Do I think it's possible? Sure, almost anything is possible if you code it. You'd probably have to modify a couple of the attachment templates and then I would also add a plugin (using a hook location at the top of the attachment.php page) to not allow them (give them the No Permission message) to download attachments based on that field in case they have a direct link and try to do it.
|