I would like to pre-populate lead data in a form to allow leads to confirm/modify their data.
The scenario is as follows (something like you describe in https://www.mautic.org/community/index.php/307-using-mautic-for-event-registration/0):
- I send a mail to a lead with some data
- The user clicks in a button to go to a landing page with a form
- The form is auto-filled with his data
- The user can update his data (email, tel, address…)
The problem is about security: if a lead knows the email addresses of another leads he is able to modify the data of these another leads.
I’m not sure how to manage this issue, I tried making a new field (ID number) that is Unique Identifier as well as Email is and adding it as a hidden field in the form, but my security problem persists.
Do you have any idea about how to manage this to ensure that a lead only is able to modify his own data?