Skip to Help content

Control form access and limits

Set form limits, dates, and buyer access

Outcome: Control who can open a form, when it is available, and when it closes.

Set submission and order limits

Open Dashboard, choose Selling, and find the form in My Forms. Choose Edit form (the labeled icon in List view), then Settings → Limits. The form's Form settings gear also opens Settings directly. Submission Limits is the heading inside Limits, not a navigation item. A value of 0 turns that limit off.

  • Max Submissions caps the total number of saved order records, including archived and cancelled orders. Archiving does not free a submission slot; deleting an order removes that record from the count.
  • Max Items Sold caps product quantity in orders other than cancelled, failed, or refunded orders. Pending orders count toward it.
  • Minimum and maximum items per order control product quantity in one checkout.
  • Minimum and maximum product subtotal use priced products after product, variant, bulk, and form-wide sale pricing, before coupons, shipping, and fees.
  • Minimum and maximum order total use the final submit-time total after discounts, shipping, and applicable fees.

Per-order item, product-subtotal, and order-total limits require a Products block; those controls are disabled without one. Choose Save changes after configuring the limits. EZFormz shows guidance in the buyer form and enforces the limits again when the order is submitted. A submission or sold-item cap can make the form unavailable when reached. Preview the boundary values, then use clearly marked test orders to confirm the authoritative final calculation. Shared-form changes require the relevant form-settings or products permission.

Schedule when ordering is available

In Settings → Limits, turn on Open Date to keep a published form unavailable until the selected time; buyers see a countdown. Turn on Close Date to stop new orders at the selected time. Choose the intended timezone for each value, keep the open time before the close time, and choose Save changes.

Scheduling does not replace an inactive form status. A published form before its open time shows a countdown, and after its close time rejects new orders. Test the public link signed out and confirm the displayed time is correct for the audience.

Choose an access mode

Open Settings, then Security, and choose:

  • Public: anyone with the link can open the form.
  • Password: everyone uses the same form password. This is a shared gate that can be forwarded; it is not encryption and does not identify an individual buyer.
  • Invite-only: add approved email addresses, send an invite, and require the buyer to verify access to an invited inbox. This is an email identity gate, not formal proof of a person's identity.

To set a shared password, choose Password, enter it under Password Protection, and choose Save changes. Test the public link in a signed-out browser.

For buyer-specific access, the form owner can set up invite-only access:

  1. Choose Invite-only, set Orders per invited email (0 for an unlimited default or 1 for one order), then choose Save changes to publish the access mode and default allowance.
  2. Under Add invited emails, enter the approved email addresses, one per line, and choose Add Emails. This saves the invite records immediately; it does not send email.
  3. In the invite list, choose Send beside each email that should receive an invitation. Use Refresh to reload the list.
  4. Choose Revoke beside an email when access should end, and confirm the prompt. Revocation immediately disables that invite and its active access sessions.

Add Emails, Send, and Revoke act immediately; they do not wait for Save changes. A collaborator's form-settings permission does not grant management of the buyer invite list.

Changing the form's default allowance does not replace a positive limit already saved for an invited email. To update that email's saved limit, set the desired Orders per invited email value and add the same email again with Add Emails; its previous order usage remains. Choose Save changes separately if you also intend to update the form default. A saved per-email value of 0 uses the current form default, so it is unlimited only when that default is also 0. Prefer invite-only over a shared password when buyer-specific access matters.

Pages, conditions, and hidden fields are interface features, not access control. Do not use them to hide privileged content from someone who can already load the form.

Redirect buyers safely

Open Settings → Thank You Page, turn on Use custom thank you page, then fill Redirect URL (optional). This sends the buyer to another site after submission instead of showing the EZFormz thank-you page and its order-summary card. Use only a trusted https:// destination you control. Do not put names, email addresses, order details, passwords, access tokens, or other personal or secret values in the saved URL or its query string.

Choose Save changes, then test password or invite access and the redirect in a signed-out browser. Keep a normal thank-you message when an external redirect is unnecessary.

Review the other settings boundaries

  • Publishing controls the active status; Security contains Custom URL Slug. Making the form Public under Security does not make an inactive form accept orders.
  • Order Edits controls whether buyers can request changes, which fields remain editable after close, and any explicitly enabled auto-accept actions. See Edit orders and review buyer requests.
  • Payment Proof collects buyer evidence. The seller's Proof verified acknowledgment records review and does not change order-edit calculations. If Auto-mark order Paid when you verify payment proof is on, that same seller action also moves an order from Received to Paid; it still does not verify the amount or use the on-chain result as money.
  • Profit & Loss enables seller-only cost snapshots for new orders and seller item edits. Enabling it does not invent missing catalog costs. See Set up Profit and Loss.
  • Integrations contains the current Google Sheets and Airtable connections. Access settings do not grant a buyer access to those seller integrations.