Security checks About 3 min read
Set up a waiting page or another security check
Add a useful message before a link opens, choose a CAPTCHA fallback, and test the full visitor experience.
Decide whether an extra step helps
A direct short link opens the destination with no extra page. A waiting page can explain what people will open or show a relevant image before they continue. A CAPTCHA adds a security check. These are optional choices, so use them for a clear reason rather than adding every option to every link.
Think about the people who will use the link. A simple menu may work best with an immediate redirect. A link that needs a warning or explanation may benefit from a short message. People opening a printed QR code on a phone should be able to understand the next step without reading a long paragraph.
Add a message and check the layout
Edit your link and open Advanced settings. The Interstitial page section contains the settings for the waiting page. Enable it and write a clear heading and message. For example, explain which website will open and what the reader can do there.
You can add an allowed image and choose its placement and text alignment. Use the preview to check the layout, then test the actual saved page on a phone. The preview helps with design but does not complete a real security check or guarantee that an outside ad provider will load.
- Enable the waiting page in the link's advanced settings.
- Add a heading and a brief message that explains the destination.
- Choose optional media and review the preview.
- Save, then open the public short link in a private browser window.
Use a waiting time deliberately
If your account provides the wait option, choose how many seconds pass before visitors can continue. A long delay can make a simple link frustrating. Keep the surrounding message accurate so people understand that they need to wait rather than repeatedly refreshing.
The waiting period is part of the server's access check. Editing the page or tapping an unavailable button does not make the link ready sooner. If the countdown never completes, refresh once and note the browser and error before contacting support.
Choose a main and fallback CAPTCHA
In the CAPTCHA section, enable Require a CAPTCHA and select the main check. A built-in check does not need an outside provider account. Turnstile and reCAPTCHA need matching credentials and permission for the hostname where the challenge appears.
Choose a fallback using a different provider type or one of the built-in challenges. When the main provider cannot work, visitors can use the alternate verification option offered by the page. They must still finish a valid check before continuing. Test both methods rather than assuming a fallback is ready because it appears in a list.
If visitors get stuck
Check whether the problem is the countdown, CAPTCHA, or final destination. Complete the same link while signed out to reproduce what visitors see. In a support ticket, include the short address, step that fails, visible error, and browser. Do not include CAPTCHA secrets or private provider tokens.