5. Make website and signature inputs on registration hidden. Ban anyone that POSTs something
I don't understand this point.
Also, your usage of the term 'honeypot' seems a little different to mine. A honeypot (for me) is something masqerading as a normal server/site but is actually a fascade for the owner(s) to monitor/follow/log user activity...kinda like watching labs rats in a maze. I don't see how this applies to securing forum software?