Red Sphere Creative Technology Studio case 03
Skip to case study
Red SphereCreative TechnologyStudio case 03

RED-CMS 5.1 / Extensible content platform / 2012—2026

A CMS core that can grow without becoming a fork.

RED-CMS preserves the publishing structure established sites rely on while adding custom components and client-specific services as optional packages. The core stays portable; every extension is verified, permissioned, and isolated per client.

RoleFounder and Product Architect
RED-CMS content chooser showing eight supported content types including articles, forms, galleries, video, and custom content.
One workspace / multiple content jobsView screenshot
Major releases05
Current build5.1
Development recordGitHub

A stable content core. An extension system built around it.

RED-CMS separates what every installation needs—content relationships, editorial controls, layouts, permissions, and routing—from the packages, themes, data, and workflows that belong to one organization.

That boundary keeps a new capability from turning into a custom fork. A client can take only the component or service it needs, with its own version, migration ledger, settings, data, and rollback trail.

Fourteen years of continuity, now built to expand.

Version 5.1 advances the same compatibility-first model: extend the core with controlled packages instead of putting every future vertical into the base CMS.

  1. Version1.0

    Articles and page publishing

  2. Version2.0

    Expanded administration and content controls

  3. Version3.0

    Reusable layouts and broader content types

  4. Version4.0

    PHP modernization with legacy-content continuity

  5. Version5.0

    Portable themes, version history, and safer migrations

  6. Version5.1

    Custom-component platform, secure add-on lifecycle, and Store Lite proof

Editors work in one CMS. Extensions add only the capability a client chooses.

PHP and MySQL manage content while file-backed themes deliver presentation. In 5.1, a package joins that structure through core-owned lifecycle, access, migration, and rendering boundaries instead of arbitrary code running inside a page.

01

Custom components

A package can declare a typed content model. RED-CMS owns the editor, placement, and access checks; the package owns its isolated business data.

02

Plug-in packages

Extensions install separately for each client, validate their manifest, dependencies, checksums, and migrations, then remain disabled until an owner enables them.

03

Security at the boundary

Exact package permissions, CSRF, prepared database operations, state checks, and atomic rollback protect every approved change.

04

Lean delivery

Performance starts with a lean PHP and MySQL core: only enabled, integrity-validated packages enter the request path.

EditorAdds or edits a component
CoreValidates ownership, fields, and permissions
Trusted packageProvides an approved service when enabled
Theme + routeRenders safe, client-specific output

Core-owned authoring

Custom component types, without handing the CMS over to a plug-in.

A package can describe bounded fields and the permissions needed to use them. The core renders the administration controls, verifies a current state, and performs approved writes transactionally. It is plug-in-style expansion with an intentional installation and enablement path—not an unreviewed upload.

  • Typed fields, validation limits, and exact per-package grants
  • Core-rendered, escaped editor controls—not package-supplied admin markup
  • CSRF, state-hash checks, transactions, and rollback on failed postconditions
  • Per-client migration evidence, value snapshots, and restore preflight
RED-CMS Form Builder shown above its corresponding public website, demonstrating structured authoring connected to live output.
Core-owned form workflow / structured authoring connected to outputView full screenshot

Store Lite / first 5.1 proof

An optional store, built as a package rather than bolted onto every site.

Store Lite is the first separately distributed commerce service. In isolated browser rehearsals, it supports products, variants, add-to-cart, quantity updates, removal, and pickup or delivery orders paid on receipt. Installations that do not need commerce keep no Store Lite code, data, or tables.

Review the GitHub development record

Store Lite's hosted demo deployment and card/payment adapters remain separate release gates. Product screenshots and installation names are shown with permission; private configuration, credentials, databases, and operational data are not shown.

Content models / custom CMS / compatibility-first modernization

Need a platform that can evolve without erasing its history?

Project inquiry

*This is not a valid name.*This is not a valid email.*This is not a valid organization. *This is not a valid projectType.*This is not a valid message.

Your inquiry is sent privately to Oscar Rojas.

Return to selected work