How employees mark attendance
| Way | How it works |
|---|---|
| Mobile app — face | A live selfie with a blink and head-turn check. If your workspace uses face enrolment, the photo is also matched against the face HR enrolled. If not, the live selfie alone marks attendance. |
| Web clock-in | A check-in button in the browser, if the workspace allows it (Attendance → Web Clock-in), limited to approved networks if you choose |
| Devices | Punches from biometric or card readers are sent in through an integration |
| Marked by HR | For employees who cannot punch themselves, HR marks attendance from the console |
The controls HR sets
- Face enrolment on or off for the workspace (Attendance Rules). Off, employees punch with a live selfie and no enrolment.
- Geofence (Attendance → Geofence): the work locations and radius a punch must be inside, and whether a punch outside is refused or only flagged.
- Networks: limit punching to office IP addresses.
- Devices: a phone is bound to the employee on first punch; HR can block or re-approve devices.
- Shifts and rosters (Shift Configuration, Muster & Roster): who works when; no shift, no punch.
- Attendance rules: grace time, late marks and their penalties.
- Fraud signals: repeated face-match failures, location jumps and shared devices are flagged for review.
Offline punches and evidence
- With no signal, the mobile app saves the punch on the phone — encrypted, with the time it was made — and sends it when the phone is back online. A punch older than 72 hours is not accepted; raise a regularisation instead.
- The selfie taken at each accepted punch is kept for 90 days as evidence, reduced in size and with location data inside the image removed. Managers see it on the team’s swipes; every viewing is logged.
- If the workspace enables presence checks, the app confirms location periodically while it is open during a shift, never in the background.
Regularisation
- An employee who missed a punch or worked elsewhere requests a regularisation for the day. The day’s recorded check-in and check-out fill in automatically; they correct what is wrong and give a reason.
- Their manager approves it (and a second level, if the workspace requires); on approval the attendance for the day is corrected at once.
- Requests are limited to the last 30 days by default (the workspace can change this), and closed once that month’s payroll is approved.
Related
Plain-language guidance for HR teams, not legal advice. Checked against the sources above on 29 September 2026; the notification or your authority’s portal is final. Spotted something out of date? Tell us.

