist your site. Google will toss your site in the bad bin.
Comment #3
peterx commentedClosing this issue due to no feedback for 6 years and no D6 maintainer. D7 users can use a form for completely safe email links.