A smaller plan on another device
One selected plan.
A link you can update.
A downloaded handoff keeps the version you sent. A stable viewing link can show the latest selection you explicitly publish, so another device can refresh the same address after your plan changes.
Prepare the exact selection
In the local notebook, open Prepare a plan for controlled sharing. Choose1–30 commitments and review the titles, recorded owner names, times and planning zone. Download the selected-plan JSON file. This preparation step makes no network request. It excludes private notes, unavailable intervals, proposals, household title, internal identifiers and unselected commitments.
Publish separately and deliberately
Open the controlled-sharing page, choose the selected-plan file and review it again. Creation currently requires an operator-issued creator key; this preview has no public signup, subscription or customer invitation flow. Publishing uploads only the displayed selection to the Cloudflare service. A full private notebook file is refused.
Keep management separate from viewing
The service uses two different secret links. Anyone with the viewing link can read the selected plan. Anyone with the management link can replace it, rotate the viewing link or delete it. Neither key identifies a particular person. Download and keep management details privately; share only the viewing link.
Replace an older plan without overwriting another update
Open the management link on another device, refresh the published plan and upload a newly reviewed selected-plan file. Replacement uses the version you loaded. If another device changed it first, the service refuses the stale update. Refresh and compare before deciding what to publish. Local notebook edits never publish themselves.
Recover an uncertain request
The browser retains management keys and a pending operation before sending a change. If the response is lost, keep those details and retry the same request. The service recognizes the last completed operation instead of repeating it. After a later operation, an older retry can conflict; compare the current published plan before discarding pending work.
Revoke, delete or let it expire
Rotating the viewing link stops fresh reads through every older viewing link. Deleting ends fresh viewing and management access. A plan expires30 days after creation, replacement or viewing-link rotation. Copies someone already downloaded, photographed or remembered cannot be recalled. Provider recovery copies may remain within the documented retention window.
A published record, not household synchronization
The viewer shows recorded responsibility, not proof that anyone agreed or has read it. Private availability and local proposals are not part of this service. There are no notifications, automatic calendar connections or live co-editing. Broad family-calendar products still fit those needs better.