Skip to content

Kiosk Mode ​

Kiosk Mode lets factory-floor users log in to a shared device using a short PIN instead of a personal email and password. This may be appropriate for users who are not onboarded with an email address, or who are not expected to need to access the portal or complete checks on their own personal devices.

Overview ​

A shared device (e.g. an iPad) is enrolled once by an admin and stays paired until explicitly disconnected. Users select their name from a grid, enter their PIN, and complete checks normally. At the end of a shift they tap End shift / switch user to return to the user selection screen — and the device remains paired, ready for the next user.

Enabling kiosk mode ​

Kiosk Mode is disabled by default and is enabled per organisation by the Continual platform team. Once enabled, Settings -> Devices appears, and users can be created without email addresses.

Enrolling a device ​

  1. In the Continual portal, go to Settings -> Devices.
  2. Click Enrol new device and give it a name (and optionally a factory/line scope).
  3. A 10-minute pairing code is displayed. Copy it or note it down.
  4. On the device, open the Continual app and tap Set up in kiosk mode on the sign-in screen.
  5. Enter the pairing code and tap Connect device.
  6. The device shows the user selection screen — pairing is complete.

If the code expires, click Regenerate in the portal to create a new one.

Pairing code vs. user PIN

The pairing code is 8 characters (numbers and letters A–F) and pairs the device itself, one time. It is not the 6-digit PIN used by kiosk users to log in — that is created under Settings -> People and only works on a device that is already paired.

Adding kiosk-only users ​

Users can have a full email account or be kiosk-only with a PIN. To create a kiosk-only user:

  1. Go to Settings -> People.
  2. Click Add user (with Kiosk user selected).
  3. Choose their role and function, then choose their access scope.
  4. Save. A device lists this person, and accepts their PIN, whenever the device's factory or line falls within their access scope — a tenant-wide user appears on every device, and a factory- or line-scoped user appears only on devices in that part of the organisation. There's nothing else to configure: which tablets show them and where they can sign in follow directly from their access scope.
  5. A temporary PIN is displayed once. Share it with the user and ask them to change it on first login.

To set or reset a PIN for an existing user, click Manage PIN on their row and choose Set / reset PIN.

Role restrictions ​

Kiosk-only users (those without an email address) can hold the Operator, Team Leader, or Manager role. Team Leaders work from the mobile app or a kiosk tablet and do not have portal access in v1. Managers deliberately remain supported on kiosks. Admin and Owner users cannot have kiosk credentials; those roles require an email address for portal login. If someone who started as a kiosk-only user needs admin or owner access, create a new standard (email-based) account for them.

PIN policy ​

  • PINs are exactly 6 digits.
  • Obvious sequences are rejected: all-same digit (e.g. 111111), ascending sequence (123456), descending sequence (654321).
  • After 5 failed attempts the account locks for 5 minutes. Repeated failures extend the lockout window.

Shift handover ​

To switch users on a shared device:

  1. Tap the account icon (top-right) to open Account.
  2. Tap End shift / switch user.
  3. The app returns to the user selection screen. The device remains paired.

The user session also ends automatically after 15 minutes of inactivity or when the app is sent to the background.

Revoking a lost or stolen device ​

  1. In the portal, go to Settings -> Devices.
  2. Find the device row and click Revoke.
  3. The device token is invalidated immediately. Any active kiosk sessions on that device expire within seconds.

The device record is preserved in the list for audit purposes; it just can no longer be used.

Disconnecting a device (un-pairing) ​

To fully disconnect a device from an organisation:

  1. On the device, open the Continual app and navigate to Account.
  2. Long-press (hold for 2 seconds) on Hold to disconnect device at the bottom of the screen.
  3. Confirm the action. All kiosk credentials are cleared from the device and it returns to the standard sign-in screen.

We recommend also revoking the device token from the portal after un-pairing.

Expected Result ​

An enrolled device shows the permitted kiosk users, each user can start a session with their own PIN, and ending a shift returns safely to user selection without unpairing the device.