The module works out of the box.
I can't stop wondering however, what is it that stops the bots from directly accessing the url of the standard registration component instead of the secure one ?
I assume the bots don't go into the trouble of scanning the front page for the registration link but instead go directly for the http://yoursite.here/index.php?option=com_registration&task=register registration url. This url is still there and fully functional and allows registration without the captcha.
So is there something I am missing here ?
Owner's reply:
You aren't. This component/module doesn't remove the ability to use the normal com_registration.
Since i don't want to mess with the Joomla code it's better to leave that to the site administrator by removing the com_registration or chmod'ing the files