Support

World ID | Enterprise

Managing employees and invitations

115.jpg

Provisioning brings your employee records into the portal from your identity provider, and lets you invite employees to verify at an Orb.

When an employee verifies, they choose to share their verification status with your organization. That status is recorded in the portal. Nothing is written back to your identity provider.

Employees never sign in to the portal. They receive an invitation, verify at an Orb, share their status, and it appears here.

On this page

What has to be in place first

Two connections are set up once, in Settings, before any employee can be invited. Your TFH point of contact walks through both during enablement. This article covers what happens after they are in place.

User directory sync. Your identity provider pushes employee records to the portal over SCIM. The portal is the receiving end, so you control which users and attributes are sent. Settings shows your SCIM base URL and the API tokens your identity provider uses to authenticate.

World ID enrollment. An application in your identity provider that lets employees share their verification status back to your organization. Until it is connected, employees cannot share World ID status and no one will appear as verified. Settings shows the enrollment app as Not configured or Configured.

Once both are connected, employee creations, updates and deactivations flow to the portal automatically. There is no manual sync to run.

Reading the Employees list

Each employee is listed with their name and email address, their Team, their World ID Status, and when their record was last updated. Select a column header to sort.

Four statuses appear, and the action at the end of the row changes with each:

Status What it means Row action
Not connected No invitation has been sent yet. Invite
Invited An invitation has been sent and is outstanding. Resend
Unverified The employee has not completed verification. Resend
Verified The employee has verified at an Orb and shared that status. None

Finding people

Search by name or email address, and filter by All statuses and All teams. Both filters accept more than one selection. A filter with a single selection shows that value, and a filter with several shows a count, for example Statuses (2).

The list is paginated, with a control for how many rows are shown per page.

Inviting employees to verify

Invitations are sent by email to the employee's registered address.

One employee

Select Invite on their row. A confirmation appears naming the person and the address the invitation will go to. Select Send invite. The portal confirms with Invitation sent.

For someone who has already been invited, the row offers Resend instead.

Several employees

Select the checkbox on each row you want. A bar appears above the table showing how many are selected, with an Invite action and the count. Select it, review the confirmation listing the recipients, then select Send invites.

Employees who have already verified cannot be selected. Hovering over their checkbox explains why.

Everyone

Select the checkbox in the table header to select every employee on the page, then select Select all to extend the selection to your whole directory. The bar confirms how many are selected and offers Clear selection.

The invitation asks the employee to complete verification at an Orb in your offices, then follow a link to share their verification status with your organization.

Checking an individual

Select any row to open that employee's profile. Every profile shows their name and email address, their World ID status, their Team, and when their record was last updated.

The rest of the panel depends on where they are:

  • Not connected. The panel offers Invite.
  • Invited or Unverified. The panel offers Resend invite.
  • Verified. The panel also shows their Zoom Human Badge, either when the current badge expires or that they do not hold one, and their World for Zoom authentication frequency.

No World ID identifier is shown. The portal records that an employee has verified, not which World ID they used.

Keeping the directory connection healthy

Your identity provider authenticates to the portal with an API token, listed in Settings on the User directory sync tab with its expiration and when it was last used.

Tokens expire. As one approaches its expiry date, a banner appears at the top of Settings. Create a replacement token in Settings and update your identity provider before the old token lapses, otherwise records stop syncing and new employees will not appear.

Revoking a token takes effect immediately, and anything using it stops working at once.

If the Employees list is empty

Before your first records arrive, Employees shows No available employees, with the note that employees will appear once you assign them to the provisioning app in your identity provider.

If you see this after setup, check that your identity provider is pushing to the portal and that the API token in use has not expired.

What provisioning does not do

  • Provisioning does not give employees access to the portal. Portal access is granted separately through the portal access groups in Settings.
  • It does not link an employee's World ID to Zoom. That happens when World for Zoom is set up.
  • Verification status cannot be set manually. It arrives only when an employee verifies and chooses to share.

 


Translations may differ slightly from the original English content. For the most accurate information, please refer to the article's English version if any discrepancies occur.

Was this article helpful?

0 out of 0 found this helpful