Access control
Password-protect a form, cap responses, set a close date, prevent duplicates, and limit embedding origins.
Access settings live in the form’s Access & settings area. They’re enforced on our servers, so they can’t be bypassed by tampering with the page.
Password protection
Turn on a password and respondents must enter it before they can see the form. Set or change it anytime; clear it to remove protection.
Submission limit
Set a maximum number of submissions and the form closes automatically once it’s reached — handy for limited spots or capped giveaways.
Close date
Schedule a date/time after which the form stops accepting responses.
Closed message
Customize the message people see when a form is closed (by limit or date). The default is “This form is no longer accepting responses.”
Prevent duplicate submissions
Pick a field (like email) as a dedupe key and the form will reject a second submission with the same value, showing a message you can customize.
Allowed origins
List the domains permitted to embed the form. Submissions from any other origin are refused — a simple guard against your form being lifted onto someone else’s site.
Password protection controls access, not encryption. For sensitive collection, combine it with your own consent and privacy practices.
Still need help?
A dedicated support form is coming soon. In the meantime, jump back into the product or reach the team from the contact page.
HigherStack