Articles in this section
Time Clock Kiosk Feature PTO Accrual Tracking Time Off Requests Geofence App Security Scheduled Holidays Browser Based GO Clock (Individual) Browser Based Time Clock (Group) Physical Time Clock AI Connect Labor Allocation Integrations Employee Scheduling Pay Code Management Overview Pay Policies and Overtime Mobile App Time Clock Kiosk App with simple PIN Entry Kiosk App with Facial Recognition

Device Authorization

B
Brian Zurawski
23 Sep, 2026 - Updated 37 minutes ago
Feature Manager

How to enable Device Authorization

Restrict which devices and locations employees can use to clock in or out.

Device Authorization is a free feature that prevents unauthorized devices from clocking employees in or out. You can restrict clocking to specific computers, IP addresses, or a single trusted employee.

What You Can Restrict

Employee to their computer
Any employee to a specific computer
Employee to a specific IP address
Any employee at a specific IP address
Whitelist a specific employee to use any device at any location

Common Uses

Dedicate one specific computer as the "Time Clock"
Allow all employees within a specific building to clock in or out
Allow a specific employee to clock in or out from anywhere
Prevent employees from using a home computer or cell phone to clock in or out

Step 1 Activate Device Authorization

Device Authorization can be enabled in the Feature Manager under Clocking Options. Click Activate.

Device Authorization in the Feature ManagerActivate button

Step 2 Configure the Feature

Once activated, click Settings to configure the feature. All new users will need to request authorization if their computer or location hasn't already been approved.

Settings button

Step 3 Approve or Deny Pending Requests

When a new user requests authorization, they appear in the Pending list. Approval options include:

  • Allow that employee from that device
  • Allow any employee from that device
  • Allow that employee from that IP address
  • Allow any employee from that IP address
  • Allow that employee from any device or IP
  • Help me decide
Pending authorization requests

Device is the web browser accessing GO Clock or a kiosk. IP is the public IP address of that location. Each request also shows the date and time, the requesting user, their public IP address, and a map with a GPS location if one is available; GPS data may be approximate if the device doesn't have GPS enabled, such as an office or home computer.

Step 4 Review Approved and Rejected Requests

Once approved, a request moves to the Approved tab. If needed, an approved request can be changed to Denied. Denied requests appear on the Rejected tab and can be changed back to Approved at any time.

Approved and rejected requests

Learning Mode

Learning Mode records where employees are clocking in or out from without preventing them from clocking in or out. Once disabled, all recent devices used to clock in and out appear in the Pending list for approval, and employees will no longer be able to clock in or out until they're approved.

Related Articles

Powered by Vtiger