If you are using the Lock SDK with the Classic Login experience, you must update to version 11.35.0 or higher to use Bot Detection for passwordless flows.If you are using the Auth0.js SDK, you must update to version 9.20.0 or higher to use Bot Detection for passwordless flows.
Configure Bot Detection for passwordless flows
You can use the to configure the behavior of the CAPTCHA feature.- In the Auth0 Dashboard, go to Security > Attack Protection > Bot Detection.
- Locate the Response section.
-
For the Enforce CAPTCHA for passwordless flows setting, select when to require CAPTCHA:
- Never: Users are not required to complete a CAPTCHA to log in.
- When Risky: Users are required to complete a CAPTCHA if the login is high risk.
- Always: Users are always required to complete a CAPTCHA to log in.