=== AYYES Forms ===
Contributors: ayyes
Tags: contact form, form builder, conditional logic, lead management, smtp
Requires at least: 5.5
Tested up to: 7.1
Requires PHP: 7.2
Stable tag: 1.0.0
License: GPLv2 or later
License URI: https://www.gnu.org/licenses/gpl-2.0.html

Build responsive contact forms with drag and drop, multi-step pages, conditional logic, email delivery tools, leads, migration, and optional AI.

== Description ==

AYYES Forms is a WordPress form builder for contact forms, quote requests, appointments, registrations, applications, and other lead forms.

= Form building =

* Start with a blank form or an optional AI-assisted draft.
* Click or drag fields into a responsive canvas.
* Create side-by-side fields that stack on smaller screens.
* Add multi-step pages and conditional rules.
* Configure notifications, confirmations, and redirects.
* Preview desktop, tablet, and mobile layouts.
* Adjust approved colors, spacing, widths, labels, and buttons.

Fields include text, paragraph, name, email, number, slider, dropdown, radio, checkboxes, consent, phone, URL, address, date/time, file upload, rating, hidden, page break, signature, HTML, and divider. Payment fields are visible only for migration compatibility and cannot collect card details or process payments in this release.

= Spam protection =

The plugin provides a honeypot, rate limiting, and per-form CAPTCHA. Smart CAPTCHA Setup tests the chosen provider before activation.

* Google reCAPTCHA v2 Checkbox uses administrator-provided keys.
* Built-in math uses one-use ordinary or Roman-number questions.
* Built-in image uses one-use letters/numbers, a noisy PNG, and Refresh.
* Built-in math + image displays both checks and requires both answers.

Local challenges expire and cannot be replayed. Verification runs server-side for AJAX and normal submissions.

= Email and leads =

Notifications use WordPress mail by default. Administrators may enable custom SMTP, test delivery, and review Accepted or Failed logs. Accepted means the mail transport accepted the message; it does not guarantee inbox delivery.

When lead storage is enabled, submissions are stored in WordPress before notifications run. Administrators can search, filter, assign owners, update statuses, add values/tags/notes, export leads, and download protected uploads through signed links.

= Migration and health checks =

Migration supports dry-run review for Contact Form 7, WPForms, and Fluent Forms. Keep the source plugin active until the imported form and any placement replacement have been verified. Available rollback tools protect later edits and dependent lead records.

Form Health Check reports delivery, storage, spam, validation, mobile, and lost-lead risks without changing live forms.

== External services ==

= AYYES AI =

Core form building does not require AYYES AI. When an administrator starts connected AI generation, the plugin sends the prompt, site name, site URL, locale, a sanitized supported form structure, notification/confirmation content, and optional public-page metadata to the configured AYYES AI service.

If AI lead qualification is enabled, the service receives a sanitized summary of supported non-private answers. Name, email, phone, address, signatures, files, hidden values, and consent fields are excluded. The service is contacted only when an administrator configures and uses or enables the related feature.

AYYES Privacy Policy: https://ayyes.com/legal-notices/privacy-policy/
AYYES Terms of Service: https://ayyes.com/legal-notices/terms-of-service/

= Administrator-configured SMTP =

An administrator may configure an SMTP server. When custom SMTP is enabled and an AYYES notification or test is sent, recipient/sender addresses, subject, message, attachments, and normal connection information go to that chosen server. AYYES Forms does not choose the provider and does not reroute mail from other plugins. The administrator is responsible for that provider's terms and privacy policy.

= Google reCAPTCHA =

Google reCAPTCHA v2 is optional. It connects only after an administrator selects it, tests the keys, and enables CAPTCHA on a form. Public forms load the script from `recaptcha.net` or `google.com`. Google may receive the visitor's IP address, browser/device details, cookies, and interaction data. On submission, the response token and visitor IP are sent with the administrator's secret key to Google's verification endpoint.

Google Privacy Policy: https://policies.google.com/privacy
Google Terms of Service: https://policies.google.com/terms

= Administrator-requested website inspection =

When an administrator supplies a public HTTPS URL and starts AI generation, WordPress requests that URL once for a limited sample of public metadata. The destination may receive the WordPress server IP and normal request information. No saved lead data is sent. The selected site's own terms and privacy policy apply.

= Disabled integrations =

Mailchimp, Brevo, webhooks, Zapier, Google Sheets, Stripe, PayPal, and Square do not send data in this release. Payments, advanced CRM integrations, and conversion analytics are marked Coming Soon.

== Installation ==

1. Install and activate AYYES Forms.
2. Open AYYES Forms > Add New.
3. Build a form and configure notifications, confirmations, and spam protection.
4. Embed the generated `[ayyesforms id="123"]` shortcode.
5. Submit a logged-out test and confirm the saved lead and notification.

== Frequently Asked Questions ==

= Is AI required? =

No. The standard builder and local drafting option work without the external AI service.

= Where are submissions stored? =

In the WordPress database. Uploaded files use protected storage and signed administrator links.

= Does an Accepted email log prove inbox delivery? =

No. A receiving provider may still filter, delay, or reject it.

= Does migration change live forms immediately? =

No. Dry run and saved-form verification happen before supported placement replacement.

= How do I configure CAPTCHA? =

Open AYYES Forms > Settings > CAPTCHA, test and activate a provider, then enable the global CAPTCHA option inside the form and test the published form while logged out.

= Are payments available? =

No. Legacy/imported payment fields cannot collect card details, contact a gateway, or mark a lead as paid.

== Screenshots ==

1. Forms dashboard and lead statistics.
2. Drag-and-drop responsive builder.
3. Multi-step and conditional settings.
4. AI draft and preview flow.
5. Email and SMTP setup.
6. Lead pipeline and entry details.
7. CAPTCHA setup and combined challenge.
8. Health-check report.
9. Migration dry run and rollback.

== Changelog ==

= 1.0.0 =

* Initial public release.
* Added responsive forms, multi-step pages, conditional logic, notifications, confirmations, spam controls, leads, health checks, and migration.
* Added optional AI drafts and lead qualification.
* Added Google, math, image, and combined CAPTCHA choices.
* Added WordPress mail, optional SMTP, tests, and delivery logs.

== Upgrade Notice ==

= 1.0.0 =

Initial public release.
