Who this is forMohtamimUstazParent
Accounts and roles
Who signs in with Google, who signs in with a PIN, and what each of the three roles can see.
A madrasa on Sijil has three kinds of account, and they do not sign in the same way. The Mohtamim uses Google. An Ustaz uses PINs on an approved phone. A parent uses a phone number and a PIN of their own. This page says which is which, what each one can see, and which PIN does what — because there are three PINs in Sijil and they are genuinely different things.
The Mohtamim: Google, then a PIN
Admin sign-in is Google and nothing else. There is no admin password in Sijil — none to share, none to write on the inside cover of a register, none to guess.
Sign in at login.sijil.pk. Sijil recognises the Google account itself, not just the email address on it, so a second account with a similar address will not open your madrasa. If one Google account administers more than one madrasa, Sijil asks which one to open.
The management side is then gated a second time by the Admin PIN — six digits, also called the master PIN. It is asked when you enter the management area and again on the actions that deserve it: clearing a class register, ending an academic year, and similar.
Change it under Settings → Hifazat → Master PIN badlein, which asks for the current PIN first. Nobody at Sijil can read it back to you.
An Ustaz: three things, and an approved phone
An Ustaz signs in at the same address with three pieces:
- the madrasa's 5-digit Madrasa Code — the same for everybody at the madrasa;
- their own phone number, as entered in their teacher record;
- their 6-digit Login PIN, issued by the Mohtamim.
Then the phone itself has to be approved. A newly seen device waits in the Mohtamim's Settings → Devices list, and until it is approved no register can be marked from it. A lost phone is cut off from the same screen.
Marking a register also asks for the 4-digit Hazri PIN when the day's attendance is cleared. An Ustaz who does not sign in at all — because attendance is marked on a shared madrasa device by somebody else — still needs that one, and needs neither the phone number nor the Login PIN.
A parent: an invite code, then a PIN
Parents are invited, not registered. The Mohtamim opens a student's Parents tab and issues an invite code, which is passed to the guardian — usually over WhatsApp, which Sijil will open with the message ready.
The guardian opens the code, sets their own PIN, and from then on signs in with their phone number and that PIN. One guardian with several children at the madrasa sees them all under one sign-in and switches between them.
If a guardian forgets the PIN or changes their number, the Mohtamim issues a fresh code from the same tab; issuing one clears the old PIN.
The three PINs, side by side
They are the thing most often confused, so:
| PIN | Digits | Whose | What it does |
|---|---|---|---|
| Admin PIN (master) | 6 | The Mohtamim's, kept private | Opens the management side; confirms sensitive actions |
| Login PIN | 6 | One per Ustaz | Signs an Ustaz in on their own phone |
| Hazri PIN | 4 | One per Ustaz | Clears a class register — signs off the day's marks |
Obvious PINs are refused when they are set rather than merely discouraged: 1234, 0000, and a run of the same digit will not be accepted.
What each role can see
These limits are enforced on the server for every request, not decided by which buttons a screen happens to draw. A parent who guesses another student's address gets a refusal, not a page.
When somebody leaves
Stop the account rather than deleting the person. A stopped Ustaz cannot sign in and their marks stay in the register where they belong, which is the point: attendance history that loses its author is worse than useless. The same applies to a student — a removed student leaves the active lists and keeps their record.