Choose who gets it
Send to offers three choices: the patient’s own email on file, a different email you type in yourself, or both. Choosing a different email shows Other email(s) — up to three addresses, separated by commas — and a note that sending to anyone other than the patient is a disclosure, with Reason for this disclosure required before you can send. That reason is written to the patient’s disclosure log along with who it went to and when; see Access log, disclosure accounting and reviews. An optional Note to include is for a short message only — never health information. Each recipient gets their own link, valid for 7 days from when it was sent. Sending again — to the same or a different address — always creates a new link rather than changing an existing one.What the recipient sees
1
Open the link
The page shows Verify it’s you and, where your workspace’s name is available, Shared by {your workspace} — nothing about the patient or the report yet.
2
Request a code
Selecting Send me a code emails a one-time code to the same address the link was sent to. The page then reads Enter the 6-digit code we sent to {the masked address}.
3
Enter the code
The 6-digit code verifies itself as soon as the last digit is entered — there is no separate confirm button. A wrong code clears the box and shows That code is incorrect.; select Resend code to have a new one emailed at any point.
4
View or download
Once verified, the page reads You’re verified. You can view or download the report below. — with View and Download buttons. What comes down is a stored copy of the report exactly as it looked at the moment it was sent; if the record is corrected or updated afterwards, the recipient’s copy does not change to match — send a new link for that.
See and revoke a report’s links
Select Send on the report at any time to see Shared links — every link raised for it, or No links have been sent for this report yet. if none has. Each one shows the masked recipient address, whether it went to the Patient or an Other address, its status (Active, Expired or Revoked), when it was sent and expires, and whether it has been opened. An active link offers Revoke. Confirm and it says so plainly: “{recipient} will lose access immediately — they will not be able to view or download this report with this link again.” Once revoked, the recipient’s next visit shows the same “no longer available” message an expired link shows.The disclosure log
Every report sent to an address that is not the patient’s own email on file is one more entry in that patient’s disclosure log, alongside reports exported or printed and documents emailed to someone outside your workspace. See Access log, disclosure accounting and reviews for who can read it and how to export it.Check it worked
- The confirmation names the masked address (or addresses) it went to.
- Reopening Send on the same report shows the new link under Shared links, marked Active and Not opened yet.
- Once the recipient completes the code step, that link’s row shows it has been opened.
- After Revoke, the row reads Revoked, and the recipient’s next visit to the link shows the revoked message with no download offered.
Common issues
The recipient says the link doesn't work
The recipient says the link doesn't work
Links expire after 7 days, and a revoked one shows the same kind of message. Select Send on the report and send a new one.
They never received the code
They never received the code
Ask them to check spam, and confirm you sent to the address they are checking — a link only ever emails a code to the address it was sent to, never a different one.
They entered the wrong code too many times
They entered the wrong code too many times
After five wrong attempts the code entry shows Too many attempts. Try again later. Send a new link rather than trying to reuse the old one.
I sent to the wrong address
I sent to the wrong address
Open Send on the report, select Revoke on that link straight away, then send a new one to the right address.
FAQ
Can someone who isn't the intended recipient open the link?
Can someone who isn't the intended recipient open the link?
Having the link alone is not enough — opening it only reaches the code step; downloading needs the one-time code, which is emailed to the address the link was sent to and never shown on the page itself.
Does the recipient need an account?
Does the recipient need an account?
No. The link and code work without signing in or creating anything.
If I correct the report after sending it, does the recipient's copy update?
If I correct the report after sending it, does the recipient's copy update?
No — what they can download is a snapshot from the moment you sent it. Send a new link if they need the corrected version.
Is sending to the patient's own email on file also logged as a disclosure?
Is sending to the patient's own email on file also logged as a disclosure?
No — the disclosure log is for addresses other than the patient’s own on file, the same rule the rest of your workspace’s disclosure accounting follows.