My account was blocked

  • Profile Image
    Jorge Diaz 
    Asked on June 05, 2020 at 08:06 PM

    Hi I just got a notification that my account has been blocked. Can you guys please restore it because im getting ready to launch a form and i need it.

    Account name is under Mattress Shack

    if you have any questions, please let us know ASAP


    thank you so much for your help. 


    Jorge diaz

  • Profile Image
    JohnRex
    Answered on June 05, 2020 at 11:33 PM

    As checked, your account has been suspended as it was found that this form on your account: 90 Day No Interest Financing Form has fields asking for ID numbers, SSN, Bank Routing numbers, and Credit Card details. This is considered as phishing and violates our Terms of Use.

    15914141562371893.png

    15914141932371893 2.png

    For the ID NUMBERS and SSN, if you are collecting this information from your customers and not from the general public, we can make an exemption. However, it needs to be protected by these two mandatory widgets:

    1. Add the Terms & Conditions Widget(or the Short Scrollable Terms Widget) for your users to read and agree.

    2. Add a Signature Widget so your users can sign and agree to provide such sensitive information.

    The widgets will apply for ID number collection. This will make you the sole responsible for the collection and handling of these data.

    For the BANK ROUTING NUMBERS, these are not allowed to be collected along with the Bank account name and numbers.

    For the CREDIT CARD DETAILS, these are not allowed on forms. You can use one of the Payment Integrations available with Jotform if you are to collect payments using your forms. Transactions with these integrations are secured instead of using plain text fields.

    We also suggest that you use a corporate domain for your email instead of a free one that you're currently using.

    I have removed the said fields from the form and reactivated the account. You may now log in to it and comply with the said requirements. You can add the ID fields and Bank details (without the routing numbers) back provided that you added the mandatory widgets.

  • Profile Image
    Jorge Diaz 
    Answered on June 07, 2020 at 05:28 PM
    Hi john,
    I have read a very interesting thread on jotforms website that states that
    collection of SSN AND CREDIT CARD INFORMATION is discouraged it can still
    be collected.
    I have used jotform for a few years now and
    have never had a problem and wouldnt like to move to other online form
    sites that do allow us to collect this information.
    The reason for our collection of such sensitive data is because we offer
    financing to our fur iture customers and in order for us to run that
    information on the lenders website. For us to this manually is too time
    consuming so we just send an online form to them via email or text.
    I saw the email and terms of agreement section and we can make the required
    changes.
    Please let me know of further steps to make this a realistic accomplishment.
    Thanks so much,
    Jorge Diaz
    ...
  • Profile Image
    JohnRex
    Answered on June 07, 2020 at 06:45 PM

    You may not use the Jotform Service to collect certain types of sensitive information, including but not limited to, credit card information and any type of login credentials.

    You may collect some sensitive information such as social security numbers or driver’s license numbers, but you are required to use the best security practices of Jotform Inc. including SSL and Encrypted Forms features, or simply adding the mandatory widgets I mentioned.

    Also, as far as I know, even other form builders don't allow collecting Credit Card details unless it's a payment integration that you will add to the form (such as Paypal or Stripe).

    In your case, you are collecting them using plain text fields that are not PCI-compliant. We need to delete them from the forms to be able to reactivate the account.

    Let us know if you agree.