Skip to content

[Turnstile] Add interactive challenge sitekey to testing scenarios - #34179

Open
neelakolkar-cf wants to merge 1 commit into
cloudflare:productionfrom
neelakolkar-cf:issue-31088-turnstile-interactive-sitekey
Open

neelakolkar-cf wants to merge 1 commit into
cloudflare:productionfrom
neelakolkar-cf:issue-31088-turnstile-interactive-sitekey

Conversation

@neelakolkar-cf

Copy link
Copy Markdown
Contributor

Summary

Closes #31088.

The Testing scenarios table on the Turnstile testing page covered the always-pass, always-fail, and timeout-or-duplicate cases, but did not include the 3x00000000000000000000FF sitekey that forces an interactive challenge. That sitekey is already listed in the Test sitekeys table on the same page.

This PR adds a row pairing it with the always-pass test secret key:

Test sitekey Test secret key Test case
3x00000000000000000000FF 1x0000000000000000000000000000000AA This combination forces an interactive challenge. After the visitor solves it, server-side validation always succeeds.

The existing third row (1x00000000000000000000AA with the 3x0000000000000000000000000000000AA secret key) is correct. That secret key returns the "token already spent" (timeout-or-duplicate) error, as listed in the Test secret keys table, so it is left unchanged.

This reopens #31605, which made the same change but was closed as stale without being merged.

Documentation checklist

@cloudflare-docs-bot

cloudflare-docs-bot Bot commented Oct 10, 2026 •

Copy link
Copy Markdown
Contributor

AI Review

✅ Reviewed a9b5201 · 0 findings · incremental

Commands
  • /review Run a review now.
  • /full-review Review the entire PR diff.
  • /disable-auto-review Stop automatic reviews.
  • /rebase Rebase against production.

@cloudflare-docs-bot

Copy link
Copy Markdown
Contributor

Review coverage

🟡 1 ownership area needs approval.

Suggested reviewers: @marinaelmore

Needs approval Eligible approvers Suggested
turnstile @cf-jian, @marinaelmore, @migueldemoura, @njustus1, @olipayne, @worenga, @cloudflare/appsec-reviewers, @cloudflare/product-owners marinaelmore
CODEOWNERS mappings for displayed areas (1)
Pattern Owners
/src/content/docs/turnstile/ @cf-jian, @marinaelmore, @migueldemoura, @njustus1, @olipayne, @worenga, @cloudflare/appsec-reviewers, @cloudflare/product-owners

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Incorrect/missing Site Key in the testing scenarios

1 participant