Manager PINs

A short code that lets a named manager sign off food-safety steps on a shared screen.

Who can do thisBrand admin

A recipe viewer belongs to a location, not a person — which is right for service, and a problem for anything that needs a name against it. Manager PINs solve that narrow case: a short code that identifies a named manager on a shared screen.

They exist for one job. When a recipe carries a critical control point — a temperature or hold time someone must attest to — the line view asks for a PIN instead of accepting an anonymous tap. The resulting record says the device showed it and this manager authorised it.

Adding one

On the location’s page, under Manager PINs, enter a name and a PIN of 4–6 digits, then Add PIN.

Use the manager’s real name. It is what appears against every sign-off they make, in your records and on the recipe’s acknowledgment list — “Dana Reyes” is evidence, “Manager 2” is not.

A location with none reads No manager PINs.

The form keeps the name and PIN after you add one. Clear both fields before adding the next manager, or you can submit the same PIN twice without noticing.

Removing one

Remove revokes a PIN. It asks first — “Remove this profile?”, and tells you exactly what happens: “Jordan Blake is removed from this store. Their PIN stops working.”

Do this when someone leaves. The sign-offs they already made stay in your records under their name — each acknowledgment keeps the name it was made with, so revoking access never rewrites history.

Choosing PINs

  • One per manager, not one per store. A shared PIN makes every sign-off unattributable, which defeats the point of having them.
  • Do not reuse the door code or the till code. A PIN here authorises a food-safety attestation; it should not be something every closer knows.
  • Change them when a manager leaves, the same as any other credential.

What a sign-off looks like

Once a location has at least one PIN, a cook opening a recipe with a control point gets a keypad rather than a plain acknowledgment. A correct PIN records the sign-off against that manager’s name, and your dashboard’s coverage numbers count it.

Recipes with no control point do not ask for a PIN — an ordinary “I’ve read this” needs no manager.

Last checked against the product on August 18, 2026.