LaneyGuide
Forms

Choose public or secure form access

Match access to the form mode, customer identity, and data sensitivity, then share the link safely.

How-to8 minVerified Aug 9, 2026Owner Laney Product

Access binds a link to its user and write target. A custom field's Visibility controls whether a customer surface can expose the field. Review both settings.

Find the controls

  • Change access: Open Forms. Select the form and then Access.
  • Copy a public link: Select Copy link in Forms.
  • Create a secure link: Select Create secure link in Forms.
  • Check bound records: Open Customers and Reservations in separate tabs.
  • Check usage: Open Responses to inspect final state and target records.

Saving the form defines the link rules. The form list creates or copies a link that follows those rules. A Public form shows Copy link. A Token form shows Create secure link.

Select an access method

Operating caseRecommended accessRecommended ModeReason
Collect a new customer's detailsPublicUpdate SelfThe visitor creates and updates their customer record.
Accept a new consultation or reservationPublicProfile Then InsertLaney saves reachable contact data before the reservation.
Update a known customerTokenUpdate SelfThe link is bound to one customer.
Create a reservation for a known customerTokenProfile Then Insert or InsertThe link already identifies the customer.
Change an existing reservationTokenUpdate TargetThe link fixes both the customer and reservation.

Update Target always uses Token. Selecting this mode removes public access as an option.

Keep a public form limited to information needed for first contact. Do not request national identifiers, passport data, detailed medical history, or opposing-party information through a public link. Use a process that follows your organization's privacy requirements.

  1. Save the form with Public access.
  2. Confirm that Active is on and that the field configuration is valid.
  3. Select Copy link from the form row.
  4. Open the link in a signed-out browser.
  5. Confirm the visible fields and branch.
  6. Use the verified link in a landing button, email, or message.

A visitor does not see a sign-in screen. Laney creates the visitor session needed for drafts and submission. After editing starts, the address can contain resume information. Opening that address restores the unsubmitted draft.

  1. Save the form with Token access.
  2. Select Create secure link from the form row.
  3. Select the recipient in Customers.
  4. For Update Target, select the record in Reservations.
  5. Enter an expiration in Expires at when required.
  6. Select Create and copy.
  7. Confirm the customer, reservation, and expiration before you send the link.

A blank expiration value expires after 30 days. The customer and form must belong to the same branch. An Update Target reservation must also belong to that customer and branch.

Do not send a link that is bound to the wrong customer. Select the correct customer and create a new link. If you suspect exposure of an already-sent link, turn off Active and follow your organization's privacy-response procedure. Do not wait only for the old link to expire.

A recipient can forward a secure link

A secure link is a bearer link, not a password. Another person can use a forwarded link before expiration. Confirm the recipient and channel. Ask the recipient not to forward the link.

Check the result

  • A public link opens without a sign-in screen and shows fields for the selected branch.
  • A secure link is bound to the selected customer.
  • An Update Target link changes only its selected reservation.
  • An expired or submitted secure link cannot change values again.
  • The link dialog excludes customers and reservations from another branch.
  • Members without form-update permission do not receive link actions.

Give a signed-in customer a change path

A customer who uses the organization's platform sign-in can review owned reservations and forms at /account. The Change action opens an Update Target Token form fixed to that customer and reservation. The customer does not enter a reservation ID. The administrator does not remap a secure link by hand.

Keep first intake public. Use Connect customer sign-in and reservation management for repeat-customer review, change, and cancellation. Sign-in does not remove Token target binding or expiration rules.

Use Test and troubleshoot a form when a link fails or changes an unexpected record.

On this page