Biometric Devices

The devices call us. Nothing has to be opened on your network.

SAAR Attendance is a ZKTeco ADMS server. Each machine pushes its punches out to us on a schedule you set, so a branch needs nothing more than a working internet connection — no port forwarding, no static IP, no VPN, no PC left switched on.

Close-up of a fingerprint being scanned
📶

Outbound only — the device dials us

The machine opens the connection to a single fixed hostname on a schedule. Nothing is exposed on your side, which is what removes the static IP and the VPN from the job.

🔑

A device is claimed by serial number

A machine that has never been seen lands in a pending list instead of attaching itself to somebody’s data. You claim it by serial number, give it a name and a branch, and only then does it belong to you.

👤

Enrol people and push commands out

Add a person, set a fingerprint or face PIN, and the instruction is queued for the device to pick up on its next call. The queue records when it was sent and what the device answered.

🔗

An HTTP API for the rest of the suite

One bearer key per organisation, per consuming product, with cursor pagination on the time we received a punch rather than when it happened — so a device that was offline for three weeks still hands over everything it was holding.

STEP 1

Point the device at us

Set the machine’s server address to the attendance host. That is the whole network change.

STEP 2

Claim it

The unknown serial appears as a pending device. Claim it to your organisation and name it — main gate, factory floor, back office.

STEP 3

Enrol people

Add a person with the PIN the device knows them by; the enrolment is queued and collected on the next call-in.

STEP 4

Read the punches

Watch them arrive, filter and report on them in the browser, or pull them over the API into another system.

0ports to forward
0static IPs needed
1device server for the whole suite
24/7devices report on their own schedule
Which devices does this work with?

ZKTeco machines that speak the ADMS push protocol, fingerprint and face alike. The device URLs are a hardware contract and are kept byte for byte as the machines expect them.

Do I need a static IP or a VPN at each branch?

No. The connection is made by the device, outward, to one fixed hostname. A branch needs working internet and nothing else.

What if a branch loses internet for a week?

The device holds its punches and pushes them when it reconnects. Consumers read the queue by when we received a row, not when the punch happened, so nothing is skipped.

Is this only for gyms or offices?

Neither in particular. A school, a factory, an office and a hospital all use the same thing; nothing in the product assumes an industry.

Get started

Stop opening ports for attendance.

One device server, one hostname, and machines that report in on their own.