Announcement

#1 2009-11-21 02:54:46

MarkPrima
Member
Ontario, Canada
2009-11-21
7

Comment security

Hello everyone,
I am new here and trying out Piwigo for my United Way charity photography, a great part of my work is done for charity.
i like the script very much the installer works terrific but I have one concern and that is the comments. I have read where it is possible to have html in the comment, to me this should be filtered out/not allowed. I see that so much work went into details for this script but I am VERY surprised that the ability to post comments with no captcha is not part of the script.
Does anyone experience alot of spam via the comments?

Offline

 

#2 2009-11-21 09:31:55

plg
Piwigo Team
Nantes, France, Europe
2002-04-05
13786

Re: Comment security

Hello MarkPrima and welcome in Piwigo community :-)

HTML in the comment? Did you give a try and confirm? http://piwigo.org/demo/picture.php?/550/list/550 look at my comment.

There is indeed no captcha available in Piwigo core, and neither in any plugin as far as I remember. But we have some methods to prevent spam:

* comments can be moderated before they appear in the gallery
* robots will have to understand the trick in the form, there are some protections to prevent robots from adding comments
* akismet can be activated as a plugin
* anti-flooding (a visitor can't post twice in less than N seconds)

Offline

 

#3 2009-11-21 10:35:54

VDigital
Former Piwigo Team
Paris (FR)
2005-05-04
17680

Re: Comment security

Hi MarkPrima,
In one hand, I understand why you are making such query, in the other hand I should say you did not test Piwigo.

plg is right. Our demo is protected more than default, by:
$conf['comment_spam_max_links'] = 1;
and [extension by rvelices] RV Akismet.

Many people are afraid by comments and test them on our demo.
Because it is a demo, we let all comments open without validation.
People thinks a comment system without captcha is no efficient at all againt spam.
Let me think they are missing something: they did not test Piwigo.

Look at plg's comment: What a <strong>strong</strong> city!

So what is your problem?
We had some issues on comments but currently I don't think you could have some.
Please try Piwigo first and give us your real feedback.


Piwigo.com: Start and run your own photo gallery. Signup and get 30 days to try for free, no commitment.
8-)

Offline

 

#4 2009-11-21 21:03:32

MarkPrima
Member
Ontario, Canada
2009-11-21
7

Re: Comment security

I apologize, I should have done more testing.
You have provided me with good information.

Offline

 

#5 2009-11-21 21:29:52

VDigital
Former Piwigo Team
Paris (FR)
2005-05-04
17680

Re: Comment security

Hi MarkPrima,

Don't apologize. You were right to ask.
Many demo visitors think that our comment management is clearly insufficient.

Thanks in advance for your coming user feedback about comments.

;-)


Piwigo.com: Start and run your own photo gallery. Signup and get 30 days to try for free, no commitment.
8-)

Offline

 

#6 2009-11-21 21:41:47

MarkPrima
Member
Ontario, Canada
2009-11-21
7

Re: Comment security

I have just installed and implemented Akismet. Now I have a REALLY dumb questions I turned comments off and now cannot find how to turn them back on?

Offline

 

#7 2009-11-21 21:45:37

VDigital
Former Piwigo Team
Paris (FR)
2005-05-04
17680

Re: Comment security

Admin > Configuration > General

Tab "Comments"


Piwigo.com: Start and run your own photo gallery. Signup and get 30 days to try for free, no commitment.
8-)

Offline

 

#8 2009-11-30 18:20:34

Sugar888
Translation Team
Zurich
2009-11-29
54

Re: Comment security

hi,

I have probably a dumb question. I wanted to ask you about the comment message. When you write a comment on a site then you have to wait a period of time before you can add another comment. Now i wanted to know if there is a way to modify this setting somewhere.

Offline

 

#9 2009-11-30 19:13:55

ddtddt
Piwigo Team
Quetigny - France
2007-07-27
7201

Re: Comment security

Sugar888 wrote:

hi,

I have probably a dumb question. I wanted to ask you about the comment message. When you write a comment on a site then you have to wait a period of time before you can add another comment. Now i wanted to know if there is a way to modify this setting somewhere.

yes default

// anti-flood_time : number of seconds between 2 comments : 0 to disable
$conf['anti-flood_time'] = 60;

with localfile editor you can change


You love Piwigo so don't hesitate to participate, learn more on the "Contribute to Piwigo" page. If you don't have much time for contribution, you can also help the project with a donation.

Offline

 

#10 2009-11-30 21:28:03

Sugar888
Translation Team
Zurich
2009-11-29
54

Re: Comment security

thank you very much.

Now the visitors of my site are happy to write faster the comments. :D

By the way. Your work is really great. simple to use and you make a good impression.

Offline

 

#11 2010-05-24 02:49:54

Leo
Guest

Re: Comment security

The current commenting system is simple and great. Just one little thing that would help administrators a lot. How can I view a list of all comments on the site? That would be a great feature, because it would make a lot easier to monitor the comments on the site. Pending comments does have its list, why not all comments, aproved, not approved, etc.

Also a captcha on comments would be good to prevent spammers etc.

Thanks.

Leo

 

#12 2010-05-24 07:29:23

ddtddt
Piwigo Team
Quetigny - France
2007-07-27
7201

Re: Comment security

for listing comment -> http://www.yoursite/photos/comments.php

For spam -> [extension by rvelices] RV Akismet
I notify author that it confirms that the plugin is compatible 2.1


You love Piwigo so don't hesitate to participate, learn more on the "Contribute to Piwigo" page. If you don't have much time for contribution, you can also help the project with a donation.

Offline

 

#13 2010-05-24 19:57:15

rvelices
Former Piwigo Team
2005-12-29
1960

Re: Comment security

ddtddt wrote:

for listing comment -> http://www.yoursite/photos/comments.php

For spam -> [extension by rvelices] RV Akismet
I notify author that it confirms that the plugin is compatible 2.1

It is co;patible with 2.1

Offline

 

Board footer

Powered by FluxBB

github twitter newsletter Donate Piwigo.org © 2002-2024 · Contact