Security How It Works Why Mobile Key Use Cases Compatibility FAQ Download Mobile Key
Sensor Access Technology

Your phone is now your access card.

Mobile Key turns a compatible Android or iPhone into a secure NFC credential, no plastic card, no Bluetooth dependency, no unnecessary complexity.

See how it works
Mobile Key credential being presented to a compatible access-control reader on a glass office door
Access Granted
The essentials

Secure access, without the extra layers.

Secure

Your credential lives inside an encrypted DESFire application, protected with AES-128-based security.

Offline

Once activated, an authorised credential can be presented without needing an active internet connection.

No Bluetooth Credits

Mobile Key presents over NFC, so there are no Bluetooth credential credits to buy or manage.

Free App

The Mobile Key app itself is free to download for supported Android and iOS devices.

Security that you control

Encrypted at the core, configurable at the edges.

Mobile Key stores the credential inside a secure DESFire application, rather than simply exposing a basic card number.

Every phone ships with a grey credential by default, a random badge number generated automatically from that device's unique identity, ready to enrol on any Wiegand-compatible system straight away, no pairing needed. Where a site wants its own key instead, Mobile Key can also issue a custom-coloured credential, such as the standard blue Sensor Access key (C1P/C1E), or a fully custom credential with its own site-specific key, colour and shorthand. The green credential shown here, labelled "OL", is a worked example for a hypothetical oil rig site; any colour or naming convention can be used.

  • AES-128-based security
  • Secure DESFire credential
  • Grey factory-default credential, or a custom-coloured credential with a site-specific key
  • Sensor Access-managed or fully customer-managed keys
  • Can be locally programmed with the Sensor Access DesfirePersoTool
sensorACCESS TECHNOLOGY
Factory Default
C1E-7B2A19F4
sensorACCESS TECHNOLOGY
Sensor Access Key
C1P-2C6E88A0
sensorACCESS TECHNOLOGY
Site Key · Oil Rig
OL-4F9C2E01
Grey, factory default

Generated automatically from the device's unique identity when the app is installed. No manual set-up required.

How it works

From credential to open door in four steps.

01

Credential Generated

As soon as the app is installed, it automatically generates a unique grey credential, ready to use straight away.

02

Enrol or Activate

The default grey credential can be enrolled directly. A pairing code is only needed if a site issues its own Sensor Access or custom key instead.

03

Present Your Phone

Hold the phone around 5–15cm from a compatible reader. The LED and buzzer confirm the read.

04

Access Control Decides

The existing access-control system applies the user's permissions. Mobile Key doesn't override it.

Real-world use

Built for the people who use access control every day.

Employee presenting Mobile Key at an office entrance reader

Employee Access

An employee arrives, presents their phone, and walks in, no separate card to carry or lose.

Visitor presenting a Mobile Key credential at a reception entrance

Visitors

A visitor receives a Mobile Key credential ahead of arrival and uses it at authorised entrances during their visit.

Contractor presenting Mobile Key at a restricted plant room door

Contractors

A contractor can be issued a credential for the right access period, without a permanent plastic card.

Multi-Tenant & Managed Buildings

Mobile credentials can reduce the administration involved in distributing and replacing physical cards across large user populations.

StudiosOfficesResidentialUniversitiesHealthcareWarehousesHotelsIndustrial
Why Mobile Key

Less to produce. Less to lose. Less to replace. Less to spend.

Cost is one of the biggest factors. Every physical card carries a real, ongoing price, from the printer and consumables to the stock, distribution and replacements behind it.

Traditional physical credential

  • Card printing & production
  • Printer hardware & consumables cost
  • Card stock to manage
  • Physical distribution
  • Replacement cards
  • Lost cards
  • Plastic waste

Mobile Key

  • Credential on smartphone
  • No printer or card stock needed
  • Digital issuing options
  • Easy re-issue
  • No additional card to carry
  • Reduced card administration
  • Reduced plastic-card requirement

Mobile Key doesn't have to replace every physical card overnight. Physical DESFire cards and Mobile Key credentials can form part of the same access strategy.

Compatibility

Built on an open standard, not a walled garden.

Mobile Key doesn't rely on a proprietary or closed credential format. It's issued as a genuine MIFARE DESFire application, secured with AES-128 mutual authentication and stored in an encrypted sector, the same open standard access-control manufacturers already build their readers around. In practice, that makes the credential close to reader-agnostic: any reader capable of authenticating and reading a secure DESFire sector can technically read it. Mobile Key is built and tested as a standalone credential, so real-world compatibility comes down to the individual reader's firmware and the encryption key it's configured to expect.

AES-128 Mutual Authentication

Reader and credential each verify the other before any data is exchanged.

DESFire EV1 / EV2 / EV3

Credential data lives in an encrypted application directory, not a readable plain ID.

ISO/IEC 14443A Secure Sector

Presented over standard NFC, using the same air-interface readers already expect.

Diversified Site Keys

A Sensor Access key by default, or a diversified, site-specific key issued per deployment.

Mobile Key
Secure NFC / DESFire Credential
Any DESFire-Reading Reader
Existing Access-Control System
Authorised third-party manufacturer logos will be added here.

Already have access control?

Ask us about compatibility

All third-party product names and trade marks are the property of their respective owners. References are provided solely to describe technical compatibility. No affiliation, sponsorship or endorsement is implied unless expressly stated. Real-world compatibility still depends on the reader's firmware, the configured encryption key and the output format in use. Sensor Access can help configure a shared or diversified key for third-party integrations.

Leave the card behind.

Mobile Key is free to download for supported Android and iOS devices.

The app is free to download. A configured and authorised Mobile Key credential is required to access a building. iPhone availability is currently limited to users based in the European Economic Area.

Questions

A few things people ask.

No. Once a credential has been activated, it can be presented to a compatible reader without an active internet connection.

No. Mobile Key presents credentials using NFC, so there's no need to keep Bluetooth switched on and no Bluetooth credential credits to buy.

Not quite, but you're closer than you'd think. As soon as the app is installed, it generates a valid grey credential automatically, no pairing code needed, which can be enrolled directly on a compatible access-control system just like a physical card. A pairing code or programming step is only needed if a site issues a Sensor Access key or its own custom key instead of the default grey credential.

Very likely. Mobile Key is issued as a genuine DESFire application secured with AES-128, so any reader capable of reading a secure DESFire sector can technically read it. It isn't locked to one manufacturer or platform. Real-world compatibility comes down to the reader's firmware and the encryption key it's configured to expect, so it's worth checking your specific setup with us.

Credentials are stored in a secure DESFire application and protected with AES-128-based security, rather than exposing a simple card number.

Yes. Every phone ships with a grey factory-default credential, and most sites run on the standard blue Sensor Access key (C1P/C1E). If a site needs its own key, Mobile Key can issue a fully custom credential instead, locally programmed using the Sensor Access DesfirePersoTool, with its own key, colour and shorthand. The green "OL" credential shown on this page is simply a worked example for a hypothetical oil rig site; any colour or naming convention can be used to suit the site in question.