Security Update Applied to Public Applications

Security Update Applied to Public Applications

Dear App Creators,

We have rolled out a security update on July 2nd, 2020, for "public applications" and "public components" — Zoho Creator applications or their forms, reports, and pages that are made public to all visitors over the Web:

Note: Unless you receive an email from us regarding this, this update does not concern you.
Emails have been sent





About the update

When a user (logged into their Zoho account) accessed a public component, the Deluge system variables zoho.loginuserid and zoho.loginuser were returning the logged-in user's email address and username, respectively. This will no longer happen .

From now on, the new values for these system variables in all public components are:
  • zoho.loginuser = Public
  • zoho.loginuserid = null
Please note that this update does not concern the forms, reports, and pages that you've published .

Why the update

This update has been long due. We have now fixed this behavior as it could be misapplied to collect (and use) the end user's personally identifiable information without their consent — a privacy and security vulnerability.

We apologize for any inconvenience this may cause.

Action required

If you've made applications and components public, we request that you check them for the usage of the system variables zoho.loginuser and zoho.loginuserid, and ensure that your application logic remains intact when these variables return Public and null, respectively.

- - - - - - - -

If you have any questions or concerns, of need any assistance, please comment below, or reach out to us at support@zohocreator.com

Best,
The Zoho Creator Team

    Access your files securely from anywhere

          Zoho Developer Community




                                    Zoho Desk Resources

                                    • Desk Community Learning Series


                                    • Digest


                                    • Functions


                                    • Meetups


                                    • Kbase


                                    • Resources


                                    • Glossary


                                    • Desk Marketplace


                                    • MVP Corner


                                    • Word of the Day



                                        Zoho Marketing Automation
                                                • Sticky Posts

                                                • Zoho Creator - 2023 Release Projection 1

                                                  Hello everyone! A very Happy New Year to you and your family. Hope you're all good and having a great time using Zoho Creator to make your lives easier and your businesses prosper. 2022 was an action-packed year for us at Creator, and we hope to continue
                                                • Zoho Creator User Group meetups in a city near you! - Oct - Nov, 2023

                                                  Greetings from the Zoho Creator team! We're hosting a series of Zoho Creator meetups in various cities across the globe, and we'd love to meet you there! Our meetups are a great opportunity to network with industry peers, exchange ideas and best practices,
                                                • Zoho Creator - 2023 Release Projection 2

                                                  Hello everyone! Time truly flies when you're having an incredible journey, and today we mark the completion of an eventful and action-packed six months. It feels like just yesterday when we embarked on this adventure together with the launch of our new
                                                • Upcoming Updates - August 2022

                                                  Hi all, Greetings from the Zoho Creator team! Today we've got news for you on some exciting updates. And rest assured— there’s more to come! In this post, we'll be going over the upcoming features and improvements for this month as mentioned below. A
                                                • Introducing Zoho Creator's v2 APIs

                                                  Hello App Creators, Welcome to Zoho Creator's v2 APIs! This post will serve as the central point for migrating implementations of Creator's current APIs (v1) to v2. Improvements that v2 brings OAuth-based authentication, which is more secure than the


                                                Manage your brands on social media



                                                      Zoho TeamInbox Resources

                                                        Zoho DataPrep Resources



                                                          Zoho CRM Plus Resources

                                                            Zoho Books Resources


                                                              Zoho Subscriptions Resources

                                                                Zoho Projects Resources


                                                                  Zoho Sprints Resources


                                                                    Qntrl Resources


                                                                      Zoho Creator Resources



                                                                          Zoho Campaigns Resources


                                                                            Zoho CRM Resources

                                                                            • CRM Community Learning Series

                                                                              CRM Community Learning Series


                                                                            • Kaizen

                                                                              Kaizen

                                                                            • Functions

                                                                              Functions

                                                                            • Meetups

                                                                              Meetups

                                                                            • Kbase

                                                                              Kbase

                                                                            • Resources

                                                                              Resources

                                                                            • Digest

                                                                              Digest

                                                                            • CRM Marketplace

                                                                              CRM Marketplace

                                                                            • MVP Corner

                                                                              MVP Corner





                                                                                Design. Discuss. Deliver.

                                                                                Create visually engaging stories with Zoho Show.

                                                                                Get Started Now


                                                                                  Zoho Show Resources


                                                                                    Zoho Writer Writer

                                                                                    Get Started. Write Away!

                                                                                    Writer is a powerful online word processor, designed for collaborative work.

                                                                                      Zoho CRM コンテンツ






                                                                                        Nederlandse Hulpbronnen


                                                                                            ご検討中の方





                                                                                                  • Recent Topics

                                                                                                  • Zoho Sign embedded iframe

                                                                                                    Hello, we are looking for any of these options: a) some iframe that we can paste into our website for every signer, for onpage signing document. b) or get direct link for signers from Zoho sign API which we can redirect manually. Is any of these options
                                                                                                  • SEO recommendation of H1 tag for website tittle

                                                                                                    The exact words are “ It is good practice to place the page title inside the H1tag.” Now I already have one H1 tag on my website but it is not website tittle. In the SEO recommendation that is clear too that I have h1 tag on my page. Now I don’t know
                                                                                                  • SIGNATURE FIELD INSIDE CRM MODULE

                                                                                                    I need to have a signature field inside CRM MODULE This can be used into my Post Sales Module that i´ve created to make Meetings Summary I need my client to sign this Meetings Summary during my visit and that ain´t possible with Zoho crm I know we have
                                                                                                  • email and username change

                                                                                                    HI, I'd like to change my email and username for my zoho store, please help me on this issue.
                                                                                                  • "Extra keys limit has exceeded"

                                                                                                    Hello, Has anyone encountered the below message before in a workflow log failure: "Update Record Response is {\"code\":52,\"message\":\"Extra keys limit has exceeded\"}" The script is supposed to generate an invoice for a deposit when a deposit payment
                                                                                                  • Collapsible Sections & Section Navigation Needed

                                                                                                    The flexibility of Zoho CRM has expanded greatly in the last few years, to the point that a leads module is now permissible to contain up to 350 fields. We don't use that many, but we are using 168 fields which are broken apart into 18 different sections.
                                                                                                  • use of comma as a decimal separator

                                                                                                    Hello, I wish to find a way to customize the number format for my proper use. I have to use french data, where the "," is used as the decimal separator : for example the french way to write "3.99�" is "3,99�" Is it possible to do it in Zoho Sheet ? If this is not actually the case, I'd love this feature to be implemented !
                                                                                                  • Ability for customer to give feedback after receipt of an order

                                                                                                    Is there any way we can receive feedback from customers regarding their order after delivery (other than just an email, obviuosly)? This is not the same as product reviews, as it may concern other points, but would ideally have an inbuilt reference to
                                                                                                  • Zoho meeting api not working in trial version

                                                                                                    I have and free trial meeting access. When i have tried to create a authentication code for meeting it shows Invalid OAuth Scope error. My code: $client_id = 'client_id'; $redirect_uri = 'site_url'; $scope = 'ZohoMeeting.organize.CREATE,ZohoMeeting.organize.READ';
                                                                                                  • Why is Nordic No Longer Available as a Translation Service for Email

                                                                                                    I routine receive email in Nordic but now it has been removed from the list of available translations. Why?
                                                                                                  • Create WorkDrive Folder with specific Sub-Folders when new Zoho CRM entry in "Accounts" Module

                                                                                                    So, my flow creates a WorkDrive Folder in the required Team Folder, but I want the same flow to create four Subfolders within the new folder. Man, Woman, Boy & Girl sub-folders I was looking at this below but how do I identify the new Parent folder as
                                                                                                  • Live webinar: 2024 recap of Zoho Show

                                                                                                    Hello all, 2024 has been an incredible year for Zoho Show! We've listened to your feedback and worked continuously to strengthen the tools you use to create, collaborate, and deliver presentations. From rolling out new features to enhancing existing ones,
                                                                                                  • Changing Customer Currency

                                                                                                    It seems so silly that you can't change a customer's currency after a transaction is recorded. We work with companies all over the world and sometimes they might request an invoice in a different currency. To do this I have to create another customer
                                                                                                  • Bulk payment of bills from multiple vendors

                                                                                                    Is there a way to pay multiple vendors bills in one transaction?  It appears that you have to deal with each one as a seperate transaction.  Is there a way to export the transactions to the bank using an ABA file?
                                                                                                  • WorkDrive API Documentation

                                                                                                    WorkDrive provides users and developers an extensive set of APIs to help integrate functionalities of Zoho WorkDrive with other Zoho applications and third-party tools. We have published the official WorkDrive API Documentation page for all external users.
                                                                                                  • Record Asset Received as Payment

                                                                                                    How exactly would you account for this in books? For example, I receive a mini computer for a review and I get to keep it after the video is published. Would debit my normal asset account (e.g. Computers) and credit an income account (e.g. Other Income).
                                                                                                  • Line_Items not appearing in invoice arrays

                                                                                                    When i use the Zoho API to pull an invoice, it doesnt show the Line_items array... In the documentation it shows that it should appear but it does not. Is there any way to fix this?
                                                                                                  • Active Customer List 2024

                                                                                                    Hello everybody, i am just a beginner :) how can i create a customer list of all active customer in 2024? Active customer means, all customers, who received an invoice in 2024 of us. Just tried already in CRM. Can i do that also in ZOHO books? I am looking
                                                                                                  • Notifications on mentions in comments

                                                                                                    If another user mentions me (e.g. @mustafa... which autocompletes) in a comment on a ticket, how do I get notified? If I don't get notified, what on earth is the point of the mention feature???
                                                                                                  • [New] Create invoices and contracts in minutes with Zoho Writer's Merge Templates for Bigin!

                                                                                                    Do you often find yourself manually entering customer information in your business documents like invoices and contracts? This can be a time-consuming process that can take up valuable time from your business operations. With Zoho Writer's Merge Templates
                                                                                                  • Setup for a service based business

                                                                                                    I apologise if this has been asked before but a search of the forums didn't turn up what I was looking for. I am looking at setting up Zoho CRM for a consultancy based business and so there are no products as such. This is fine as I can create a product which is time based. However, I do not seem to be able to get rid of the concept of having quantity in stock. I have a unlimited supply of time! How can I bend Zoho to my will and get rid of the stock control? Thanks Neil
                                                                                                  • Introducing the New SalesIQ Live Chat Widget: Twice as Fast, Fully Optimized for Engagement!

                                                                                                    Hello everyone! To celebrate our 10-year milestone, we're thrilled to unveil the new and improved SalesIQ Live Chat Widget! Redesigned at both the User Interface and performance levels, this enhanced widget is not only optimized but also 2X faster than
                                                                                                  • Search terms from ASAP widget are not showing up in my Zoho Desk analytics

                                                                                                    When people perform searches in the Zoho Desk ASAP widget, the search terms do not show up inside my analytics report. But when people access the KB website directly and then do the search, the keywords ARE showing up. Is this a known issue, or am I just
                                                                                                  • Microsoft Loop integration

                                                                                                    Hi has anyone had luck getting any components of Microsoft Loop integrated into Zoho One, for example Follow-up tasks into Zoho Projects or other app, or perhaps Loop notes into Zoho Notes? cheers
                                                                                                  • Searching for content within courses

                                                                                                    Hello, I have been testing out Zoho One for my company have been exploring Learn. I've noticed that you cannot search for content within a course. You can only locate the title of the course. Example: Course: How to Make Your Bed Chapter: Pillows Lesson:
                                                                                                  • Cohort - Zoho Analytics

                                                                                                    I am developing a cohort analysis in Zoho Analytics for Tickets/Service Desk, which tracks the number of tickets created each month and when those tickets were closed. I have added a user filter for classification. When I change the classification using
                                                                                                  • Function #6: Calculate Commissions for paid invoices

                                                                                                    Zoho Books helps you automate the process of calculating and recording commissions paid to sales persons using custom functions. We've written a script that computes the commission amount based on the percentage of commission you enter and creates an
                                                                                                  • Helper Functions and DRY principle

                                                                                                    Hello everyone, I believe Deluge should be able to use 'Helper functions' inside the main function. I know I can create different standalones, but this is not helpful and confusing. I don't want 10000 different standalones, and I dont want to have to
                                                                                                  • Automation Issue with Email Templates in Workflow

                                                                                                    Hello Zoho Support Team, I’m currently facing an issue with the automation setup in my workflow for following up with applicants. I have configured the workflow to send out emails with different templates, which work perfectly when sent manually. However,
                                                                                                  • Disable Private Reply.

                                                                                                    Is it possible to disable the option to do "Private Reply" for tickets? The reason is that sometimes we click on reply or "reply all," but the system automatically selects "private." Am I doing something wrong? Thanks Rudy
                                                                                                  • Zoho Books | Product Updates | October 2024

                                                                                                    Hello users, We're back with fresh feature updates in Zoho Books. Starting from associating an applicable period for TDS taxes to minimised tab view for web tabs, discover the latest enhancements that will streamline your workflow and elevate your accounting
                                                                                                  • Merge Items

                                                                                                    Is there a work around for merging items? We currently have three names for one item, all have had a transaction associated so there is no deleting (just deactivating, which doesn't really help. It still appears so people are continuing to use it). I also can't assign inventory tracking to items used in past transactions, which I don't understand, this is an important feature moving forward.. It would be nice to merge into one item and be able to track inventory. Let me know if this is possible.
                                                                                                  • Failures installing Unattended Agent using Microsoft Intune

                                                                                                    Hello, I configured Zoho Assist Unattended Agent using Microsoft Intune, following the steps outlined in this article, using a .MSI installer. I added a pilot group of users and for 6 of them it installed correctly and I see their computers in Zoho Assist
                                                                                                  • Getting list of calendar events over api for zoho mail calendar

                                                                                                    Hi, I am using just Zoho mail without using Zoho CRM. I wanted to get all events booked in my zoho mail calendar through an api at regular intervals. I could find such API support for Zoho CRM calendar but not for zoho mail calendar. Can you kindly let
                                                                                                  • Crear tarea CRM con recordatorio desde Zoho Flow

                                                                                                    Hola, estoy intentando crear desde Zoho Flow una tarea en CRM. Lo he logrado hacer pero sin recordatorio, ya que no se como se debe escribir el string adecuado. He probado varias alternativas, pero ninguna me funcionó hasta ahora. - FREQ=NONE;ACTION=EMAIL;TRIGGER=DATE-TIME:${FechaVto}
                                                                                                  • Recurring Bookings

                                                                                                    Will Zoho Bookings ever offer an option to the customer to schedule recurring meetings (unlimited) for the same days/times? Making a client schedule the same days/times for an entire month is a tedious process. I'd like to offer the option upfront to
                                                                                                  • Zoho CRM's new Homepage component: See all your activities in one powerful view!

                                                                                                    Hello everyone, We’re excited to introduce a new feature to your CRM dashboards: the Homepage Open Activity Component! Now you can effortlessly track all your open activities—including tasks, meetings, calls, and appointments—in a unified view, tailored
                                                                                                  • No fue posible enviar el mensaje;Motivo:553 Relaying disallowed. Invalid Domain - admin@laboratoriosantarosa.org

                                                                                                    Hola Renovamos después del tiempo el dominio, y luego de eso se cayó el servicio de correo. Seguimos las indicaciones que se indican en este articulo, sin embargo, hasta el momento solo podemos recibir correos pero no enviar. Hemos actualizado los registros
                                                                                                  • Add an option to start zobot when user clicks the Chat with Us button

                                                                                                    I would like to have an option to start the zobot when user clicks on "Chat with us" button when chat widget is maximized
                                                                                                  • Ticket list sorting is now supported in the latest version of the Desk Android mobile app.

                                                                                                    Hello, In the latest version of the Desk Android mobile app (v2.4.32), we have brought in the option to sort the ticket listing view.   Now we can sort the tickets listing by Ticket Id, Due Date, Recent Thread and Created Time. Please update the app either
                                                                                                  • Next Page