Verified where it counts
The check is confirmed on your own server. A check the browser is trusted to report is one a script simply says it passed.
Automation
To stop bots filling in your forms you need a check they cannot skip — and one a customer never notices. Spam through a contact form is not a nuisance in the inbox; it is every real enquiry buried in noise.
On every plan, including the free trial
Stop bots filling in your forms
On every plan, including the free trialpriced first · run cost + 20–30%
What you get
The check is confirmed on your own server. A check the browser is trusted to report is one a script simply says it passed.
No grids of traffic lights, no retries, nothing for a customer to fail on the way to contacting you.
The contact form is the one people remember. Signup, booking and search endpoints are the ones that get hit.
Running it
It is in the app under Automations, listed as “Stop bots filling in your forms”.
The price it will cost, or an honest blank where there is no run history to draw a range from
Every step on screen — the file it is writing, the command it ran, what came back
What changed and why, item by item, before anything is published
What it costs
You pay what this run cost plus 20–30% — shown before it starts. Where there is no run history to draw a range from, it shows no price at all rather than a plausible one.
The rest
Make this site easier to find · Make this load faster · Check everything before you send people to it · Make it look like your brand · Write a week of posts about this · Write and design ads for this · Make your ads report honestly · Check what this is costing you · App Store and Play listing that gets installs — or all of them.
It is under Automations in the app, and the price is on screen before anything starts.
On every plan, including the free trial
Questions
No. The check is invisible to people. The cost falls on the script, which is the whole point — a puzzle that stops bots by also annoying customers has moved the problem rather than solved it.
Because a script does not run your browser code. It sends the request directly and can claim any result it likes, so a check that is only enforced client-side is one the attacker fills in themselves.