Barcode Authentication
Issue, print, scan, replace, and secure two-sided CR80 worker badges
Authentication badges give warehouse workers a fast physical credential for web and mobile sign-in and shared Labor
kiosk identification. Each generated PDF has a QR code on the front and a Code 128 barcode on the back. Both codes
contain the same opaque, revocable AUTH_ credential and identify the same worker.
A badge scan at a Labor kiosk identifies the worker. It does not start or change paid time by itself. The worker must still choose and confirm a kiosk action.
Badge Format
The generated PDF contains two portrait CR80 pages:
| Side | Contents |
|---|---|
| Front | Cybership branding, 1:1 profile photo or initials, worker name, role, username, team name, and QR credential |
| Back | Team name, worker name, issue date, and Code 128 credential |
The finished card is ISO 7810 ID-1 / CR80 size: 53.98 × 85.60 mm (2.125 × 3.370 inches). This is the same physical format as a standard employee ID or payment card.
The codes do not reveal the worker's password, email address, or database ID. Treat either code like a physical password: anyone holding a readable copy may be able to authenticate as that worker until the credential is revoked. The generated PDF is returned directly to the authorized browser and is not retained as a downloadable server-side badge file. Any PDF saved locally, browser download, printout, photograph, or copy must still be protected as a live credential.
Issue and Print a Badge
- Go to Settings → Team Members (opens the Cybership dashboard in a new tab).
- Open the worker's member page.
- Open Manage User and choose Generate Authentication Barcode. For an existing badge, open Manage Barcodes and choose Print Badge or Regenerate Barcode.
- Save the two-page PDF with a filename that identifies the worker without including the credential.
- Print page 1 on the card front and page 2 on the back.
- Select Actual size or 100%. Disable Fit, Shrink, and borderless expansion.
- Test the front QR and back Code 128 barcode at the worker's paired kiosk before issuing the card.
Direct-to-card printing
Use an Evolis Primacy 2 or equivalent dual-sided CR80 printer with compatible PVC or composite cards and ribbon. The PDF is already the finished CR80 size; do not scale it in the printer driver.
Cardstock fallback
If a card printer is unavailable, duplex-print on durable cardstock, flip on the long edge, cut to the CR80 trim size, and laminate the card. Place it in a clear vertical holder without covering either code.
Do not print the badge as a shipping label or on a thermal label printer. Cybership currently supports QR and Code 128 scanning; NFC badge programming and tap-to-authentication are not supported.
See Recommended Equipment for the kiosk, scanner, card-printer, consumables, and rollout checklist.
Verify Before Issuing
- Match the printed name and photo to the intended worker.
- Check for ribbon wrinkles, lamination bubbles, glare, clipping, or damage over either code.
- At a paired kiosk, scan the front QR and confirm the correct worker appears.
- Clear the active worker, scan the back barcode, and confirm the same worker appears.
- Clear the kiosk again and hand the tested badge directly to the matching worker.
Do not distribute an untested badge. Store unissued and replaced cards securely until they are destroyed.
Use a Badge
Sign In to the Mobile App
- Open the Cybership mobile app.
- Select Scan Barcode to Sign In.
- Scan either side with the connected 2D scanner.
- Wait for sign-in to complete.
This is a personal mobile session. For a shared worker station, use Labor Kiosk Mode instead.
Sign In on the Web
- Open the Cybership sign-in page (opens the Cybership dashboard in a new tab).
- Scan either side with the connected scanner.
- Wait for sign-in to complete.
The web sign-in page accepts the scan while it is open. The Scan Barcode to Sign In button displays a reminder; no camera setup is required.
Identify a Worker at a Labor Kiosk
- Confirm the paired tablet shows Scan Badge to Start.
- Present either the front QR or back barcode to the fixed scanner.
- Confirm the correct worker name and status.
- Choose and confirm the intended time or job action.
Manage an Existing Badge
Open the worker from Settings → Team Members (opens the Cybership dashboard in a new tab) and choose Manage Barcodes.
| Action | Use It When | Result |
|---|---|---|
| Print Badge | The current active credential needs its first controlled print or an unissued print was defective | The existing two-sided PDF opens; every existing copy remains active |
| Regenerate Barcode | The badge is lost, stolen, damaged, copied, assigned incorrectly, or being replaced | Every earlier copy stops working and a new two-sided PDF opens |
| Revoke | The worker should no longer use badge authentication | The badge stops working immediately |
Regeneration is the safe replacement workflow because it invalidates every printed copy of the earlier badge. Reprint the current credential only when every prior copy remains under administrator control.
Revoke a badge before removing the worker from the team. Removing team membership does not automatically revoke that team's badge.
Who Can Manage Badges
Every team member can manage their own badge. Managing another worker requires User Auth Barcodes — View / Manage, and the team hierarchy still applies.
| Person Issuing the Badge | Who Else They Can Manage |
|---|---|
| Owner | Admins and members, but not another owner |
| Admin | Members, but not another admin or owner |
| Member with Manage access | Other members, but not admins or owners |
| Member without Manage access | No other team member's badge |
API keys cannot manage employee authentication badges. Grant badge management only to people responsible for issuing worker credentials.
Badges do not expire automatically. Issuing one does not disable other available sign-in methods.
Badge Safety
- Issue one active badge to each worker and never share badges.
- Do not photograph, email, message, or post either code.
- Review Last Used when investigating a missing or unexpectedly used badge.
- Regenerate a lost, stolen, damaged, copied, or exposed badge immediately.
- Revoke badges before removing departing workers from the team.
- Destroy revoked cards by cutting through both the QR and barcode.
- Keep blank cards, ribbons, unissued badges, and replacements in controlled storage.
Troubleshooting
The Badge Does Not Scan
- Try the other side of the badge.
- Remove it from the holder to rule out glare or scratches.
- Clean the badge and scanner window.
- Confirm the scanner supports 2D codes for the front QR and sends decoded text in HID/keyboard mode.
- Confirm the scanner appends Enter/Return after each scan.
- Test at another paired kiosk.
- Regenerate and issue a replacement if the physical credential is damaged.
The Badge Is Rejected
- Confirm the correct worker is using the current badge.
- Ask an authorized manager whether the badge was revoked or regenerated.
- Confirm the worker still belongs to the team they are trying to access.
- Issue a replacement if the badge's status cannot be verified.
The Wrong Worker Appears at a Kiosk
Do not confirm an action. Clear the active worker, retain the incorrect badge, and have an authorized teammate regenerate the affected credential. Verify both sides of the replacement before returning it.