Skip to main content

PIN Setup

Admin

PINs are the primary authentication method for the POS register. Instead of typing an email and password between every transaction, cashiers and managers enter a fast 4-digit PIN to log in, switch users, or authorize overrides. This page covers setting up PINs, resetting them, and PIN security best practices.

User Management


How PINs Work

PINs in Brother POS are used exclusively at the POS register interface. They are separate from the email/password credentials used for admin panel login.

FeatureEmail/PasswordPIN
Admin Panel loginYesNo
POS Register loginNoYes
Manager override at POSNoYes
Length8+ characters4 digits
HashingSecure hashSecure hash

When a user enters their PIN at the POS:

  1. The PIN is securely hashed.
  2. The hash is compared against stored PIN hashes in the database.
  3. If a match is found, the user is logged in instantly.
  4. The POS interface updates to show the logged-in user's name and role.
PIN login is fast

PINs are securely hashed -- they cannot be viewed or recovered, only reset. There is no delay when entering a PIN, even with many users in the system.


Setting a PIN for a New User

When creating a new user account, you can set their PIN during the creation process.

Step-by-Step

  1. Go to Settings > Manage Users, or navigate directly to /users.
  2. Click New User.
  3. Fill in the required fields (name, email, password, role).
  4. In the PIN field, enter a 4-digit number.
  5. Click Create User.

The user can now log in to the POS register using this PIN.

Let the user choose their PIN

If possible, let the user choose their own PIN so it is easy for them to remember. Have them tell you the number and you enter it, or let them type it themselves on your screen.


Setting a PIN for an Existing User

If a user was created without a PIN, or if you need to change their PIN:

  1. Go to Settings > Manage Users, or navigate directly to /users.
  2. Click the user's name to open their edit page.
  3. Enter the new PIN in the PIN field.
  4. Click Save Changes.

The new PIN takes effect immediately. The user's old PIN (if any) stops working right away.


Resetting a Forgotten PIN

If a user forgets their PIN:

  1. Go to Settings > Manage Users, or navigate directly to /users.
  2. Click the user's name.
  3. Clear the existing PIN field and enter a new 4-digit PIN.
  4. Click Save Changes.
  5. Tell the user their new PIN.
Communicate PINs securely

Do not write PINs on sticky notes attached to registers. Tell the user their PIN verbally or via a secure message. PINs should be treated like passwords.


Removing a PIN

To remove a user's POS access without deactivating their entire account:

  1. Open the user's edit page.
  2. Clear the PIN field (leave it blank).
  3. Click Save Changes.

The user can no longer log in to the POS register but can still access the admin panel (if their role allows it).


PIN Requirements

Brother POS enforces the following PIN rules:

RuleDetails
LengthExactly 4 digits
CharactersNumbers only (0-9)
UniquenessThere is no uniqueness validation on PINs. The system allows duplicate PINs, but this can cause authentication issues. Ensure each user has a distinct PIN.
Sequential restrictionNone (PINs like 1234 are allowed but discouraged)

PIN Uniqueness

Although the system does not enforce PIN uniqueness, it is strongly recommended that each active user has a distinct PIN. If two users share the same PIN, the system may authenticate the wrong user, leading to incorrect attribution of sales, overrides, and other actions.

Why unique PINs matter

PINs are used to identify which user is performing an action. If two users share a PIN, the system may not reliably determine which person is logged in. This is critical for accountability -- every sale, return, and override is attributed to the user whose PIN was entered.


Who Needs a PIN?

RoleNeeds a PIN?Why
ClerkYesRequired to log in to the POS register and process sales.
ManagerYesRequired to log in to the POS, open/close drawers, and authorize overrides.
AdminRecommendedUseful for POS access and authorizing overrides. Not strictly required if admin only uses the web panel.
DriverNoDrivers use the mobile PWA with email/password login.
Always set PINs for managers

Even if a manager primarily works in the admin panel, they should have a PIN. Clerks will need a manager PIN for override actions (discounts, returns, voids), and the manager needs to be able to enter their PIN at the register.


PIN Security Best Practices

Choosing Good PINs

DoDon't
Use a random 4-digit numberUse 0000, 1111, or other repeating digits
Choose something memorable to the userUse the user's birth year or phone number
Change the PIN if it may be compromisedShare PINs between users
Use different PINs for different systemsUse the same PIN as your bank card

Operational Security

  1. Do not post PINs on the register. PINs should be memorized.
  2. Shield PIN entry. When entering a PIN at the POS, the user should block the screen from view, just like at an ATM.
  3. Change PINs if someone leaves. When an employee is deactivated, their PIN is automatically disabled. However, if there is any concern that they shared their PIN with others, change the PINs of remaining staff.
  4. Audit PIN usage. Every transaction in Brother POS is tagged with the user who was logged in via PIN. Review this data if you suspect PIN sharing.

Manager Override PINs

Manager PINs serve a dual purpose: they log the manager into the POS, and they authorize restricted actions when a clerk is logged in.

How Manager Override Works

  1. A clerk attempts a restricted action (e.g., applying a discount).
  2. The POS displays a Manager PIN Required prompt.
  3. A manager or admin enters their PIN on the numpad.
  4. The action is authorized and logged under both the clerk (who initiated) and the manager (who approved).
  5. The clerk remains logged in -- the manager does not take over the session.

What Actions Require Override?

By default, the following actions require a manager PIN when performed by a clerk:

  • Applying a manual discount
  • Processing a return
  • Voiding a sale
  • Opening the cash drawer without a sale
  • Price override on a line item

These can be customized in Roles & Permissions.


Bulk PIN Management

If you are setting up multiple users at once (e.g., during a new store launch):

  1. Create a list of users and their assigned PINs before starting.
  2. Verify all PINs are unique within the list.
  3. Create each user and assign their PIN.
  4. Distribute PINs to staff individually -- do not post a list.
Systematic PIN assignment

For easy management, consider a simple system like assigning PINs in blocks: managers get PINs starting with 1 (1001, 1002, 1003), clerks get PINs starting with 2 (2001, 2002, 2003). This makes it easy to remember who has what range.


PIN vs. Password Summary

FeatureAdmin Panel PasswordPOS PIN
Used forAdmin panel loginPOS register login
Set byUser (self-service)Admin (on behalf of user)
Length8+ characters, mixed4 digits
HashingSecure hashSecure hash
Self-resetYes (email reset)No (admin must reset)
TimeoutSession-basedNone (PIN entry on each action)
UniquenessGlobally unique emailNot enforced (recommended unique)

Common Workflows

Setting up PINs for a new store

  1. Create all user accounts with names, emails, and roles.
  2. Assign PINs to each user, starting with managers.
  3. Test each PIN by logging in to the POS.
  4. Distribute PINs to staff during the onboarding meeting.

Handling a suspected PIN compromise

  1. Immediately change the affected user's PIN.
  2. Review the audit trail for any suspicious activity under the compromised PIN.
  3. If sales or actions look unusual, flag them for investigation.
  4. Remind all staff of PIN security best practices.

Annual PIN rotation

  1. Schedule a PIN change day (e.g., first Monday of each quarter).
  2. Assign new PINs to all users.
  3. Communicate new PINs individually.
  4. Verify all staff can log in with their new PINs.

Troubleshooting

ProblemSolution
"Invalid PIN" at the POSVerify the PIN is correct. Check that the user is active and has a PIN set.
Two users seem to share a PINThe system does not enforce uniqueness. Change one user's PIN to a different 4-digit number to avoid authentication conflicts.
Manager override not workingVerify the manager's account is active and has a PIN set. Check that their role has the needed permission.
PIN works but user sees wrong permissionsThe PIN is correctly identifying the user, but their role permissions may need updating. See Roles & Permissions.
Forgot who has which PINOpen the Users list. The PIN column shows whether a PIN is set, but the actual PIN value is not displayed (it is hashed). You will need to set a new PIN.

What's Next?