The Unlock Icon (a lock symbol located at the bottom-left of the device screen) provides authorized personnel with a way to exit the restricted Kiosk environment for maintenance or troubleshooting. For enhanced security, administrators can hide this icon and rely on remote commands or a hidden bypass sequence to regain device access.
Administrators can choose to show or hide the unlock icon depending on the specific security needs of the deployment.
Note: This option is exclusively available for Kiosk-type policies and does not apply to other policy types.
Navigate to Policy Groups and select the desired Kiosk policy.
Under the General settings tab, locate the option "Show Unlock icon in Home page".
To Show: Select 'Show Unlock icon' from the dropdown menu.
To Hide: Select 'Hide Unlock icon' from the dropdown menu.
Click SAVE AND CONTINUE to push the update to the devices.
A custom passcode prevents unauthorized users from exiting the managed environment, even if the icon is visible.
In the Policy Groups editor, navigate to the Security tab.
Locate the field labeled “KIOSK UNLOCK PASSWORD”.
Enter a unique passcode (e.g., a 6-digit numeric code).
Click SAVE AND CONTINUE.
If the icon is hidden to prevent user tampering, the device can still be unlocked using the following two methods:
Navigate to the Devices section in the WeGuard Console.
Select the specific device to open its Device Details page.
Click on the Unkiosk or Remote Unlock action.
The device will immediately exit Kiosk mode.
To ensure you are notified of any security bypasses, configure automated alerts:
Go to Alerts & Notifications > Configuration.
Select the "Kiosk Mode Exited" event trigger.
Enter the administrator Email addresses to receive instant notifications.
Link the rule to your Policy Group and click Apply.
| Method | Access Requirement | Best Use Case |
| On-Device Icon | Lock Icon + Admin PIN | On-site staff maintenance. |
| Remote Unlock | Console Access | Remote IT troubleshooting. |