If the robot runs in the context of a browser (as a plugin, say), then using JS to populate href attributes becomes an irrelevancy: the robot sees the DOM of the page as it would be rendered to the user.
Kees Nuyt's suggestion of a hidden link which disables the session when followed strikes me as quite clever and worth trying. I also second Kees' suggestion of applying DoS fighting techniques. Nico -- _______________________________________________ fossil-users mailing list [email protected] http://lists.fossil-scm.org:8080/cgi-bin/mailman/listinfo/fossil-users

