Autosuspended?

  • Matthew Schildroth
    Asked on April 15, 2019 at 4:56 PM

    Hi! I signed up for JotForm last week and when I tried to login today it told me my account was autosuspended. Just wondering if there is something I did wrong, or why I can't login now. I even reset my password but that did not help. Help, please! :)

  • Bitia JotForm Support
    Replied on April 15, 2019 at 5:14 PM

    The form http://www.jotform.us/form/91005138957156 was found on your account as suspicious of phishing activity because you're collecting user credentials.

    15553627112019 04 15 1509 Screenshot 10


    Gathering this type of data violates our Terms of Use.

    Asking for an access code to conditionally show/hide fields within your form is okay. However, you should refrain from using "password" as your label to avoid being flagged by our phishing detector. Kindly change it to something similar like an "access code". Other than that, no other kinds of passwords or user credentials are allowed to be collected.


    We’ve removed the offending field on your form and lifted the suspension on your account. Please refrain from making new forms that is against our terms to avoid this kind of inconvenience.

     


     

  • Matthew Schildroth
    Replied on April 15, 2019 at 5:42 PM

    I understand, and I'm sorry about that! I was just creating a test form to see what it would be like if we started to use it for that. That is a huge bummer for me, though! I've been very impressed with your offerings. We need a secure way to obtain passwords legitimately for IT clients that we are onboarding (we are an IT service company). When we saw all the compliance standards you meet and your SOC2 certification (which we also have), we thought you'd be the perfect fit. Is there any chance of any sort of exception or do you have any alternate products designed for this? Any chance this policy will change in the future?

  • Bitia JotForm Support
    Replied on April 15, 2019 at 5:57 PM

    We do not have exceptions in regards to the collection of user credentials, about the change of  this policy in the future we have not received any type of update about this so far.