Skip to content

Conversation

@medicalwei
Copy link

As ReCAPTCHA validation could be forged by inserting correct response from other IP, I would like to add remote IP checking for extra security.

However, this code has not been tested especially when behind load balancer. Could you help me to take a look?

)

// R type represents an object of Recaptcha and has public property Secret,
// which is secret obtained from google recaptcha tool admin interface
Copy link
Owner

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Enhance documentation for UseRemoteIP and TrustXForwardedFor here

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants