Good afternoon,
I wanted to discuss an important matter concerning the security of the embed code for the forms and CTAs from HubSpot.
Currently, the code is provided within a script tag <script>, and we have some concerns regarding its safety and potential vulnerabilities.
Please see image:
As you may be aware, using script tags can pose security risks, and it’s essential for us to ensure the utmost security for our website.
The use of script tags can potentially expose our site to various security threats, as they can be manipulated or exploited by malicious parties. This poses a significant concern for us, especially when the link to the admin panel is visible, as it could lead to unauthorized access and potential security breaches.
To enhance our website’s security, we would like to explore the possibility of utilizing iframes instead of script tags for embedding forms and CTAs. Iframes can provide an additional layer of security and isolation, reducing the risk of unauthorized access and potential vulnerabilities.
I believe that addressing this security concern is of utmost importance, and I would appreciate your insights and guidance on how we can proceed with implementing iframes for our forms and CTAs.
Best Regards

