Cloudflare sensitivity.

Status

Ally

gσ∂∂єѕѕ σƒ мαтнѕ αη∂ мєℓσηѕ χσ
Supreme
Feedback score
37
Posts
2,043
Reactions
2,194
Resources
0
Both my phone and laptop (separate networks) are now being, almost every time I visit the site, harassed by CAPTCHAs from Cloudflare. Could you turn the sensitivity down please?
 
Type
Bug report
Status
Implemented
PebbleHost
High performance, consistent uptime and fast support. Minecraft hosting that just works.

Norska

Java Developer (https://norska.dev)
Supreme
Feedback score
68
Posts
901
Reactions
1,407
Resources
14
Yep, happens when you just move around the site too, I have to verify each time and like 80% of the time it doesn't even work and I have to verify like 5-10 times in order to load the page, it's just getting ridiculous.
 

Masons Monarch

Student
Deactivated
Feedback score
87
Posts
962
Reactions
737
Resources
0
Both my phone and laptop (separate networks) are now being, almost every time I visit the site, harassed by CAPTCHAs from Cloudflare. Could you turn the sensitivity down please?
I believe they (the development team) are dealing with increased botting and DDOS attacks, I have seen Jayson in chat (and around the site) seemingly working to optimize the algorithms, that which detects the attack(s). Unfortunately, though it is quite abhorrent, its best to let the administration work to optimize the site so that we are not constantly being tormented by DDOS attacks, which slow the site down.
 

Ouzo

Deactivated
Feedback score
10
Posts
114
Reactions
54
Resources
0
First of all - this so called bug is on Cloudflare's end, and it's not a bug at all.

MC-Market uses a service called Cloudflare, among other things, Cloudflare is used to block bots and prevent DoS attacks on the site. Constant refreshing of the site, having several tabs open, etc; are all things that can cause these verification requests.

I don't think you should be too alarmed by them, just do your best to pass them and not fail too many times because this improves your Google Recpatcha rating, followed by you having to fill less captcha's and just clicking the I'm not a robot button.

Cheers.
 

Ally

gσ∂∂єѕѕ σƒ мαтнѕ αη∂ мєℓσηѕ χσ
Supreme
Feedback score
37
Posts
2,043
Reactions
2,194
Resources
0
First of all - this so called bug is on Cloudflare's end, and it's not a bug at all.

MC-Market uses a service called Cloudflare, among other things, Cloudflare is used to block bots and prevent DoS attacks on the site. Constant refreshing of the site, having several tabs open, etc; are all things that can cause these verification requests.

I don't think you should be too alarmed by them, just do your best to pass them and not fail too many times because this improves your Google Recpatcha rating, followed by you having to fill less captcha's and just clicking the I'm not a robot button.

Cheers.
I know what Cloudflare is:
harassed by CAPTCHAs from Cloudflare
Could you turn the sensitivity down please?
I thought this might have indicated it.

And I'm not alarmed by it, I'm annoyed by having to complete CAPTCHAs every single time I view the site. On every device. I get that there are DDoS attacks and whatnot - but this is pretty much over the top.
Constant refreshing of the site, having several tabs open, etc; are all things that can cause these verification requests.
See above. I view the site about every 6 hours. Thanks though.
 
Last edited:

Ivain

Master Terraformer
Supreme
Feedback score
45
Posts
9,610
Reactions
4,888
Resources
0
I do agree it seems to be on cloudflare's end, since I actually got one from Google a while back. Surprised the hell out of me. I'm lucky in that for some reason I only need to click a checkbox instead of having to do an entire captcha, but having 'suspicious activity' detected 5 times in a single day gets to be a bit much.
 

MTG

Supreme
Feedback score
78
Posts
2,456
Reactions
2,600
Resources
0
Site gets ddosed in the daily, yeah gl with lowering the sensitivity.
 

Jayson

Supreme
Feedback score
17
Posts
1,258
Reactions
741
Resources
0
Due to the increased frequency of attacks recently and relatively higher activity across our platform, the captcha is currently on a catch-all approach with exceptions for essential incoming traffic (search engines, IPNs, etc) in order to maintain stability. I intend on adjusting the algorithms we use next week (actual spring break) alongside updating the captcha page to be more accurate in regard to the description. In the meantime, captcha frequency has been reduced as of today and for Chrome or Firefox users, there is the Privacy Pass extension which allows you to do one captcha and skip the next 30.

For more information on Privacy Pass (or if you just downloaded Privacy Pass, to get more passes), visit https://captcha.website/ . Do note that if we find the frequent abuse of this service then it may, of course, be disabled.
 

Ajdin

I used to be a big deal on here but now irrelevant
Supreme
Feedback score
12
Posts
2,419
Reactions
3,404
Resources
0
Due to the increased frequency of attacks recently and relatively higher activity across our platform, the captcha is currently on a catch-all approach with exceptions for essential incoming traffic (search engines, IPNs, etc) in order to maintain stability. I intend on adjusting the algorithms we use next week (actual spring break) alongside updating the captcha page to be more accurate in regard to the description. In the meantime, captcha frequency has been reduced as of today and for Chrome or Firefox users, there is the Privacy Pass extension which allows you to do one captcha and skip the next 30.

For more information on Privacy Pass (or if you just downloaded Privacy Pass, to get more passes), visit https://captcha.website/ . Do note that if we find the frequent abuse of this service then it may, of course, be disabled.

I'm sorry but you're ruining the user experience completely for me. I used to open this forum once in a while to see what's going on but even that has become too cumbersome in the past few months. Now I completely avoid using the site unless someone links me something.

Why the hell do so many users need to be punished because we need to wait for you to go on a spring break? I know very well that forcing those verification checks isn't the only way to keep a site functional, especially these days where really good DDoS protected servers are extremely cheap.

MCM is literally the only site that has that for me.

This issue should be considered high priority.
 

Mick

BuiltByBit Owner
Management
Feedback score
28
Posts
6,411
Reactions
7,662
Resources
0
Since the time that this has been made we have been continually making incremental improvements to our DDoS mitigation system and now I feel like we're at a point where being promoted to complete a hCaptcha is rare enough that it shouldn't pose any avoidable annoyance to our users.

As such, I'll move this to the bug report archives. If you're still having a bunch of issues with having to fill out a captcha regularly, please create a ticket. Thank you.
 
Status
Top