Skip to main content
Question

formula in one app that allows an eoti user to download a doc on a specific record

  • January 22, 2026
  • 0 replies
  • 253 views

Forum|alt.badge.img+2

Need a formula on the original app that constructs a url to an eoti app to a specific record id and field using secure links

App A has a field that constructs a url to the eoti app to include in emails

Email is sent to eoti user with link that allows them access to one document and auto downloads it

MarkShnierYou
Forum|alt.badge.img+24

Well,  you would just append your URL with &AccessKey= followed by the formula for the Access Key. 

Is your application with the single document set up for secure links? Do you have that Permission setup in place and have you invited every on the internet to the target app with a custom rule to view? 

Typically, you would use their suggested formula like SHA256 ([Record ID#] on your documents table, and that would be the code for the secure link. So you would simply view that field on the record on the target table and it will have this very long character string which you would copy and paste into your URL that you are emailing emailing.  

Feel free to post back if you still have questions about secure links. At first, it took me a while to "get it" as to how they work.

Note also that secure links only guaranteed to work on new style forms.  You might be able to get away with viewing on an old form, but not editing. 

https://help.quickbase.com/docs/secure-links

https://help.quickbase.com/docs/what-you-can-access-with-secure-links

 

 

 


Forum|alt.badge.img+2
  • Author
  • Registered
  • January 23, 2026

I could have given more details.....

The EOTI app has a documents table and a link is sent via notification from the main app to that table.   I updated the EOTI app to have view permissions for only the file attachment field.   

Can the secure link exist in the main app but allow access to a table in the EOTI app?


Forum|alt.badge.img+2
  • Author
  • Registered
  • January 23, 2026

var text accesskey = SHA256(([Record ID#]) & ToUnixTime([Date Created]));

"https://dish.quickbase.com/nav/app/bud2fjk9n/table/bujzbxjuk/action/q?qid=5"&$accesskey

Do I put the get access key formula url on each record in the report of documents?


MarkShnierYou
Forum|alt.badge.img+24

Are you trying to provide a link to a single record or to all records on a report? The URL provided was for report number 5. I thought you wanted to give access to a single record. That would be much easier.  


Forum|alt.badge.img+2
  • Author
  • Registered
  • January 23, 2026

that's part of the issue, we want them to see all the documents in the eoti table.   I've already created a link that just does the download but that would mean multiple additional notifications

Plus we may have a person that needs to see more than one document

 


Forum|alt.badge.img+2
  • Author
  • Registered
  • January 23, 2026

a report of records

 


MarkShnierYou
Forum|alt.badge.img+24

Well, here's the challenge. The typical use of secure links is that you include the Access Key parameter as "&AccessKey=1234xxxxxxxxxxxxxxxxxx that must appear somewhere in the URL on top of the screen you are sitting on.

The GetAccessKey() function looks at the URL and calculates that to be  

1234xxxxxxxxxxxxxxxxxx

Then typically you have a custom permission rule that compares the access key that it sees in the URL at the top of the page with a calculated access key based on that SHA256 formula, and you make a formula that says if those match then the users is allowed to view the record.  

If you want to send the user to our report where all records on that report are going to be valid for the user than somehow the access key, which is at the top of the screen needs to match the calculated access key on each record.  

You seem to have a situation where different EOTI type participants are allowed to see different records.

If you were sending individual links to individual records, then it would be easy because you could just copy and paste the extended URL on the target table, which includes the access key into the link that you send the user.  

But if you want to send them to a report, then that means the access key free recorder has to match the access key that you provide at the top of the screen and the URL.  

 

 

.