← HR Cluster

Changelog

Operational and technical updates to the HR Cluster platform.

Types of changes
Added New functionality or modules.
Updated Improvements or changes to existing functionality.
Core Major architectural, platform-wide, or operational changes.
Deprecated Features scheduled for removal.
Removed Features or functionality removed.
Fixed Bug fixes and issue resolution.
Security Security improvements or vulnerability fixes.

2026

Suppliers • confirmation email on request submission

When a supplier submits an accreditation or vehicle request, they now receive a confirmation email so they know the request was received. The public accreditation intake sends this receipt to the first submitted email address, and the public vehicle notification uses the standard supplier vehicle template to match the rest of the system.

Accreditation • duplicate submissions prevented

Submitting a public accreditation request now reliably creates a single request. A double tap, a browser back-and-resubmit, or a slow connection that prompted a retry could previously create duplicate entries for the same person; the form now redirects after a successful submit and rejects repeat posts, so reviewers see one clean request instead of several copies.

Accreditation • clearer phase label and default people cap

The public accreditation link now labels the phase selector Allowed phases so it is clear what the choice controls. Supplier accreditation defaults to a cap of eight people, and phase-selection cards across accreditation and vehicles are unified into one consistent component.

Mobile • date picker and dropdown fixes on iOS

The Add date control and date pickers now open reliably on iOS, including when an input overlays a button, and suggestion dropdowns no longer drift out of position when the on-screen keyboard opens. These fixes make the forms easier to use on iPhone and iPad in the field.

Email • Swedish and Danish translations and recipient-language sending

Several notification emails now render in the recipient language with complete Swedish and Danish translations instead of falling back to English. This covers the risk-assessment sign-off invite, signup approval, supplier vehicle, intake invitation, and the accreditation and vehicle request notifications.

Clockwork • original clock times shown after an edit

The session details view now shows the immutable original clock-in and clock-out times from the audit log, so after a manager edits a session the recorded system time and the effective time can both be seen rather than both showing the edited value. The verify-user step also reads the payment account correctly, fixing a display issue in that field.

Risk assessments • clearer public form and private supplier search

On the public risk-assessment form, the Phone and Email fields are no longer labelled optional when they are required. The supplier search on that form also no longer shows supplier contact details to the public, so only the company identity is exposed during selection.

Vehicles • desk search, request notifications, and a simpler gate header

The vehicles desk search now matches on supplier, company, and driver names, so a vehicle is easier to find at a checkpoint. When a vehicle request is submitted, the internal responsible person is now notified by email, matching how accreditation already worked, from both the standalone public link and the supplier action hub. The gate-check header is simplified to a single operational answer: approved when the vehicle may enter right now, denied when it may not, with access-only cases such as no parking or upcoming parking treated as legal entries.

Schedule • statistics coverage no longer inflated

The day-view Schedule Execution summary counted each shift once for every time block it spanned, so a day could read far higher than the real figures, for example 72 of 56 instead of 18 of 14. Coverage now counts each distinct shift and session once, so the statistics match the actual schedule.

Schedule • queued reminder and QR sends with live progress

Sending shift reminder and QR-code emails is now a queued campaign rather than a single blocking action. The send starts immediately and the screen shows live sent, failed, and skipped counts as the background worker processes each recipient, with a per-recipient record kept for audit. Re-running a send is safe and will not double-send.

Incidents • reliable public submission and faster notifications

A public incident submission could fail with a blank page because of an internal mismatch in the database write; this is fixed so reports save reliably. Notification emails for new incidents now send in the background instead of one at a time during submission, so the reporter sees the confirmation page immediately even when an account has several notification recipients.

Risk assessments • responsible owner included in sign-off

The person responsible for an activity is now included in the acknowledgement participants and receives a sign-off request, separate from whoever submitted the assessment. Previously the submitter was treated as the participant while the accountable owner was left out, so the person actually responsible often never signed off. Owner and submitter are now distinct, and the owner counts toward the sign-off totals.

Vehicles • parking and contact detail fixes

No parking is now respected correctly when a manager grants access and when a vehicle comes in through a supplier-scoped public intake, so a vehicle that should have no parking no longer shows one. The contact field on the add and edit forms is split into first and last name to match the rest of the system, and an open-start access window now prefills its boundary so the editor starts from a sensible date.

Schedule • clearer staffing colours

Shift staffing colours now follow a where-do-I-still-need-people model. Fully staffed shifts render green and recede, almost-complete shifts render neutral grey, and unfilled gaps stand out. Red is reserved for overstaffed shifts.

Locations • streamlined linked-users picker

The picker for linking users to a location now reuses the same participant selector as risk assessments, showing clean name-only pills rather than employee number, email, and phone. This makes assigning people to a location quicker and less cluttered.

Competence • upload fixes for proof and duplicate types

Re-adding a competence type a worker already holds no longer creates a duplicate record; the uploaded proof now attaches to the existing competence instead of a blank copy. A self-service proof upload added at the same time as the competence is no longer silently dropped, and the ten-file, ten-megabyte upload rule is enforced consistently across the upload paths.

Clockwork • clearer self-service terminal access controls

The control that grants a worker access to the public self-service clock-in terminal is now labelled Self-service terminal access on both the user forms and CSV import, and defaults to denied for new forms. Eligibility for the public terminal is decided by active membership plus this explicit opt-in. New signups and imported workers are issued a PIN consistently across every intake path, so a worker granted self-service access can clock in without a separate step.

Incidents • admin soft delete and clearer list defaults

Administrators can now soft delete open and in-progress incidents; a closed incident is the sealed record and is never deletable. The capability is admin-only by default and resolves through the permission system, so a manager can be granted it individually. The incident list now defaults to All, with All shown first in the filter navigation.

Vehicles • overrides honoured everywhere and a manager grant flow

Per-vehicle access and parking overrides are now resolved consistently on both the desk and the plate scanner, so the two surfaces always agree, and a vehicle that is valid right now shows a clear green chip. The add page gains a manager grant flow: an inline access and parking editor sits alongside the vehicle details, and Create and grant access writes the windows, then submits and approves them with the manager as the decider so the vehicle is immediately valid on the desk and scanner. Ownership and contact wording is unified across add, edit, detail, and desk, matching the public intake terminology.

Vehicles • gate-check desk with clickable status and scan history

The vehicles desk now has a gate-check modal for working a checkpoint without leaving the page. Pressing Enter in the search box runs a true server-side plate lookup, independent of the current filter or time window, and each row has a Gate button that opens the same decision view. Access and parking status now show as clickable pills that open a per-track detail modal, and the row subline shows the full validity span rather than just the first window. The vehicle History view adds plate-scan events as a distinct third source alongside the access lifecycle and desk movements, so the gate scanner trail is finally visible.

Settings • account default language preserved on save

Saving account settings no longer resets the account default language. The configured default is now preserved across saves, so outbound emails and new-user defaults keep using the language the account actually chose.

Settings • configure who can access Accreditation and Vehicles

The Accreditation and Vehicles modules now have a Configure button on the modules settings page that opens the shared per-user access list, the same pattern already used by Items and Suppliers. Operators can grant the relevant permissions to individual users per module from one place.

Risk assessments • automatic confirmation invites and soft delete

Participant confirmation invites are now sent automatically when an assessment goes live and when participants are added or changed on a live assessment, instead of only on a manual click. Risk assessments also gain an admin soft delete for non-sealed records, which revokes any outstanding sign-off tokens so a deleted assessment can no longer be confirmed.

Risk assessments • participant sign-off

Participants can now confirm in writing that they were briefed on a risk assessment. A tokenized public page lets a participant confirm without logging in, and the workspace adds Request sign-off, Resend, and Request from all actions. If the assessment changes after an invite is sent, the pending sign-off is blocked against the stale version so a confirmation always refers to the content the participant actually saw.

Incidents • public reporting on the meldavvik domains

Public incident reporting can now be served on the meldavvik.no and meldavvik.com domains. An account-scoped link opens that account public incident form and stays on the meldavvik domain, which is convenient for print and QR codes, while manager review links continue to point back to the workspace. This gives a clean, dedicated address for collecting incident reports from the field.