Data security, Install link

Romain
New Member

Hi,
I have deployed an app with some views which have Show if Formula like
contains(USEREMAIL(),“gmail”)

When I have deployed and whitelisted an user who have an email adress xx@yahoo.fr, he received an email for installing appsheet or open in a browser.
2X_f_fb2def34436ad87363706a8f79033d9e24b33a70.jpeg
He first click on Open in Browser from his mailbox “xx@yahoo.fr” and the app opened like he was an user from an email address “xx@gmail.com”. He saw all the views which are normally for people with gmail adresses.

Then he installs the app and connect from his yahoo adress and the filter works correctly.
How is it possible to avoid this situation that whitelisted users can open in browser the app like he was the creator of the app?

0 5 289
5 REPLIES 5
Top Labels in this Space