Understand hub login, punch roster, and Time Clock role permissions for managers and employees.
TWO LAYERS OF ACCESS
--------------------
Time Clock uses per-user settings and per-role permissions:
Per user (Settings → Users, in Time Clock module)
| Setting | Meaning |
|---------|---------|
| Hub login | Can sign in to MicroBiz Hub with username and password |
| On punch roster | Can punch at the kiosk with a Time Clock ID |
| Time Clock ID | Private 4-digit ID entered at the kiosk (punch roster only) |
An employee can have hub login only, punch roster only, or both.
Per role (Settings → User Roles → Time Clock)
| Level | After hub login, staff can… |
|-------|----------------------------|
| None | No Time Clock menus (may still punch if on roster) |
| Kiosk | Open the kiosk screen from the hub |
| Manage | Timesheets, Time Reports, resolve correction requests |
| Admin | Everything in Manage plus Settings → General |
COMMON COMBINATIONS
-------------------
| Employee type | Hub login | Punch roster | Typical role Time Clock |
|---------------|-----------|--------------|-------------------------|
| Hourly floor staff | No | Yes | (n/a — uses kiosk only) |
| Shift lead with hub access | Yes | Yes | Manage |
| Owner / office manager | Yes | Optional | Admin |
SET ROLE PERMISSIONS
--------------------
1. Go to Settings → User Roles.
2. Select User, Manager, or Admin.
3. Set Time Clock to the appropriate level.
4. Save.
TIPS
----
- Someone on the punch roster with hub login but role Time Clock = None can still punch at the kiosk but will not see Timesheets after login.
- Edit user punch settings only when the Time Clock module is active in the switcher — those fields are hidden in other modules.
RELATED ARTICLES
----------------
- Getting started with Time Clock
- Set up employees for the punch roster