" secureform Archives - Page 2 of 6 - HIPAA News, Web & Email Security Tips & News - Plus More | LuxSci
LuxSciLuxSci
be Smart.
be Secure.
Phone: 800-441-6612
sales@luxsci.com
support@luxsci.com

Posts Tagged ‘secureform’

Creating Secure Web Pages and Forms: What You Need to Know

Thursday, February 19th, 2015

Fred is a busy small business CEO.  He hired a cheap developer online to setup his secure medical web site for him.  The developer got an SSL certificate and setup pages where patients can make appointments and the doctor can receive patient requests and notices, “securely”.  However, the developer didn’t have any real training in security and none in HIPAA and as a result, PHI was being sent in the clear, there were no audit trails or logs, SSL security was not enforced, and may other serious issues plagued the site.  No one knew.

Luckily, Fred was made aware of the situation before a serious security breach happened (that he knew of); however, he had to re-do the site from scratch, more than doubling his time and money costs.

Creating a web site that has “secure” components requires more than slapping together some web pages and adding an SSL Certificate.  All a certificate really does is create a thin veneer of security — one that does not go very far to protect whatever sensitive data necessitated security in the first place.  In fact, naive attempts at security can ultimately make the data less secure and more likely to be compromised by creating an appetizing target for the unscrupulous.

So, beyond paying big bucks to hire a developer with significant security expertise, what do you do? Start with this article — its purpose is to shed light on many of the most significant factors in secure web site programming/design and what you can do to address them.  At a minimum, reading this article will help you to intelligently discuss your web site security with the developers that you ultimately hire.

Read the rest of this post »

6 ways to improve your web site forms

Wednesday, February 18th, 2015

Web site forms are ubiquitous.  Every site needs them to engage their visitors, collect information, makes sales, etc.  They are easy to add to your site, but not necessarily easy to do right.

Make a quick web form using some generic web site authoring software and put it up on your site and it may work, but you also may have serious issues:

  • Incomplete Forms. Users submitting incomplete forms — e.g. not filling out all of the important fields
  • Invalid Input. Users not entering the “right” information — e.g. not actually putting an email address in the email address field
  • Form Spam Bots. Automated programs may fill out and submit your forms … sending you junk in the form of gibberish or web site URLs they hope you will visit and buy stuff from.
  • Form Insecurity. If your from collects any kind of sensitive information … from passwords to medical data … it could easily be setup incorrectly and allow phishing attacks or data leakage.
  • Stale Forms. You updated your form … but someone just somehow submitted the old version which is not even on the Internet anymore!
  • Connectivity/Server Issues. You don’t want your users to give up because their network is down or your site is down for a few seconds.

All of these problems impact the success of your site — causing everything from annoyance to the inability to contact your sales leads to breaches of privacy.  Fortunately, it is not really hard to plug these gaps and have a solid, productive, and secure web form.

Read the rest of this post »

Supercharged Forms: Complex Form Processing with SecureForm and jQuery

Monday, September 15th, 2014

The classical web form is very simple: Customer fills it out and hits submit; the form submits and is processed; the data is emailed to the desired recipient.  Clean, simple, and easy to implement and secure.  Even easier by plugging the form into an existing backend form processor like SecureForm.

Time passes and business requirements get more complicated.  You need your form data to be handled in increasingly varied and complex ways, automatically.

For example:

  1. You need an encrypted copy of the data to be stored in your archival system
  2. Once archived, the data needs to be re-filled into a PDF and emailed to your sales team for review
  3. It also needs to be FTP’d securely to your office server to be ingested into your your office CRM system

Another example:

  1. Your data needs to be submitted and processed as usual
  2. Instead of re-directing to a new page when the submission is complete, you need to simply alter the current page (e.g. remove the submit button and say “Thank you”)

These examples and complex variations on them can all be readily achieved without much effort by combining the swiss-army-knife features of SecureForm and jQuery.

Read the rest of this post »

SecureForm Form Builder Supports Custom JavaScript

Wednesday, May 7th, 2014

LuxSci’s SecureForm service includes “Form Builder,” which allows customers to visually build and host secure web forms… without needing any special software, hosting, or SSL certificates.

The Form Builder service now supports the addition of custom blocks of JavaScript to each of the hosted pages (with jQuery also automatically included).  Using custom JavaScript blocks, customers can now do things such as:

  1. Conditional logic — show and hide parts of the form dynamically
  2. Dynamically load content from external sources using AJAX
  3. Provide complex user interface elements
  4. Implement custom validation scenarios
  5. Anything else you can think of

Custom JavaScript blocks allow developers to extend the pages built by the SecureForm Builder service to do almost anything they would like…. at no additional charge.

SecureForm: Give your customers access to their form submissions

Wednesday, March 19th, 2014

Many times when a customer fills out a form on your website, they want a copy for their own records. Providing this copy of the submitted data often takes manual effort on your behalf to search your Inbox, WebAides Documents, or database, extract the appropriate file, and email the file as an attachment back to the individual who filled it out.

Of course, this presumes that the submittee entered their email address accurately, and that you send the form back to their correct address. When sending a copy via this method, sensitive information such as medical data that needs to be HIPAA compliant could possibly be sent to the wrong person or insecurely, resulting in a possible breach and violation!

With LuxSci SecureForm it is easy to securely provide the person submitting the form a copy, automatically and immediately after they submit your form.

Read the rest of this post »

Free Secure Hosting of PDF Forms

Friday, February 21st, 2014

Users of the LuxSci SecureForm processing service can now host their PDF forms for free as part of the SecureForm system.  With one click to upload your form, you get an SSL-protected web link that you can use to access your PDF form from anywhere … put it on your web site, email it to customers, etc.

  • Free storage: No charge for storing your PDF forms online.
  • Large forms: Store PDF forms up to 20MB in size … contact Support to store larger forms.
  • Unlimited access: No charge for downloads of your forms; no limit to how many times they can be downloaded.
  • Scalable, redundant, fast: Forms are stored redundantly on a large numbers of servers with the capacity to handle extremely large numbers of concurrent downloads without slowing down.. plus  inherent redundancy that keeps your forms available even in the face of server failures.
  • Secure: The web address to access your forms is secured via SSL.
  • Brandable.  The links all look like “https://secureform.luxsci.com/forms/…” unless you purchase Private Labeling with your own SSL certificate for your own domain name.  Then, these links can be your own domain, e.g. “https://your-domain.com/forms/…”

Hosting your PDF forms via LuxSci SecureForm has other significant benefits:

Read the rest of this post »

Give your PDF Form users a Personalized Success Page

Thursday, February 13th, 2014

Fillable PDF forms are nice, but one down side is that the only thing that you can give the end users after s/he clicks on the submit button is a static PDF file (i.e. “Thank you for your submission…”).

LuxSci SecureForm service now enables you to dynamically personalize this success PDF.

  1. Make the Success PDF also a PDF form with some or all of the same fields that your original PDF form has
  2. SecureForm can fill in these form fields in the Success PDF with the user submitted data.
  3. The resulting form is then given back to the user (flattened or not … up to you)

Dynamic Success PDFs make it a snap to have personalized success pages or to give the user back a copy of the submitted PDF.  You could also have a copy of the submitted data emailed to the end user.

Email your Form Data Securely to Addresses Determined on the Fly

Wednesday, February 12th, 2014

SecureFormLet’s say you have a web or PDF form and you would like to have the completed form emailed back to the user after it is submitted.  Or perhaps you have a complex form whose data should be sent to any one of a wide range of different email addresses based on its content.  Finally — what if those email messages needed to be secure to protect the form data?

It’s now quick and simple to accomplish this with LuxSci SecureForm.

Read the rest of this post »

Private Labeling SecureForm

Monday, February 10th, 2014

LuxSci’s SecureForm service enables you to quickly make your web site or PDF forms secure and HIPAA compliant. Receive the form data, including uploaded files, via secure email or download the data securely from LuxSci’s web interface.  It also supports insecure form posts and delivery, making the usual form-to-email process easy to setup and protected from form Spam.

Typically, when using SecureForm, your web or PDF form will post to a secure web site address (URL) that is provided by LuxSci in the LuxSci.com domain name.  I.e. something like “https://secureform.luxsci.com/…”.  Once the form data is processed, the end user is redirected to a success or failure web page on your site (for web forms), or is shown a success or failure PDF that you provide (for PDF forms).  I.e. under most conditions, the end user will never see the domain name to which the form is posted.

For resellers or businesses who wish to use their own web site address in their forms so as to brand the secure form posts and hide the fact that LuxSci is the back end, perhaps something like “https://forms.yourdomain.com/…”, LuxSci has an easy solution: Private Labeling.

Read the rest of this post »

Collaborative Access to Encrypted Archived Form Data with SecureForm

Friday, February 7th, 2014

LuxSci SecureForm service uniquely enables web site and PDF forms to post their data and files to a secure URL and have that data automatically securely emailed to one or more recipients, uploaded to an S/FTP site, archived in an online collaborative WebAides file storage space, and/or saved to a MySQL database.  With a few clicks and minimal changes to existing forms, customers can have sophisticated and secure forwarding, processing, and storage of their form posts, including re-filling the posted data into template PDF, html, xml, and other files.

Collaborative Access to Encrypted Archived Form Data

When using SecureForm to store copies of uploaded form data to an online Documents WebAide, you can choose to have that data automatically encrypted so that only the “recipient” of the encryption (i.e. one of your users) can ever open it.  Not even LuxSci’s technical support staff would be able to access this data unless you specifically allowed it.  

Read the rest of this post »

• Access Anywhere
• Fast and Robust
• Super Secure
• Tons of Features
• Customizable
• Mobile Friendly

Send and receive email from your favorite programs, including:

 Microsoft Outlook
 Mozilla Thunderbird
 Apple Mail
 Windows Mail

... Virtually any program that supports POP, IMAP, or SMTP

Keep your email, contacts, and calendars in sync:

 Apple iPhone and iPad
 Android Devices
 BlackBerry
 Windows Phone

... Any device with Exchange ActiveSync (EAS) support

Relay your server's mail through LuxSci via smarthost:

• Resolve issues with ISP sending limits and restrictions
• Improve deliverability with better IP reputation and IP masking
• Take advantage of Email Archival and HIPAA Compliance
• Even setup smarthosting from Google Apps!

Free web site hosting with any email account:

• Start with up to 10 web sites and MySQL databases
• DNS services for one domain included
• Tons of features and fully HIPAA capable

LuxSci's focus on security and privacy:

• Read The Case for Email Security
• Read Mitigating Security & Privacy Threats
• Review our Privacy Policy

The most accurate, flexible, and trusted filters in the business:

• Premium protection with Intel Security Saas
• Realtime virus database guards against the latest threats
• Seven-day quarantine lets you put eyes on every filtered email
• Supplement with our Basic Spam Filter for even more features

End-to-end secure email encryption — to anyone, from anyone:
• No setup required — encryption is automatic and easy to use
• Secure outbound email with TLS, PGP, S/MIME, or Escrow
• Free inbound encryption via our SecureSend portal
• Independent of your recipient's level of email security
• Widely compatible and fully HIPAA Compliant

Add an extra layer of security with an SSL Certificate:

• Secure your web site
• Debrand LuxSci WebMail with your own secure domain
• Access secure email services via your own secure domain

Encrypt your service traffic via secure tunnel:
• Add another layer of security to your SSL connections
• WebMail, POP, IMAP, SMTP, web/database access
• SecureForm posts, SecureLine Escrow, SecureSend access
• Restrict your account to VPN access only

Secure long-term message archival:

• Immutable, tamperproof email retention with audit trails
• No system requirements — minimal setup, even less upkeep
• Realtime archival of all inbound and outbound messages
• Works anywhere — even with non-LuxSci email hosting

Free data backups included with all email hosting accounts:

• Automatic backups of all email, WebAides, web/database data
• Seven daily backups and up to four weekly backups
• Unlimited restores included at no additional cost
• Custom backup schedules for dedicated servers

Automate your email management:

• Save messages to specific folders or to LuxSci WebAides
• Advanced text scanning with regular expressions
• Tag messages, alter subject lines, or add custom headers
• Filter by message charset, type, TLS status, DKIM status
• Chain filters together for even more complex actions

• Bulk add and edit users, aliases and more
• Control sharing and access globally or on a granular level
• Delegate user roles through permissions
• Configure account-wide taglines, sending restrictions, and more
• Remotely administer account via SOAP API

Share, collaborate, organize, synchronize:

• Calendars, Contacts, Documents, Notes, Widgets, Workspaces
• Fine-grained access control and security
• Access anywhere via secure web portal or smartphone
• Save over solutions like Microsoft Exchange

Free folder sharing for all email hosting accounts:

• Share mail folders with other users in your account
• Subscribe to only the folders you want to see
• Set read-only or read-write access control
• View all personal and shared folders via unified web interface

Color code and label your email messages:

• Define and assign multiple IMAP keywords to each message
• Filter, search, and sort by tags
• Compatible and synchronizes with any IMAP email client
• Also usable with WebAide entries