> ## Documentation Index
> Fetch the complete documentation index at: https://docs.botshield.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Human Verification on Experience Cloud

> Gate an Experience Cloud checkout or form with the BotShield Verify widget and act on the pushed verification.

Drop the **BotShield Verify** widget onto any Experience Cloud (LWR or Aura) page — a cart, a checkout step, or a signup form — to require an anonymous human check before the action proceeds. The result is pushed into your org as a `BotShield_Gate__c` record, and your page or automation acts only on that verified row.

## How it works

<Steps>
  <Step title="The guest verifies">
    The widget shows a lightweight human check (scan a code or an inline passkey — no login, no PII). Behind the scenes it calls your BotShield deployment on the CDN.
  </Step>

  <Step title="The verification is pushed to your org">
    On success, your BotShield Console pushes a `BotShield_Gate__c` record into this org (keyed on the request ID), Change Data Capture enabled so Flows and LWCs can react the moment it lands.
  </Step>

  <Step title="You act on the verified row">
    Your checkout or form completes only against that verified row — the booking, order, or record is created only when a real human is present.
  </Step>
</Steps>

## Add the widget

<Steps>
  <Step title="Open Experience Builder">
    Edit your community page and drag the **BotShield Verify** component onto the cart, checkout, or form page.
  </Step>

  <Step title="Set the site key">
    In the component properties, paste the **site key** for this deployment (from your BotShield Console → the deployment's settings). The site key is publishable — it's safe in the page.
  </Step>

  <Step title="Allow the origin">
    Add your Experience Cloud site's origin to the deployment's **allowed domains** in the Console. If the origin isn't allow-listed, verification requests are rejected.
  </Step>
</Steps>

<Note>
  The package ships the required **CSP Trusted Sites** for the BotShield CDN and QR endpoints, so the widget loads in both LWR and Aura communities without extra configuration.
</Note>

## Read the result

Each verification lands as a `BotShield_Gate__c` record with the outcome (never PII):

| Field | Meaning |
| - | - |
| `Request_ID__c` | The verification request — the key your page polls on. |
| `Status__c` | `Completed`, `Failed`, `Blocked`, or `Expired`. |
| `Result_State__c` | The human-verification result state. |
| `Verified__c` / `Verified_At__c` | Whether and when a human was confirmed. |
| `Deployment__c` | Which BotShield deployment produced it. |

Watch verifications in the **BotShield → Verifications** tab, filtered by deployment and status.

<Card title="Commerce Cloud checkout" icon="cart-shopping" href="/integrations/salesforce/human-verification-commerce-cloud">
  The same gate on a Composable Storefront / Storefront Next checkout using the BotShield SDK.
</Card>


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.