HubSpot Ideas

oliw

Forms with a special characters check

Hi all,

it would be great to have a check on the generell forms for special characters. At the moment the forms allow for examples <>$\ … These are all characters used by programming. HubSpot will not execute them but write them down into your HubSpot.

But from outside it looks like the form can be hackable by using programing codes within a normal form.

 

So I would like to request a check if a form allows special characters or not. If the form contains special characters, then an error message will be issued (please do not use special characters).

 

Thank you for voting.

Best
Oliver

4 Replies
CoJoNF
Contributor | Diamond Partner

Absolutely! It is unsightly, if these characters can be deposited in all fields.

eterobby
Participant

FYI -- This behavior is at least documented on https://knowledge.hubspot.com/crm-setup/set-validation-rules-for-properties

 

Please note: validation rules are not currently enforced when setting property values via form submissions, workflows, or API.

 

Still I agree that the lack of this check in these spots is a problem.

 

I've also reported an opposite issue where the special characters check is *too restrictive*: https://community.hubspot.com/t5/HubSpot-Ideas/Special-characters-validation-rule-should-permit-hyph....  Please provide a vote or feedback whether you agree.

oliw
Member

Thank you very much for your contribution. Another thing I noticed is that if you go into the settings/properties, you should be able to define here for individual fields which entries are possible and which are not. But that can't be activated because most of the fields come from HubSpot and these can't be adjusted....
Not really helpful either.

echo1
Member

Also wanted to upvote on this where not just forms but hubspot managed fields like Contact: First Name, Last Name etc.. should have the ability to have a rule setting to block certain special characters^