will
Member of DD Central
Posts: 98
Likes: 57
|
Post by will on Mar 21, 2017 10:51:36 GMT
savingstream Paul64The reason for the captcha is to stop bots snapping up loans before anyone else can get their hands on them. Surely, when you have a loan that's been available on the SM for the last week you don't need to be checking whether it's a bot buying up a part of that loan? Can I make a suggestion that the captcha is only required when someone tries to buy part of a loan that's been available for less than 5 / 10 / 30 / 60 seconds (Take your pick). This would eliminate snap buying from bots and create a lot less frustration for real users. Discuss.
|
|
cooling_dude
Bye Bye's for the PPI
Posts: 2,853
Likes: 4,298
|
Post by cooling_dude on Mar 21, 2017 10:56:43 GMT
savingstream Paul64 The reason for the captcha is to stop bots snapping up loans before anyone else can get their hands on them. Surely, when you have a loan that's been available on the SM for the last week you don't need to be checking whether it's a bot buying up a part of that loan? Can I make a suggestion that the captcha is only required when someone tries to buy part of a loan that's been available for less than 5 / 10 / 30 / 60 seconds (Take your pick). This would eliminate snap buying from bots and create a lot less frustration for real users. Discuss. Google ReCaptcha has not settings to tweak, it is a code that you implement - WYSIWYG The problem is Google ReCaptcha has been designed for one-time operation (sign up, downloads etc) so determines you as a BOT on the SS site simply because of repetitive use. It is not ideal, but there are few (maybe none) alternatives to battle the bots
|
|
|
Post by portlandbill on Mar 21, 2017 11:04:56 GMT
If the loan has been available for a while, does it matter if you have to do a captcha?
|
|
ilmoro
Member of DD Central
'Wondering which of the bu***rs to blame, and watching for pigs on the wing.' - Pink Floyd
Posts: 11,329
Likes: 11,549
|
Post by ilmoro on Mar 21, 2017 11:32:16 GMT
If the loan has been available for a while, does it matter if you have to do a captcha? Wouldnt if it was a captcha. When it is five or six in a row and its impossible to pass them, which I seem to be finding more and more with these select all the images showing ... ones, then its not serving its purpose and has become a negative for the platform. (I very rarely buy on the SM these days so cant be due to repeat purchases)
|
|
|
Post by portlandbill on Mar 21, 2017 11:41:39 GMT
hmmm, i never seem to get more than 1 at a time, and that's only occasionally. so it's not an issue for me unless i'm in an FFF scenario
|
|
adrianc
Member of DD Central
Posts: 10,015
Likes: 5,144
|
Post by adrianc on Mar 21, 2017 11:57:54 GMT
Google ReCaptcha has not settings to tweak, it is a code that you implement - WYSIWYG I'm not sure that's true. I get MUCH harder recaptchas on SS than I do on other non-financial sites.
|
|
will
Member of DD Central
Posts: 98
Likes: 57
|
Post by will on Mar 21, 2017 12:12:57 GMT
Google ReCaptcha has not settings to tweak, it is a code that you implement - WYSIWYG The problem is Google ReCaptcha has been designed for one-time operation (sign up, downloads etc) so determines you as a BOT on the SS site simply because of repetitive use. It is not ideal, but there are few (maybe none) alternatives to battle the bots The widget can be rendered / not rendered to the page based on a condition. I'm not suggesting tweaking the captcha itself.
|
|
cooling_dude
Bye Bye's for the PPI
Posts: 2,853
Likes: 4,298
|
Post by cooling_dude on Mar 21, 2017 12:55:57 GMT
Google ReCaptcha has not settings to tweak, it is a code that you implement - WYSIWYG The problem is Google ReCaptcha has been designed for one-time operation (sign up, downloads etc) so determines you as a BOT on the SS site simply because of repetitive use. It is not ideal, but there are few (maybe none) alternatives to battle the bots The widget can be rendered / not rendered to the page based on a condition. I'm not suggesting tweaking the captcha itself. True - but when you start adding conditions, you create the possibility of back doors for clever people to create clever bots For example, there was (possibly still is...) a little-known quirk where completing the Google ReCaptcha on one loan was universal.
|
|
cooling_dude
Bye Bye's for the PPI
Posts: 2,853
Likes: 4,298
|
Post by cooling_dude on Mar 21, 2017 13:00:12 GMT
Google ReCaptcha has not settings to tweak, it is a code that you implement - WYSIWYG I'm not sure that's true. I get MUCH harder recaptchas on SS than I do on other non-financial sites. I've played around with Recaptcha quite a bit, and it is simply a code - there are no settings at all. There will be environmental conditions from site to site that will alter how the Recaptcha acts, as well as user interaction
|
|
will
Member of DD Central
Posts: 98
Likes: 57
|
Post by will on Mar 21, 2017 13:47:29 GMT
True - but when you start adding conditions, you create the possibility of back doors for clever people to create clever bots For example, there was (possibly still is...) a little-known quirk where completing the Google ReCaptcha on one loan was universal. As long as the server knows that a recaptcha token is expected then it can ensure it's received one and verify it. This stuff isn't rocket science! Were SS allowing the same ReCaptcha token to be verified multiple times for different loan purchases?
|
|
twoheads
Member of DD Central
Programming
Posts: 1,089
Likes: 1,192
|
Post by twoheads on Mar 21, 2017 15:01:13 GMT
Google ReCaptcha has not settings to tweak, it is a code that you implement - WYSIWYG I'm not sure that's true. I get MUCH harder recaptchas on SS than I do on other non-financial sites. I have to disagree on this. I find that recaptchas on other sites have become more difficult in sync with those I have to solve on the SS site.
I regularly sign in to a KLM account which has needed a recaptcha for the last couple of years. Since using the SS SM (starting Sept 2016) with many, many recaptchas becoming increasingly difficult, I have seen exactly the same increase in difficulty for my KLM logins - and the frequency of the KLM logins has remained absolutely stable for several years due to my regular work commitments.
What I also have seen is that if I try on a 'clean' machine, little used before, then the recaptchas seem to start easy. Either some recaptcha usage information is stored locally on each PC, or something unique to the computer (a possible example being the MAC address of network adapter) is stored by Google to keep track of recaptcha usage per machine. Somewhere a record is held. If it's local it can be reset with enough ingenuity. If it's stored remotely then one would need to discover the mechanism used to identify the machine making the request and circumvent this mechanism (probably more ingenuity required).
Sporadically, I try and research ways to 'reset' the behaviour just to save the general ball-ache of palm trees, rivers, mountains, patios etc. I've had no luck so far.
|
|
|
Post by GSV3MIaC on Mar 21, 2017 15:39:55 GMT
I'm sure SS could avoid asking for (and then verifying) a recaptcha token for some loans deemed 'not worth squabbling over', but it would be extra website coding work, and they probably have better things to investigate (like the £x.xx of ghost loan parts in the sale queues of various loans).
|
|
guff
Posts: 730
Likes: 707
|
Post by guff on Mar 21, 2017 17:17:54 GMT
I'm sure SS could avoid asking for (and then verifying) a recaptcha token for some loans deemed 'not worth squabbling over', but it would be extra website coding work, and they probably have better things to investigate (like the £x.xx of ghost loan parts in the sale queues of various loans). Gosh! Is that still an issue?
|
|
fasty
Member of DD Central
Posts: 1,038
Likes: 388
|
Post by fasty on Mar 21, 2017 17:38:12 GMT
I'm really bored of road signs. I always get captcha request, without exception.
|
|
guff
Posts: 730
Likes: 707
|
Post by guff on Mar 21, 2017 17:43:08 GMT
I'm really bored of road signs. I always get captcha request, without exception. Bet you've never had this one...
|
|