Skip to main content
Sniperssite
Participant
September 17, 2022
Question

form is not secure and autofill is turned off

  • September 17, 2022
  • 6 replies
  • 2247 views

form is not secure and autofill is turned off.. only in crome??? Fix??

 

    This topic has been closed for replies.

    6 replies

    Liam Dilley
    Inspiring
    September 26, 2022

    Firstly I have to say I am sorry for the comments here and especially from some Adobe Profesionals. The comments have been quite attacking on the site and what your doing and while your initial post was way too short after you posted your link I do not think many of the comments are called for.

    In terms of providing actual information for you while outside of the DW thread base but valid web based....

     

    Chrome introduced the feature to help protect users and the warning for sites and forms was forced in October of last year. It can be for many reasons - NOT JUST FOR what people have said here and you can google a list of those.

    You have an SSL but the form post action is not set correctly. Mailto needs an email and sending that information from a form via email has 2 main problems.

    1. Security

    2. Size - You would not recieve all emails due to the attachments.

     

    Trying to start a new business or step into the web to expand a business is challenging and initially costly. In saying that though the site will not attract many people or entice anyone to fill in those forms regardless of the security. It does not look like a modern website, inviting or something people would trust.
    You should look to use a form service or save to server securly or just something like JotForms to get that data sent and stored safely.
    Check with what legal requirements for your business and country in terms of what you are doing to ensure you have things like privacy policies and data safety all in place.
    But there are many website building tools and services you can use that are low cost that would give you SSL's, secure forms and a more enticing website so it is worth looking into those.

    BenPleysier
    Community Expert
    Community Expert
    September 26, 2022
    quote

    Firstly I have to say I am sorry for the comments here and especially from some Adobe Profesionals. The comments have been quite attacking on the site and what your doing and while your initial post was way too short after you posted your link I do not think many of the comments are called for.

    In terms of providing actual information for you while outside of the DW thread base but valid web based....

     

    Chrome introduced the feature to help protect users and the warning for sites and forms was forced in October of last year. It can be for many reasons - NOT JUST FOR what people have said here and you can google a list of those.

    You have an SSL but the form post action is not set correctly. Mailto needs an email and sending that information from a form via email has 2 main problems.

    1. Security

    2. Size - You would not recieve all emails due to the attachments.

     

    Trying to start a new business or step into the web to expand a business is challenging and initially costly. In saying that though the site will not attract many people or entice anyone to fill in those forms regardless of the security. It does not look like a modern website, inviting or something people would trust.
    You should look to use a form service or save to server securly or just something like JotForms to get that data sent and stored safely.
    Check with what legal requirements for your business and country in terms of what you are doing to ensure you have things like privacy policies and data safety all in place.
    But there are many website building tools and services you can use that are low cost that would give you SSL's, secure forms and a more enticing website so it is worth looking into those.


    By @Liam Dilley

     

    What is different to what you are saying here and what I have been saying regarding emailing personal informattion. I do not apologise for making the statement under the name of security. At least I did not criticise the website.

    Wappler is the DMXzone-made Dreamweaver replacement and includes the best of their powerful extensions, as well as much more!
    Legend
    September 19, 2022

     

     


    @Sniperssite wrote:

    form is not secure and autofill is turned off.. only in crome??? Fix??

     



    This is to do with trying to process your form in an unsecure way by using an email address in the forms 'action' field - 'mailto:https://XnfX@fXndXtoXe.Xom'  (Ive X'd the email to stop spam)

     

    You should use a server side process such as php/node to process the form. 

     

    It looks like your actual website is protected by a SSL certificate.

    Nancy OShea
    Community Expert
    Community Expert
    September 19, 2022
    quote

    It looks like your actual website is protected by a SSL certificate.


    By @osgood_

    ========

    Protected is a relative term.  How much encryption and insurance does one get from a zero-cost, 90-day ACME certificate?  I mean something is better than nothing.  But I wouldn't run a business on this.

     

    Nancy O'Shea— Product User & Community Expert
    Legend
    September 20, 2022
    quote
    quote

    It looks like your actual website is protected by a SSL certificate.


    By @osgood_

    ========

    Protected is a relative term.  How much encryption and insurance does one get from a zero-cost, 90-day ACME certificate?  I mean something is better than nothing.  But I wouldn't run a business on this.

     


    By @Nancy OShea

     

    There is nothing wrong with free certificates for websites which just request general information such as name, email, enquiry. 

     

    If its more sensitive information such as medical records anything to do with finance etc then one should invest in an upgrade SSL certificate.

     

    Personally l think the need for a SSL certificate for low grade information is bonkers anyway. We all share that kind of information liberally anyway in profile's and directories which can be found all over the Internet.

    BenPleysier
    Community Expert
    Community Expert
    September 19, 2022

    You are asking people to email personal details. This is most irresponsible. Thank goodness for Chrome for pointing this out.

     

    It angers me, the fact that cowboys are allowed to develop websites with this type of insecurity.

     

    The only way to handle personal information is to process the form on a secure server. 

    Wappler is the DMXzone-made Dreamweaver replacement and includes the best of their powerful extensions, as well as much more!
    Community Expert
    September 19, 2022
    quote

    You are asking people to email personal details. This is most irresponsible. Thank goodness for Chrome for pointing this out.

     

    It angers me, the fact that cowboys are allowed to develop websites with this type of insecurity.

     

    The only way to handle personal information is to process the form on a secure server. 


    By @BenPleysier

     

    That's actually a really cool feature. I wish all browsers had this.  

    Nancy OShea
    Community Expert
    Community Expert
    September 17, 2022

    What's the URL to your site where you're seeing this problem?

     

    Nancy O'Shea— Product User & Community Expert
    Sniperssite
    Participant
    September 19, 2022

    fundstome.com

    I have ssl cert

    Nancy OShea
    Community Expert
    Community Expert
    September 19, 2022

    As others have you said, your form is not secure. DO NOT USE.

    It's irresponsible to transmit sensitive data by email and expect it to be protected.

     

    If you can't code, and I suspect you can't, use a secure form from a 3rd party service like Wufoo or JotForm.

    https://www.wufoo.com/

    https://www.jotform.com/

     

    Nancy O'Shea— Product User & Community Expert
    Community Expert
    September 17, 2022

    Why is your form not secure? Are you missing an SSL certificate? Contact your host.

    Sniperssite
    Participant
    September 19, 2022

    yes i have ssl cert

    BenPleysier
    Community Expert
    Community Expert
    September 17, 2022

    Don't use crome

    Wappler is the DMXzone-made Dreamweaver replacement and includes the best of their powerful extensions, as well as much more!
    Liam Dilley
    Inspiring
    September 26, 2022

    As a Community expert this is not really called for. You should at least provide some context if you do not recomend chrome, suggest others for example like Brave and explain to the person asking for help.

    Nancy OShea
    Community Expert
    Community Expert
    September 26, 2022

    @Liam Dilley 

    Well the OP said, it only happens in crome [sic].  😁

     

    PATIENT: Doctor, doctor, it hurts when I do this...

    DOCTOR: Then stop doing that.

     

    Nancy O'Shea— Product User & Community Expert