Back to guides

Apple Opened the iPhone's NFC Chip to Third-Party Apps — What It Means for You

Apple opened the iPhone's NFC chip to approved third-party apps starting with iOS 18.1. Here's what actually changed, who it affects, and what stays the same.

Published

What it is (one-paragraph answer)

Apple opened the iPhone's NFC chip to approved third-party apps. That means those apps can now run their own secure contactless transactions — payments, keys, transit passes, tickets — without routing through Apple Pay or Apple Wallet. The change arrived with iOS 18.1, first in Australia, Brazil, Canada, Japan, New Zealand, the UK, and the US, and separately in the EU to satisfy the Digital Markets Act. If you're reading this on NFCore and wondering whether it changes how you read and write your own tags, it doesn't. This is a different, gated system built for businesses, not for hobbyist tag reading. Here's what actually changed, where you'll notice it, and what stays exactly the same.

How it actually works

Secure Element vs. Core NFC

The new access runs through the NFC & SE Platform, which uses the iPhone's Secure Element and Secure Enclave to store and authorize credentials — the same hardware Apple Pay has always relied on. That's a separate technical path from Core NFC, the framework apps like NFCore use to read, write, and inspect standard NDEF tags. Familiar with Host Card Emulation? This is the iOS equivalent: the phone acts as the secure card, not as a reader of a passive tag.

The authorization flow

Every transaction still needs Secure Enclave-backed authorization — Face ID, Touch ID, or a passcode, paired with a physical gesture. The app launches automatically when you hold the iPhone near a compatible terminal, the same field-detect behavior Apple Pay uses, or you can trigger it with a double-click of the side button. Apple requires developers to build this authorization flow in before approving them. There's no version that skips it.

Where you'll see it

Supported use cases

Apple's use-case list is broad: in-store payments, car keys, closed-loop transit, corporate badges, student IDs, home keys, hotel keys, merchant loyalty and rewards cards, and event tickets, with government ID support added later. Worth separating this from Tap to Pay on iPhone, which is the merchant-side feature that turns an iPhone into a card reader. This runs the other direction — a third-party app issuing the credential you tap.

Where it's live

The initial rollout covers Australia, Brazil, Canada, Japan, New Zealand, the UK, and the US, with a parallel EU rollout tied to the Digital Markets Act. Apple evaluates each participating developer one at a time, so what's actually available to you depends on which apps got approved in your region — not just which country you live in.

What you actually get to choose

Got more than one third-party contactless app installed? You pick which one launches by default — the same default contactless app setting you'd use to prefer a transit app over your bank's. Apple Pay and Apple Wallet keep working exactly as before; this is additive, not a replacement. The real gate sits on the developer side. A company has to sign a commercial agreement with Apple, request the NFC & SE Platform entitlement, meet standards like PCI DSS and GDPR, and pay fees Apple hasn't published. That's a business decision for banks, transit operators, and hotel chains — not something an indie developer bolts on over a weekend.

Where this is headed

This Apple-specific rollout sits on top of a broader standards push. The NFC Forum's 2026 roadmap calls for NFC data rates up to eight times faster, "multipurpose tap" so one interaction can trigger different actions depending on context, a new baseline security profile, and work on hardening NFC protocols against future post-quantum attacks. None of that is Apple-specific, and none of it has a confirmed ship date — it's the direction the underlying standard is moving, which is a reasonable signal for where credential-based NFC features go next.

Frequently Asked Questions

Does this mean any app can now read my NFC tags?

No. This is a separate, gated API for secure credential transactions like payments and keys. Reading and writing your own NDEF tags still goes through Core NFC, the same framework NFCore has always used — nothing changes there.

Which iPhones support third-party NFC and SE transactions?

iPhone XS or later, running a compatible iOS version (18.1 or newer — some use cases need later releases). Older iPhones with NFC read/write support via Core NFC are unaffected either way.

Do I need to do anything to use a third-party contactless app?

Only once the app you want is approved and live: open Settings, pick your default contactless app, and authorize each transaction with Face ID, Touch ID, or your passcode — the same gesture Apple Pay already uses.

Can any developer build one of these apps?

Not casually. A company has to sign a commercial agreement with Apple, request the NFC & SE Platform entitlement, meet compliance standards like PCI DSS and GDPR, and pay fees Apple hasn't publicly disclosed. It's built for banks, transit operators, hotel chains, and similar businesses — not indie developers.

Conclusion

Apple opening the NFC chip's Secure Element to third-party apps is a real shift, but it's a platform-level change aimed at businesses building payment, key, and ticketing apps. It doesn't change how you use NFCore. Reading, writing, and inspecting your own NFC tags still works exactly the way it always has — no account, no cloud upload. Want to see exactly what's stored on a tag right now? Open NFCore's Tag Inspector and tap.