Core concepts

Spam protection

How the verdict object is computed and how to read it.

5 min read

Every submission gets a verdict object. You can read it in the dashboard or include it in webhook payloads.

Signals

  • honeypot — empty string is required
  • timing_ms — time between page load and submit
  • geo — coarse geolocation from IP
  • disposable_email — known throwaway domains

Per-form allow / deny

Open the form in the dashboard, switch to the Spam tab, and add email addresses, domains, or IP ranges to the allow or deny list.