PIN-Protecting the Station Portal
By default, anyone with the Station Portal link can view it. Adding a PIN means visitors must enter a code before the portal loads — useful for brigades that want to share the portal with members only, without making it fully open to the public.
Prerequisites
Section titled “Prerequisites”- Station Portal enabled (see Enabling the Station Portal)
- Brigade admin or organisation admin role
Setting a PIN
Section titled “Setting a PIN”- Go to Settings → Brigade Settings → Public Page tab
- Scroll to the PIN Protection section
- Enter a 4–6 digit numeric PIN in the field
- Click Save PIN
A “PIN is set” indicator confirms the PIN is active. The next time anyone visits your Station Portal they will be prompted to enter the PIN before the page loads.
Changing the PIN
Section titled “Changing the PIN”- Go to Brigade Settings → Public Page → PIN Protection
- Type the new PIN in the field
- Click Save PIN
The new PIN takes effect immediately. Any visitor who already has an active browser session will not be asked to re-enter until their session expires.
Removing PIN Protection
Section titled “Removing PIN Protection”- Go to Brigade Settings → Public Page → PIN Protection
- Click Remove PIN protection
- Confirm the action
The portal becomes open again to anyone with the link.
Alternatively, leave the PIN field blank and click Save PIN — this also removes the PIN.
How It Works for Visitors
Section titled “How It Works for Visitors”When a visitor opens your Station Portal URL with a PIN set, they are shown a PIN entry screen before the portal loads. Once they enter the correct PIN, their browser session is remembered for the duration of that visit — they will not be prompted again until they close the browser or the session expires.
The PIN applies to the whole Station Portal, including all sub-pages (events, vehicles, hydrants, etc.).
When to Use a PIN
Section titled “When to Use a PIN”| Scenario | Recommendation |
|---|---|
| Portal shared with members only | Set a PIN and share it internally |
| Portal fully open to the public | No PIN needed |
| Portal URL was leaked or shared unexpectedly | Regenerate the token and set a PIN |
| Members keep forgetting the PIN | Remove PIN protection and rely on the token alone |
Combining PIN with Token Regeneration
Section titled “Combining PIN with Token Regeneration”A PIN protects the portal from casual access, but the underlying URL token is still the primary security mechanism. For stronger access control:
- Regenerate the token — invalidates the old URL entirely (see Enabling the Station Portal)
- Set a new PIN — adds a second layer on the new URL
- Redistribute — share the new URL and PIN with authorised members only