Using the public onboarding / intake link

Publish one stable public URL that clients open to verify themselves end to end, with no staff initiation. Only XPM creates a client record from it, and there is a daily cap.

Using the public onboarding / intake link

Overview. The public intake link is a single, stable web address you can put on your website or send to clients so they verify themselves from start to finish, with nobody on your team having to begin the check. A client opens the link, enters their name and email, and goes through your normal consent, intake, biometric and risk-assessment flow. Completed checks land on your dashboard tagged Public form. If you use XPM, each completed check can automatically create a new XPM client. There is a daily cap on how many verifications the link will accept (default 25, up to 500). The public link is available on the Growth plan and above, not on Starter.

What the public link is for

Normally a staff member starts a check on a named client. The public intake link flips that around: it is one reusable URL that any of your clients can open to verify themselves, with no staff initiation at all. That makes it ideal for onboarding new clients at scale, putting a verification step on your website, or emailing a batch of people a single link rather than sending each one an individual request.

The link is stable and reusable: it is the same URL every time, so you can publish it once. When a client opens it, they enter their email and name and are dropped straight into your firm's normal Tranche 2 journey, the same consent, intake, biometric and risk-assessment steps you have already configured. Completed public verifications appear on your dashboard tagged Public form, so you can always tell a self-serve check from a staff-initiated one.

You enable and manage the public link from your Integrations settings in the app. You cannot enable it until your consent, intake and risk-assessment forms are configured, because those are the steps the client will be taken through.

Turning it on and off

An admin switches the link on, and switching it off closes the link immediately. Disabling it does not disturb any verification that is already in progress or already completed; it simply stops the URL accepting new starts. So you can safely take the link down, for example between onboarding campaigns, without losing anything already underway.

If a client starts and then closes their browser, the verification email they receive links back into their in-progress flow, so they can return and pick up their verification rather than starting over.

Creating a client record from the public link

This is the most important thing to understand about the public link. Out of the box, a completed public verification creates a new client record automatically in XPM.

  • For a connected XPM integration, an admin can turn on "create an XPM client on completion", choose when it fires (after intake, after the biometric, or after the risk assessment), and map the intake questions to XPM profile fields. Each qualifying completion creates exactly one new XPM client, and re-processing never creates a duplicate. Once the risk assessment completes, the result fields are written onto that newly created client. This works out of the box, with no ticket required.
  • Creating records in other platforms (such as Karbon, HubSpot or FYI) from the public link is available on request. Raise a support ticket, and provided you are on at least the Growth plan, we can set it up for you. Without it, a public verification on those systems still completes and appears on your dashboard; it just does not create a client record on its own.

One thing to plan around: creation is insert-only. If the same person goes through the link twice, that creates two verifications (and potentially two XPM clients), because there is no email-match merge. Share the link deliberately, and avoid asking the same client to complete it more than once.

The daily cap

Because the link is public, an admin sets a daily cap on how many verifications it will accept. The default is 25 per day, and you can raise it up to 500. The count resets each day.

Set the cap to match your expected onboarding volume. If you are running a one-off batch, raise it for the day; if the link sits quietly on your website, a lower cap is a sensible guard. When the cap is reached, further submissions are simply held until the count resets the next day. The link also has built-in protection against junk and bot submissions running quietly in the background, so you generally do not need to think about it, the daily cap is the control you set.

Frequently asked

What is the public intake link for? It is a single, stable web address you can share so clients verify themselves end to end without anyone on your team starting the check. A client opens the link, enters their name and email, and is taken through your normal consent, intake, biometric and risk-assessment flow. Completed checks appear on your dashboard tagged Public form.

Does the public link create a client in my system? Out of the box, in XPM: each completed public verification can create a new XPM client automatically. Creating records in other platforms (Karbon, HubSpot, FYI) from the public link is available on request via a support ticket, provided you are on at least the Growth plan. Either way, the verification still completes and appears on your dashboard.

Is there a limit on how many people can use it? Yes. Because the link is public, an admin sets a daily cap on how many verifications it will accept. The default is 25 per day and you can raise it up to 500. The count resets each day. Once the cap is reached, further submissions are held until the next day.

Can a client come back if they do not finish in one go? Yes. The verification email links back into their in-progress flow, so a client who leaves can return to their verification rather than starting again. Turning the public link off does not affect anyone whose check is already in progress or complete.

Related links

Can't find your answer?

Our support team is here to help.