System admin
Sees and manages the whole company: employees, attendance, absences, settings, month lock and the activity log.
Who sees your attendance and employee data, what is recorded and what is deleted. We only describe here what the system actually does.
Sees and manages the whole company: employees, attendance, absences, settings, month lock and the activity log.
Sees and approves only in the departments they manage and the departments under them. A manager does not see another department's data.
Sees only their own information: their punches, hours, absences, balances and documents.
Gets access only from a client who invited them, read-only, and the client can revoke it. Every login, view and download is recorded in a log the client can see. The accountant can turn on two-step verification with an authenticator app.
A connection to ChatGPT or Claude is created only when a user explicitly approves it. By default only a system admin can connect, and they decide whether to allow managers or employees as well. The AI assistant receives only what that user is allowed to see.
Every change needs the user's approval and is logged as an action of the AI assistant. The AI assistant cannot delete punches, reopen a locked month or change salary. ID numbers, bank details, salary, documents and Form 101 are never passed to it. A connection can be disconnected at any moment.
The employer decides what is collected and why. We hold and process the data only on the employer's behalf, under our agreement with them. We do not sell data or use it for our own purposes.
Employee data is kept while the engagement with the employer is active, and after that for the period the employer is required to keep it by law. A request to delete an employee's data goes to the employer.
Only those needed to provide the service: cloud infrastructure and storage providers, an email provider for system messages, and an approved Form 101 signing provider if the client chose it. Or a competent authority, when there is a legal obligation.
Amendment 13 to the Israeli Privacy Protection Law, 5741-1981, came into force on August 14, 2025. For employee data, the employer is the database controller, and RayClock holds and processes the data on its behalf.
What this page describes, the permissions and logs, helps the employer answer data security questions. The employer's own duties under the law, such as informing employees about the data collected, remain the employer's.
This is general information, not legal advice. An employer with questions about its duties under the law should check them with a legal adviser.
The employer's system admin sees the whole company. A manager sees only the departments they manage and those under them. An employee sees only themselves. An accountant sees only clients who invited them, read-only.
Yes. Every addition, edit, deletion, approval or rejection of a punch or absence is recorded in the attendance change log: who made it, when, what it was before and after, the reason given, and from which IP address and device.
No. The AI assistant connection is off by default, and ID numbers, bank details, salary and employer cost, documents and Form 101 are never passed to it.
Employee data is kept while the engagement is active, and after that for the period the employer is required to keep it by law. The employer owns the data, and deletion requests go to the employer.
Privacy policy · Accountant panel · Attendance for large companies · Documents and digital signatures · About and contact
Send it to privacy@rayclock.co.il and we will answer with what the system actually does. You can also book a demo and ask directly.