{"id":5184,"date":"2025-12-13T18:15:56","date_gmt":"2025-12-13T18:15:56","guid":{"rendered":"https:\/\/nightscout.pro\/?post_type=epkb_post_type_1&#038;p=5184"},"modified":"2025-12-13T18:18:43","modified_gmt":"2025-12-13T18:18:43","slug":"security-and-access-explained-simply","status":"publish","type":"epkb_post_type_1","link":"https:\/\/nightscout.pro\/en_us\/knowledge-base\/security-and-access-explained-simply\/","title":{"rendered":"Security and Access Explained Simply"},"content":{"rendered":"<p>Nightscout contains sensitive health data, so understanding how access works is important. This page explains security and access in plain English.<\/p>\n\n\n\n<p>You do not need technical knowledge to keep your site secure.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Your Nightscout URL<\/h2>\n\n\n\n<p>Your Nightscout URL looks like this:<\/p>\n\n\n\n<figure class=\"wp-block-embed\"><div class=\"wp-block-embed__wrapper\">\nhttps:\/\/your-site-name.nightscoutpro.com\n<\/div><\/figure>\n\n\n\n<p>This is the web address people use to view your site.<\/p>\n\n\n\n<p>Sharing your <strong>URL<\/strong> is safe.<br>Sharing your <strong>API Secret<\/strong> is not.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">What is the API Secret?<\/h2>\n\n\n\n<p>The API Secret is effectively the <strong>master password<\/strong> for your Nightscout site.<\/p>\n\n\n\n<p>It allows:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Full access to your data<\/li>\n\n\n\n<li>Configuration changes<\/li>\n\n\n\n<li>Administrative actions<\/li>\n<\/ul>\n\n\n\n<p>Anyone with your API Secret has full control of your site.<\/p>\n\n\n\n<p>You should never share it publicly or casually.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Public vs private sites<\/h2>\n\n\n\n<p>Nightscout can operate in two main modes:<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Public site<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Anyone with the URL can view your data<\/li>\n\n\n\n<li>No login is required<\/li>\n\n\n\n<li>Useful for personal use or trusted environments<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Private site<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Viewing requires authentication<\/li>\n\n\n\n<li>Recommended for most users<\/li>\n\n\n\n<li>Controlled via the Nightscout Pro settings<\/li>\n<\/ul>\n\n\n\n<p>You can change this setting at any time.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Giving others access safely<\/h2>\n\n\n\n<p>If caregivers, family members, or clinicians need access:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Share your Nightscout URL<\/li>\n\n\n\n<li>Use Nightscout\u2019s authentication features<\/li>\n\n\n\n<li>Do not share your API Secret<\/li>\n<\/ul>\n\n\n\n<p>This allows others to view your data without giving them control.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Followers and apps<\/h2>\n\n\n\n<p>Follower apps and services usually require:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Your Nightscout URL<\/li>\n\n\n\n<li>Sometimes a read-only token<\/li>\n<\/ul>\n\n\n\n<p>They do <strong>not<\/strong> need your API Secret unless explicitly required by trusted setup instructions.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Simple security rules to remember<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Share your URL freely if appropriate<\/li>\n\n\n\n<li>Keep your API Secret private<\/li>\n\n\n\n<li>Do not post screenshots showing secrets<\/li>\n\n\n\n<li>Make your site private if unsure<\/li>\n\n\n\n<li>Change your API Secret if it is ever exposed<\/li>\n<\/ul>\n\n\n\n<p>Nightscout Pro handles encryption, certificates, and infrastructure security automatically.<\/p>","protected":false},"excerpt":{"rendered":"<p>Nightscout contains sensitive health data, so understanding how access works is important. This page explains security and access in plain English. You do not need technical knowledge to keep your site secure. Your Nightscout URL Your Nightscout URL looks like this: This is the web address people use to view your site. Sharing your URL [&hellip;]<\/p>\n","protected":false},"author":537,"featured_media":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","inline_featured_image":false,"footnotes":""},"epkb_post_type_1_category":[42],"epkb_post_type_1_tag":[],"class_list":["post-5184","epkb_post_type_1","type-epkb_post_type_1","status-publish","hentry","epkb_post_type_1_category-getting-started"],"_links":{"self":[{"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/epkb_post_type_1\/5184","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/epkb_post_type_1"}],"about":[{"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/types\/epkb_post_type_1"}],"author":[{"embeddable":true,"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/users\/537"}],"replies":[{"embeddable":true,"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/comments?post=5184"}],"version-history":[{"count":1,"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/epkb_post_type_1\/5184\/revisions"}],"predecessor-version":[{"id":5185,"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/epkb_post_type_1\/5184\/revisions\/5185"}],"wp:attachment":[{"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/media?parent=5184"}],"wp:term":[{"taxonomy":"epkb_post_type_1_category","embeddable":true,"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/epkb_post_type_1_category?post=5184"},{"taxonomy":"epkb_post_type_1_tag","embeddable":true,"href":"https:\/\/nightscout.pro\/en_us\/wp-json\/wp\/v2\/epkb_post_type_1_tag?post=5184"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}