Skip to main content
Solved

Public "view only" prototypes allow any user to access Figma settings


When I share any prototype for testing externally, I create a view only link that allows unauthenticated users access. However, when I do this, these participants are able to access the figma UI by clicking the ESC key. This allows them to access and change any of the option menu settings and see other people who are also viewing the prototype (a major privacy and security risk). Is this the expected behavior or a bug? Is there a way to “lock” the prototype from this kind of tampering? Am I doing something wrong?
Thanks,
Aaron

Best answer by tank666

I don’t remember the Esc key being able to invoke Figma UI, but the Figma team may have changed something. So, as an alternative, I can only suggest embedding a prototype iframe in your site.

The iframe code should look something like this:

<iframe width="100%" height="100%" src="https://www.figma.com/embed?embed_host=share&amp;url=https%3A%2F%2Fwww.figma.com%2Fproto%2FfileKey%2FfileName%3Fshow-proto-sidebar%3D0%26hotspot-hints%3D0%26hide-ui%3D1"></iframe>
View original
This topic has been closed for comments

4 replies

tank666
  • 4868 replies
  • May 1, 2023

  • Author
  • 1 reply
  • May 1, 2023

Thanks for the quick response. However, even with those settings enabled and in incognito mode, I can still hit the ESC key and bring up the UI. I want to ensure that the participant can only see the prototype and none of the options. Is that possible?


tank666
  • 4868 replies
  • Answer
  • May 1, 2023

I don’t remember the Esc key being able to invoke Figma UI, but the Figma team may have changed something. So, as an alternative, I can only suggest embedding a prototype iframe in your site.

The iframe code should look something like this:

<iframe width="100%" height="100%" src="https://www.figma.com/embed?embed_host=share&amp;url=https%3A%2F%2Fwww.figma.com%2Fproto%2FfileKey%2FfileName%3Fshow-proto-sidebar%3D0%26hotspot-hints%3D0%26hide-ui%3D1"></iframe>

  • 0 replies
  • May 31, 2023

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.


Cookie policy

We use cookies to enhance and personalize your experience. If you accept you agree to our full cookie policy. Learn more about our cookies.

 
Cookie settings