Dual Opt-in & reCAPTCHA

The Dual Opt-in & reCAPTCHA settings help improve contact quality and protect your forms from spam.

Dual opt-in confirms that a subscriber really wants to join your list. reCAPTCHA helps prevent fake or bot submissions.

You can access these options from:

WordPress Dashboard → NextCRM → Forms Settings

or:

NextCRM → Settings → Forms


Enable Dual Opt-in

Dual opt-in sends a confirmation email after someone submits a form.

The contact must click the confirmation link before their subscription is fully confirmed.

This is useful for:

  • Confirming real subscribers
  • Reducing fake signups
  • Improving email list quality
  • Protecting sender reputation
  • Avoiding accidental subscriptions

How Dual Opt-in Works

The process works like this:

  1. Visitor submits a form.
  2. NextCRM sends a confirmation email.
  3. The visitor clicks the confirmation link.
  4. The subscription is confirmed.
  5. The contact becomes ready for future email communication.

Dual Opt-in Email Subject

The Dual Opt-in Email Subject field controls the subject line of the confirmation email.

Example:

Please Confirm Your Subscription

Other good examples:

Confirm Your Email
One More Step to Subscribe
Please Confirm Your Email Address

Keep the subject simple so users understand the action clearly.


Dual Opt-in Email Content

The Dual Opt-in Email Content field controls the email message sent to new subscribers.

Example:

Thank you for subscribing! Please click the link below to confirm your subscription: {{confirmation_link}}

This message should clearly tell the user to confirm their subscription.


Confirmation Link Placeholder

Use this placeholder inside the dual opt-in email content:

{{confirmation_link}}

NextCRM will replace this placeholder with the real confirmation URL.

Do not remove this placeholder if dual opt-in is enabled. Without it, subscribers may not be able to confirm their subscription.


Enable reCAPTCHA v2

The Enable reCAPTCHA v2 option helps protect forms from spam submissions.

When enabled, reCAPTCHA checks whether the form submission is coming from a real user.

Use reCAPTCHA if your forms receive:

  • Fake submissions
  • Bot entries
  • Spam emails
  • Low-quality leads
  • Repeated unwanted form submissions

Google reCAPTCHA Key

To use reCAPTCHA, you need Google reCAPTCHA keys.

The settings include a link to get a Google reCAPTCHA Key.

Required keys are:

  • Site Key
  • Secret Key

Site Key

The Site Key is used on the front-end form.

Paste your Google reCAPTCHA Site Key into the Site Key field.


Secret Key

The Secret Key is used to verify the reCAPTCHA request.

Paste your Google reCAPTCHA Secret Key into the Secret Key field.

Keep this key private.


Enable Google reCAPTCHA v3

The settings also include an option for Google reCAPTCHA v3.

When enabled, reCAPTCHA v3 can check user behavior in the background.

Use this option only if your Google reCAPTCHA setup supports v3.


Save Settings

After changing dual opt-in or reCAPTCHA settings, click Save.

The settings will not apply until you save the changes.


Recommended Setup

For public forms, a safe setup is:

Dual Opt-in: ON
reCAPTCHA: ON
Confirmation Link: Added in email content
Site Key: Added
Secret Key: Added

For private or internal forms, you may not need reCAPTCHA unless spam becomes a problem.

Next

Leave a Reply

Your email address will not be published. Required fields are marked *