import type { Field } from 'payload' /** * Cloudflare Turnstile credentials. * * siteKey is public (rendered in the widget); secretKey is used for * server-side verification. Both are protected at the global level * (SiteIntegrations requires an authenticated user) rather than per-field, * so they remain editable in the admin panel. */ export const turnstileFields: Field[] = [ { name: 'turnstileSiteKey', type: 'text', admin: { description: 'Public site key rendered in the Turnstile widget.', }, }, { name: 'turnstileSecretKey', type: 'text', admin: { description: 'Secret key used for server-side verification.', // Masked in the UI (••••) — stored plaintext, readable for verification. components: { Field: '@intecion/ipal-kit/client#MaskedField', }, }, }, ]