Two phones. One flow. Bypass POS & ATM with real-time NFC relay. Capture, replay, clone, and control — all from your dashboard.
v2.1 — Field Device, Track2 NFC and relay improvements
Custom cap-style field device — NFC cap, motion & ambient sensors, BLE relay link. Design your footprint in the live customizer.
Paste Track 2 data and emulate contactless MSD on one phone — isolated from relay, no server required. Visa, MC, Maestro, Amex, Discover, JCB, UnionPay.
Wider payment scheme list on Tag — more POS terminals select the app during relay.
Real round-trip per APDU. FAST / OK / SLOW badge, session averages, POS time estimate.
Track2 and Relay cannot run together — relay hot path unchanged when Track2 is off.
7-method command-aware bypass: no-PIN, signature, combined, ATM-specific, CIP chip reader mode.
Four steps to relay any NFC payment card through your server
Start the relay server from the web panel on your PC or VPS. It listens on a port — TCP with optional TLS.
Set Host & Port in the app, select Relay mode (Reader or External), connect to the server.
Same Host, Port, and Session. Switch to Tag mode. Pairs with the Reader phone in that session.
Tap Tag phone at POS/ATM. Data flows through your server. CVM bypass — no PIN needed. Dashboard logs everything.
A complete, reliable solution for NFC research and testing
Reader + Tag over network. Two phones, one server. Classic NFC tap or external USB CCID reader. Terminal sees a real card.
Connect compatible CCID readers (ACS ACR1552U, ACR122U, Rocketek USB-C). Read card by chip or contactless — same relay.
Custom cap-style hardware: 5 cm NFC read, BLE relay link, motion & ambient telemetry, up to 24 h battery. Design your footprint in the customizer.
Multiple bypass methods. No PIN, signature, combined options, ATM-specific. Terminal may not ask for PIN at POS or ATM.
Record NFC sessions, save cards, clone and replay. Export sessions from the app for analysis.
Start/stop relay, connected phones, real-time charts, live log. Filter by SYSTEM, EMV, READER, CVM. Devices, cards, blacklist.
App login attempts tracked. Device info, Android version, IP, location, time. Mark unauthorized — block with message.
Scanned cards with BIN-derived info. Add via POST /api/cards. Export JSON from the panel. Full card history.
Rate limit on login/setup, anti brute-force, security headers. GET /api/version and /api/health for monitoring.
Compact custom field device — NFC cap, motion & ambient sensors, relay integrated
Quick tap with any Android phone — card or mobile wallet over the phone antenna. Same relay + Tag flow. ~35–45 ms RTT on a regional node.
RELAY → READERHands-free reads via the 5 cm NFC cap. Set it over the tap zone, walk away. Motion + ambient telemetry to your dashboard. BLE link to the same relay session.
RELAY → FIELD DEVICE (EXTERNAL)Reference unit — final devices built to order above the 4.5×4.5 cm minimum. Save your spec JSON and send it with your order on Telegram.
Pay contactless with Track 2 data — no relay needed, one phone
Paste Track 2 line from dump into the app. Use D, ; or = as separator. Add optional nickname.
Tap a card in the list to set as active. "In use" badge = this card is your contactless payment card.
In NFC settings, set NFC THIEF as default payment app. Otherwise terminal may not use it.
Hold phone to POS. Works where terminals accept Visa MSD (magnetic stripe data). No relay needed.
Full visibility into every session, payment, and device
Real round-trip per APDU — POS → relay → reader → card → back to POS
Unlock the full power of NFC detection. No free tier — paid plans only.
Pay via Telegram (BTC) — access code and panel credentials delivered on activation.
Panel protected by account credentials — no shared superadmin access. Tokens expire and can be revoked.
Each customer gets a dedicated workspace — cards, devices and logs never cross accounts.
Track every device by IP + Android version + model. Mark unauthorized, block with a message.
Full session, APDU and login history with timestamps — export for review.
4.9 / 5 · ★★★★★ · verified client reviews
"Switched to the Frankfurt relay in March — ping stays around 35 ms at peak. Live APDU caught a bad session before it hit production."
"New phone takes ~90 seconds: scan QR, remote config pulls, done. Blocked two cloned UUIDs last week from the devices page."
"Virginia node assigned same day we paid. CSV export has BIN and scheme columns — bookkeeping stopped needing custom reports."
"The field device posts motion within a second of pickup. Battery estimate in the panel is approximate but fine for night-shift planning."
"Dashboard START/STOP works on mobile data — old stack couldn't do that reliably. Bypass stats match relay-side logs."
"Runs two Android readers on one tenant. Never saw another client's cards in our list — isolation holds up."
A complete NFC relay stack: Android app, relay server and a full web operator panel. Run live NFC/APDU sessions, manage devices, view EMV analytics and bypass POS/ATM CVM.
Download the APK, install on both devices, set the same host, port and session — one as Reader, one as Tag. Sessions appear live in your dashboard.
Yes. Each customer gets a separate workspace with their own cards, devices and logs — traffic never crosses accounts.
START/STOP relay, live sessions, connected devices, card list with BIN enrichment, live APDU log, exports, device blacklist and remote block with message.
It's a hands-free cap: place it over the tap zone and it reads contactlessly within 5 cm, streams APDUs + motion/ambient telemetry over BLE to the same relay session. No one is holding a phone at the terminal.
With a nearby relay and stable connection, each APDU round-trips in tens of ms — a full EMV flow typically completes in 1–3 seconds.
Subscribe on Telegram — BTC payment, access code and panel credentials delivered to your account.
Card and session exports are available from the panel, plus the public card list for relay-tagged captures.
Message us on Telegram for details, pricing and your access code