Your phone is now your access card.
Mobile Key turns a compatible Android or iPhone into a secure NFC credential, no plastic card, no Bluetooth dependency, no unnecessary complexity.
See how it worksSecure access, without the extra layers.
Secure
Your credential lives inside an encrypted DESFire application, protected with AES-128-based security.
Offline
Once activated, an authorised credential can be presented without needing an active internet connection.
No Bluetooth Credits
Mobile Key presents over NFC, so there are no Bluetooth credential credits to buy or manage.
Free App
The Mobile Key app itself is free to download for supported Android and iOS devices.
Encrypted at the core, configurable at the edges.
Mobile Key stores the credential inside a secure DESFire application, rather than simply exposing a basic card number.
Every phone ships with a grey credential by default, a random badge number generated automatically from that device's unique identity, ready to enrol on any Wiegand-compatible system straight away, no pairing needed. Where a site wants its own key instead, Mobile Key can also issue a custom-coloured credential, such as the standard blue Sensor Access key (C1P/C1E), or a fully custom credential with its own site-specific key, colour and shorthand. The green credential shown here, labelled "OL", is a worked example for a hypothetical oil rig site; any colour or naming convention can be used.
- AES-128-based security
- Secure DESFire credential
- Grey factory-default credential, or a custom-coloured credential with a site-specific key
- Sensor Access-managed or fully customer-managed keys
- Can be locally programmed with the Sensor Access DesfirePersoTool
Generated automatically from the device's unique identity when the app is installed. No manual set-up required.
From credential to open door in four steps.
Credential Generated
As soon as the app is installed, it automatically generates a unique grey credential, ready to use straight away.
Enrol or Activate
The default grey credential can be enrolled directly. A pairing code is only needed if a site issues its own Sensor Access or custom key instead.
Present Your Phone
Hold the phone around 5–15cm from a compatible reader. The LED and buzzer confirm the read.
Access Control Decides
The existing access-control system applies the user's permissions. Mobile Key doesn't override it.
Built for the people who use access control every day.
Employee Access
An employee arrives, presents their phone, and walks in, no separate card to carry or lose.
Visitors
A visitor receives a Mobile Key credential ahead of arrival and uses it at authorised entrances during their visit.
Contractors
A contractor can be issued a credential for the right access period, without a permanent plastic card.
Multi-Tenant & Managed Buildings
Mobile credentials can reduce the administration involved in distributing and replacing physical cards across large user populations.
Less to produce. Less to lose. Less to replace. Less to spend.
Cost is one of the biggest factors. Every physical card carries a real, ongoing price, from the printer and consumables to the stock, distribution and replacements behind it.
Traditional physical credential
- Card printing & production
- Printer hardware & consumables cost
- Card stock to manage
- Physical distribution
- Replacement cards
- Lost cards
- Plastic waste
Mobile Key
- Credential on smartphone
- No printer or card stock needed
- Digital issuing options
- Easy re-issue
- No additional card to carry
- Reduced card administration
- Reduced plastic-card requirement
Mobile Key doesn't have to replace every physical card overnight. Physical DESFire cards and Mobile Key credentials can form part of the same access strategy.
Built on an open standard, not a walled garden.
Mobile Key doesn't rely on a proprietary or closed credential format. It's issued as a genuine MIFARE DESFire application, secured with AES-128 mutual authentication and stored in an encrypted sector, the same open standard access-control manufacturers already build their readers around. In practice, that makes the credential close to reader-agnostic: any reader capable of authenticating and reading a secure DESFire sector can technically read it. Mobile Key is built and tested as a standalone credential, so real-world compatibility comes down to the individual reader's firmware and the encryption key it's configured to expect.
AES-128 Mutual Authentication
Reader and credential each verify the other before any data is exchanged.
DESFire EV1 / EV2 / EV3
Credential data lives in an encrypted application directory, not a readable plain ID.
ISO/IEC 14443A Secure Sector
Presented over standard NFC, using the same air-interface readers already expect.
Diversified Site Keys
A Sensor Access key by default, or a diversified, site-specific key issued per deployment.
Already have access control?
Ask us about compatibilityAll third-party product names and trade marks are the property of their respective owners. References are provided solely to describe technical compatibility. No affiliation, sponsorship or endorsement is implied unless expressly stated. Real-world compatibility still depends on the reader's firmware, the configured encryption key and the output format in use. Sensor Access can help configure a shared or diversified key for third-party integrations.
Leave the card behind.
Mobile Key is free to download for supported Android and iOS devices.
The app is free to download. A configured and authorised Mobile Key credential is required to access a building. iPhone availability is currently limited to users based in the European Economic Area.
A few things people ask.
No. Once a credential has been activated, it can be presented to a compatible reader without an active internet connection.
No. Mobile Key presents credentials using NFC, so there's no need to keep Bluetooth switched on and no Bluetooth credential credits to buy.
Not quite, but you're closer than you'd think. As soon as the app is installed, it generates a valid grey credential automatically, no pairing code needed, which can be enrolled directly on a compatible access-control system just like a physical card. A pairing code or programming step is only needed if a site issues a Sensor Access key or its own custom key instead of the default grey credential.
Very likely. Mobile Key is issued as a genuine DESFire application secured with AES-128, so any reader capable of reading a secure DESFire sector can technically read it. It isn't locked to one manufacturer or platform. Real-world compatibility comes down to the reader's firmware and the encryption key it's configured to expect, so it's worth checking your specific setup with us.
Credentials are stored in a secure DESFire application and protected with AES-128-based security, rather than exposing a simple card number.
Yes. Every phone ships with a grey factory-default credential, and most sites run on the standard blue Sensor Access key (C1P/C1E). If a site needs its own key, Mobile Key can issue a fully custom credential instead, locally programmed using the Sensor Access DesfirePersoTool, with its own key, colour and shorthand. The green "OL" credential shown on this page is simply a worked example for a hypothetical oil rig site; any colour or naming convention can be used to suit the site in question.