<?xml version="1.0" encoding="UTF-8"?> 
<?xml-stylesheet href="https://dev.horde.org/themes/horde//default/feed-rss.xsl" type="text/xsl"?> 
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"> 
 <channel> 
  <title>Optional CAPTCHA support for the compose window</title> 
  <pubDate>Sun, 05 Apr 2026 23:42:09 +0000</pubDate> 
  <link>https://bugs.horde.org/ticket/14263</link> 
  <atom:link rel="self" type="application/rss+xml" title="Optional CAPTCHA support for the compose window" href="https://bugs.horde.org/ticket/14263/rss" /> 
  <description>Optional CAPTCHA support for the compose window</description> 
 
   
   
  <item> 
   <title>There have been times where our webmail installation has bee</title> 
   <description>There have been times where our webmail installation has been targeted by distant IPs trying to send spam email using compromised user accounts. Of course a big part of preventing this from happening is educating our users on password safety, expiring weak passwords in favor of newer, stronger passwords, etc. We&#039;re working hard on that, but until the time where our users passwords are 100% strong, safe, and secure (i.e. never), we&#039;d appreciate additional tools to help prevent or at least mitigate these risks.

One of the options that came to mind was CAPTCHA support for the IMP compose window. We&#039;re not 100% sure these attacks have been bot-based, but if only for peace-of-mind we&#039;d like to be able to enable CAPTCHAs (maybe through Administration &gt; Configuration) during those times when we feel we&#039;re being targeted. My initial preference would be for Google ReCAPTCHA support, but other options might be just as good or better. My needs are only for the IMP compose window, but I suppose other apps could make use of similar functionality if this was provided by the Horde core.</description> 
   <pubDate>Fri, 19 Feb 2016 13:55:41 +0000</pubDate> 
   <link>https://bugs.horde.org/ticket/14263#t90043</link> 
  </item> 
   
  <item> 
   <title>We already use CAPTCHAs in other applications for forms that</title> 
   <description>We already use CAPTCHAs in other applications for forms that are publicly accessible without authentication. Requiring CAPTCHAs for such common actions like writing email messages, even though you are already authenticated, is a major pain IMO. We already implemented a bunch of features to limit the impact of spammers gaining access to a valid email account, like rate and recipient limits.</description> 
   <pubDate>Tue, 08 Mar 2016 10:23:46 +0000</pubDate> 
   <link>https://bugs.horde.org/ticket/14263#t90124</link> 
  </item> 
   
  <item> 
   <title>This is true, but if Horde already has a mechanism for CAPTC</title> 
   <description>This is true, but if Horde already has a mechanism for CAPTCHAs, then I wonder how difficult it would be to add support for this as just another safety net.</description> 
   <pubDate>Tue, 08 Mar 2016 14:39:21 +0000</pubDate> 
   <link>https://bugs.horde.org/ticket/14263#t90138</link> 
  </item> 
   
   
 
 </channel> 
</rss> 
