Module Navigation

Understanding Security Roles for Arcoro Time

The "Security Roles" page of Arcoro is where you set up roles for the Time module to control what an employee can do on the website or the Arcoro app. Each employee can have up to one web and one mobile security role, allowing you flexibility in what an employee can do and access.

If you have used or set up ExakTime Security Roles, you will already be familiar with how to set up and use these security roles.

Security Roles Menu

UNIFIED - Security Roles - Menu - Web - 00.png

The top of the "Security Roles" menu will allow you to toggle between your web and mobile security roles. 

Clicking the header of the columns will allow you to sort and/or filter the list of security roles. 

The menu will provide the following columns:

  • Actions
  • Role - The name of the security role.
  • Built In - If the role is built-in by default.

Creating or Editing a Role

Web Role

When setting up a security role, use the built-in roles as your general roles that can be assigned to anyone, and create individual security roles for those that need specific permission(s). The Administrator role cannot be modified, while other roles can be.

  1. Click New Role to create a new role or the eye icon to modify an existing role.
    UNIFIED - Security Roles - Menu - Create Edit - 00.png
  2. Enter a name for the role if it is not a built-in role and specify if the user has access to sign in to Time. You can enable this later if you want to configure the security role before your employees can access Time.
    UNIFIED - Security Roles - Web - New - 00.png
  3. Enable the permissions as desired. As there is a wide variety of available permissions, we have separated the permissions and provided a brief description of the capabilities of each permission. Some permissions may be dependent on features being enabled for your account. 

    Manage
    • Categories - Manage categories that can be associated with employees, locations, cost codes, etc.
    • Cost Codes - Manage cost codes and their information, such as their active status, details, and translations. 
    • Cost Code Custom Fields - Custom fields associated with a cost code.
    • Custom Fields - Manage custom fields that can be associated with employees, locations, cost codes, etc.
    • Employees - Manage employees and their information, such as their active status, details, policies, security role, etc.
    • Employee Custom Fields - Custom fields associated with an employee.
    • Employees Viewsets - Limit the employees that an employee can see within Arcoro Time and the Arcoro app.
    • Employee Hourly Wage - View the employee's hourly wage for an employee profile.
    • Locations - Manage locations and their information, such as their active status, details, policies, etc.
    • Location Viewsets - Limit what cost codes can be used with a location.
    • Location Custom Fields - Custom fields associated with a location.
    • Merge Locations - Merge multiple locations into a single location.
    Time Management
    • Approve Time Cards That Contain Exceptions - Allows users to approve time cards that contain exceptions (incomplete and/or overlapping time records).
    • Bulk Time Entry - Access to the Bulk Time Entry area of Arcoro Time. Allows the user to enter the same block of time for multiple employees.
    • Clock In For - Allow users to clock in other employees using the Connect Clock through Arcoro web.
    • Close Pay Periods - Allows the user to close pay periods. Once a pay period is closed, no new time entries or time record adjustments can be made to that time period.
    • Connect Clock In/Out - Access to Connect Clock on Arcoro Time
    • My Timecard/My Timesheet - Grants an employee permission to view their Timecard/Timesheet on Arcoro Time. Additional permissions can be granted to edit, delete, or copy their time.
      • If an employee has "No Access" to "My Time Card", but has access to "Time Card Summary & Details", they will still be able to view and/or edit their time card from the other respective pages. 
    • Pay Groups - Access to view and/or edit pay groups.
    • Policies - Access to the Policies area of Arcoro Time. Policies control rules for Overtime, punch or time rounding, auto lunch, and travel.
    • Shift Pay Codes - Allows access to shift pay codes, which can be associated with shifts worked.
    • Time Approval - Level of approval for users in this Security Role. Allows employees, supervisors, and/or administrators to approve and lock time cards.
    • Time Review - Access to Time Review.
    • Time Summary, Timecards, & Timesheets - Access to the Time Summary, Timecards, and Timesheets of Arcoro Time. These permissions grant the ability to view, edit and/or copy the employees' timecards and timesheets in their viewset. Employees with this permission can also view and/or edit their own time.
    • Unapprove All Timecards/Timesheets - Permission to unapprove all timecards/timesheets.
    • View Quarantined Time - Allows the user to view the Quarantine Time area of the Time Card Summary. Quarantine time is where time records will go when a pay period is closed or an employee's time card has been approved.
    Mobile & Hardware
    • Groups - Access to the Groups area of Arcoro Time and the level of access. Allows grouping of employees, location, and cost codes for easier viewing of these elements within the Arcoro app.
    • JobClocks - Access to the JobClocks area of Arcoro Time and the level of access. Add a new JobClock to the system or check on the current assigned location, battery status, and last collected dates of JobClocks.
    • Keytabs - Access to the Keytabs area of the employee's profile and level of access.
    • Manage Mobile Devices- Access to the Mobile Devices page and the Company Setup Code on the Arcoro Time Dashboard. The Company Setup Code is used to set up a copy of the Arcoro app with your Arcoro account. The Mobile Devices page allows you to text the company setup code to a valid mobile number and disable a copy of the Arcoro app. 
      • The "Add" permission is required to view the "Company Setup Code" on the Dashboard and Mobile Devices.
      • The "Delete" permission allows an employee to disable a copy of the Arcoro app. This does not delete the mobile app from the device. 
    • Mobile Settings - Access and edit the ability to access the Mobile Settings area of Arcoro Time.
    Tools & Communication
    • AccountLinx - Unused setting currently in Arcoro Time.
    • Alerts and Notifications Settings - Access to adjust the communication channels for Alerts and Notifications.
    • Collection Details - Access to the Collection Details area of Arcoro Time. View the time records in their raw form.
    • Dashboard - Access to the Dashboard within Arcoro Time. General information including the number of employees currently clocked in, location information, and quick links.
    • Forms Viewer - Access responses to Forms within Arcoro Time.
    • Expenses - Access to the Expenses area of Arcoro Time and the level of permission. Expenses allow your employees to submit any work expenses right from the Arcoro app to you in the office on Arcoro.
    • Field Notes - Access to review and/or add Field Notes from the Field Notes page of Arcoro.
    • Field Notes on Time Cards - Access to the Field Notes quick link on employees' time cards to review the field notes they submitted.
    • Forms Manager - Access to create Forms.
    • Import - Access to the Import area of Arcoro Time and permission to import employees, locations, and/or cost codes via .csv import.
    • Import History - Access the Import History page that allows an employee to view recent CSV import attempts.
    • Map View - Access to the MapView area of Arcoro Time. View on a map where employees were when they made punches
    • Map View > GeoTrakker - Access to the GeoTrakker section of Map View. View employees' movements throughout their day while currently clocked in.
    • Payroll Imports - Access to payroll imports.
    • Session Details - Access to Session Details within Collection Details. Allows the ability to edit time records in their raw form.
    • User Notification Settings - Access to the user's Notification settings for features that use our notification features.
    Company Administration
    • Company Calendar - Access to create and manage holidays and events for the company calendar. 
    • Company Settings - Access to the Company Settings area of Arcoro Time and the level of permission. Company Settings is where you can enter the home address of your company, set up your pay period, and enable certain options for Arcoro Time/Mobile.
    • Licensing - Access to the Licensing area of Arcoro Time. View license count and the ability to click the "Check for New Licenses" button, which is required after purchasing additional licenses.
    • My Account - Access to the 'My Account' page of Arcoro Time to review your current subscription status and purchase additional licenses.
    • Security Roles - Access to the Security Role section of Arcoro Time and permission. The user must have permission to create/edit new or existing security roles to assign security roles to employees.
    • Support Contracts - Access to support contracts.
    Reports

    The report permission designates whether an employee can access all reports in Arcoro Time or specific reports. For more information on the available reports, please refer to the following article that details each report with an example of each. 

  4. Save your changes when finished.

Mobile Role

  1. Click the Mobile tab.
    UNIFIED - Security Roles - Menu - Web Select - 00.png
  2. Click New Role to create a new role or the eye icon to modify an existing role.
    UNIFIED - Security Roles - Menu - Create Edit - 01.png
  3. Enter a name for the role if it is not a built-in role.
    UNIFIED - Security Roles - Web - New - 00.png
  4. Enable the permissions as desired. As there is a wide variety of available permissions, we have separated the permissions and provided a brief description of the capabilities of each permission. Some permissions may be dependent on features being enabled for your account.

    Manage
    • Change the device clock, edit preferences, set a default jobsite or cost code, and set jobsite locations - Allows an employee to access all the Arcoro app settings and additional capabilities such as setting a default location/cost code. This setting is generally reserved for Admins or trusted high-level employees such as supervisors/managers.
      • This permission will prevent the "Automatic Log Out" option for the Arcoro app for the employee. The employee will still be able to log out manually. 
    • Clock In and Out for Other Employees - Clock in/out for other employees. For more information about this feature, refer to the following article. This permission will also prevent the "Automatic Log Out" option for the Arcoro app.
      • Edit Clock In and Out Time - Adjust the date/time for the employee(s) being clocked in/out. This cannot be set to a future date/time.
    • Cloud Service - A setting for legacy software/products that can be disregarded at this time.
    • Crews and Groups - Created/adjust crews and groups on the device. These changes may be overwritten if the crews and groups are made within Arcoro. For more information about this feature, refer to the following article.
    • Edit unsent time records on time record history - Edit unsent time records made on the device from the History tab. This setting is connected to the Time Record History permission. For more information about Time Record History, refer to the following article.
    • View SiteHub - View SiteHub data containing recent activities such as field notes about the location, recent clock ins, directions through your phones navigation app, and nearby restaurants. For more information about this feature, refer to the following article.
      • Show Wages - Show the sum of the current hourly wage of employees clocked in to a location. (This is not a total of the hourly wages on the job so far, just the hourly wage sum at that moment)
    Add
    • Cost Code - View the cost code list from the Manage screen and add new cost codes. For more information about adding new cost codes, refer to the following article.
    • Employees - View the employee list from the Manage screen and add new employees. For more information about adding new employees, refer to the following article.
    • Field Notes - Create field notes on the device in hand. For more information about field notes, refer to the following articles: Field Notes for Connect and Field Notes for Mobile.
    • Locations - View the location list from the Manage screen, add new locations, update the associated GPS coordinates, and navigate to the location using your device's navigation app. For more information about adding new locations, refer to the following article.
    View
    • How long has someone been clocked in - Let employees know how long they have been clocked in. For more information about this feature, refer to the following article.
    • How long has someone been clocked in - Let employees know how long they have been clocked in. For more information about this feature, refer to the following article.
    • Own GeoTrakker Data - Allows an employee to view their own GeoTrakker data. 
    • Other Employees' GeoTrakker Data - Allows an employee to view the GeoTrakker data of other employees in their viewset.
    • Time Record History - View the time records created on the device in hand from the last 14 days. For more information about this feature, refer to the following article.
    • Who is Clocked In - Grants permission to two different features: View a list of who has used your device to clock in and allows access to Team View.
      • The 'X Employees Clocked In' list will clear itself out after 12 hours.
      • Team View will update based on the employees clocking in/out on any the Arcoro app device connected to the internet.
      • For more information about this feature, refer to the following article.
    FaceFront
    • Take picture when clocking in or out - Take a photo when clocking in or out with the front-facing camera for review on the employee's time card. 

    For more information about FaceFront, refer to the following article.

    Geofence Clock In/Out

    'Geofence' permissions can warn or restrict employees if they try to clock in/out for themselves and are outside the geofence of the location.

    • No GeoFence warning or restriction - Enabled by default. An employee can clock in/out to any location they want to, regardless if they are not within the vicinity or not.
    • Warn employees when clocking in/out outside Geofence, or if Geofence is unknown - The employee will receive a warning if their device plots them outside the GeoFence for their selected location or if there is no GeoFence for their selected location.
      • Require employees to add a comment when clocking in/out outside GeoFence - In addition to the warning from above, the employee will need to enter a comment that will appear on your time cards to further review.
    • Restrict employee clock in/out outside known Geofence - If an employee's device places them outside the GeoFence of a location, they will not be able to clock in/out to their selected location.
    • Refer to the following article for more information about setting up GeoFence Warnings/Restrictions.
    Network Time for Clock In/Out

    The 'Network Time' permissions can warn or restrict an employee when trying to clock in/out and their device and network time have a variance that exceeds 5 minutes.

    • No network time warning or restriction - Enabled by default. An employee can clock in/out regardless of any time variance between the device and network time.
    • Warn employees when clocking in/out if network time is unavailable, or device time does not match - The employee will receive a warning if their device and network time exceed the 5-minute variance threshold.
      • Require employees to add a comment when clocking in/out - In addition to the warning from above, the employee will need to enter a comment that will appear on your time cards to further review.
    • Do not allow employees to clock in/out if network is unavailable, or device time does not match - The employee cannot clock in/out if their device and network time exceed the 5-minute variance threshold.

    Refer to the following article for more information about setting up Network Time Warnings/Restrictions.

    Timecard/Timesheet
    • View - Allow an employee to view their time cards from the Arcoro app.
      • Edit - Allows a user to view and edit an employee's time card on the Arcoro app.
      • Delete - Allows a user to delete a time record from an employee's time card on the Arcoro app.
    GeoTrakker
    • Track employees in this role - Track the movement of the employee based on the location data from the mobile device.

    For more information regarding GeoTrakker, refer to the following article.

    Notification Settings
    • View User Settings - Allows the employee to view the notification settings of the Arcoro app. 
      • Edit User Settings - Allows the employee to edit the notification settings of the Arcoro app.
  5. Save your changes when finished.

Assigning a Role to Members

The "Members" tab for a security role allows you to quickly set up multiple employees with the selected security role.

  1. After saving a new role or while editing an existing role, click the Members tab.
    UNIFIED - Security Roles - Details - Members - 01.png
  2. Click the checkbox to the left of the employee who should receive the role.
    UNIFIED - Security Roles - Details - Members - 08.png
  3. If the employee does not have a username or PIN, you will need to provide one. Click Save.
    UNIFIED - Security Roles - Details - Members - 05.png
  4. Click Save when finished.
  5. You will be asked to confirm the role assignments. Click Save when finished.
    UNIFIED - Security Roles - Details - Members - 07.png
Was this article helpful?
0 out of 0 found this helpful