Normally of course as user logs in and then submits content based on the user permissions his/her role(s) have. But I have a use-case where the client does not want to do that on one particular content type.

What I did was add a CCK text field to that content type, made it mandatory, and in the 'Allowed values list' put one value. In this way this field can be used as a password field and the form won't submit unless the field is filled in with the correct value.

Question: is this secure? Any way to submit the form without entering the correct value?