<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.0.1" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>Gravity Support Forums Topic: Security of form data</title>
		<link>https://legacy.forums.gravityhelp.com/topic/security-of-form-data</link>
		<description>Gravity Support Forums Topic: Security of form data</description>
		<language>en-US</language>
		<pubDate>Sun, 19 Apr 2026 21:44:05 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.0.1</generator>
		<textInput>
			<title><![CDATA[Search]]></title>
			<description><![CDATA[Search all topics from these forums.]]></description>
			<name>q</name>
			<link>https://legacy.forums.gravityhelp.com/search.php</link>
		</textInput>
		<atom:link href="https://legacy.forums.gravityhelp.com/rss/topic/security-of-form-data" rel="self" type="application/rss+xml" />

		<item>
			<title>Chris Hajer on "Security of form data"</title>
			<link>https://legacy.forums.gravityhelp.com/topic/security-of-form-data#post-34897</link>
			<pubDate>Fri, 09 Sep 2011 01:59:08 +0000</pubDate>
			<dc:creator>Chris Hajer</dc:creator>
			<guid isPermaLink="false">34897@https://legacy.forums.gravityhelp.com/</guid>
			<description>&#60;p&#62;There are several WordPress plugins to force the site to be accessible only over SSL (https with the lock icon on the toolbar.)  Here's one, although I have no experience with it.&#60;/p&#62;
&#60;p&#62;&#60;a href=&#34;http://wordpress.org/extend/plugins/wordpress-https/&#34; rel=&#34;nofollow&#34;&#62;http://wordpress.org/extend/plugins/wordpress-https/&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;You need an SSL certificate, then you would use a plugin like that to force access to the site over https rather than http.  That will take care of submissions.&#60;/p&#62;
&#60;p&#62;The data that is input with a form is stored in the database, and accessible to the site administrator in the wp-admin section.  The database is not directly accessible to anyone (normally.) If you use an SSL cert and manage the site that way, this data is secure in transit as well.&#60;/p&#62;
&#60;p&#62;You can opt not to have email sent, so there won't be any plain text entries floating around.&#60;/p&#62;
&#60;p&#62;By default, WordPress is only as secure as your server.   The SSL cert will protect data in transit, but if someone gets a hold of an administrator password, or exploits a flaw on the server, or in WordPress, the SSL cert will not matter.&#60;/p&#62;
&#60;p&#62;None of this is specific to Gravity Forms.  It's all in how you set up your environment.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>JenHinds on "Security of form data"</title>
			<link>https://legacy.forums.gravityhelp.com/topic/security-of-form-data#post-34876</link>
			<pubDate>Thu, 08 Sep 2011 17:44:35 +0000</pubDate>
			<dc:creator>JenHinds</dc:creator>
			<guid isPermaLink="false">34876@https://legacy.forums.gravityhelp.com/</guid>
			<description>&#60;p&#62;Hi there. I'd like to add a long form to a website. Some of the questions are very sensitive and when people complete it and submit their answers, it needs to be secure. Please can you advise if Gravity Forms on Wordpress are secure and how this works?&#60;/p&#62;
&#60;p&#62;Also please can you explain how the data that someone inputs into a form is transferred to the site owner (i,e is it emailed or stored in a database) - and how secure is this?&#60;/p&#62;
&#60;p&#62;Many thanks,
&#60;/p&#62;</description>
		</item>

	</channel>
</rss>
