| name | typo3-secure-form |
| description | Use when securing TYPO3 frontend forms (typo3/cms-form), frontend user registration forms (evoweb/sf-register), or installing/configuring Google reCAPTCHA (evoweb/recaptcha) in TYPO3 projects. |
TYPO3 Form Security (cms-form, sf-register, and evoweb/recaptcha)
Use this skill to configure, harden, and secure frontend forms in TYPO3 projects, specifically targeting forms generated by the standard form framework (typo3/cms-form) and user registration forms (evoweb/sf-register), using Google reCAPTCHA (evoweb/recaptcha) and honeypot fields.
Required Start
- Check Repositories: Read the repository's
AGENTS.md and follow it. If it requires SequentialThinking, DDEV, Context7, Rector, Fractor, or browser checks, apply those rules.
- Fetch Docs: Fetch current documentation before making version-specific claims. Resolve/query TYPO3/extension docs via Context7.
- Environment check: Confirm the project is not production. Test form submissions locally in DDEV first.
Related Skills
typo3-form-yaml: use when editing form templates or overriding standard form framework properties
typo3-csp: use to integrate and whitelist third-party frames/scripts in Content Security Policies
Reference Materials
Use the following detailed resources located in this skill: