UNITED STATES GOVERNMENT PIV · CAC · X.509 KEY SEALED IN CHIP UNITED STATES GOVERNMENT PIV · CAC · X.509 11:10 Welcome Connect AirID Reader This app requires a compatible smart card reader from AirID or Tx Systems. AirID Readers Tx Systems USB Connect Reader AirID2 · READER + BADGE HOLDER AirID2 · READER + BADGE HOLDER
MagenQ

CAC/PIV Logon
for your iPhone & iPad

Passwordless security: your private key never leaves your card and your credentials are never logged. Here's why that matters.

KEY SEALED IN HERE
Step 1 · The secure element

The key is born inside the chip — and never leaves.

Your private key is generated inside the card's secure element during manufacturing, and is sealed in tamper-resistant silicon. It is never loaded in, never exported — not by the app, not by you, not even under an electron microscope.

SECURE ELEMENT the trust anchor TAMPER-RESISTANT SILICON 🛠 🔬 EXTRACTION BLOCKED THE KEY NEVER LEAVES THE CHIP
Step 2 · The login

The phone asks. The card proves it.

When you log in, your phone asks the card a question. Inside its sealed chip, the card answers with a digital stamp — your proof of identity. Only that stamp travels back; the private key itself never leaves the card. Ever.

1 THE PHONE ASKS WHO'S THERE ? 2 THE CARD STAMPS — INSIDE STAMP · PROOF OF ID ✓ 3 ONLY THE PROOF RETURNS THE KEY NEVER MOVES.
Step 3 · The thief test

Nothing to steal.

Three attackers try, one after another. Each one walks away empty-handed — because the private key never leaves the card.

KEY SEALED IN HERE MALWARE NO KEY ON THE PHONE ✓ THIEF CARD STAYS WITH YOU ✓ @ PHISHING NO PASSWORD TO PHISH ✓ THE PRIVATE KEY NEVER LEAVES THE CARD.
Step 4 · Two more walls

Only you can turn the key.

Even with your card in hand, nothing works without your PIN — and the card itself checks it. Between phone and card, everything travels through an armored, encrypted tunnel.

YOUR PIN — CHECKED BY THE CARD SECURE CHANNEL — DOUBLE-WALLED & ENCRYPTED ? EAVESDROPPER
Step 5 · Future-proof

Post-quantum secure — ready today.

The wireless link between your phone and the AirID reader is already protected with post-quantum encryption. Even a future quantum computer recording the traffic today cannot unlock it later.

PHONE ⟷ AirID READER POST-QUANTUM "record now, decrypt later" — won't work
Step 5 · No copies

No copy in the cloud. Anywhere.

Nothing gets uploaded. Watch: the cloud tries to pull a copy of your key — and comes up empty. Your key exists in exactly one place. Your card. And your existing systems keep working unchanged.

NOTHING UPLOADED ONE KEY. ONE PLACE.
What you can do with it

Works where you work.

One card — all your daily workflows, directly on iPhone and iPad.

🌐 Log in to DoD & web portals in Safari
✉️ Sign & encrypt email — Apple Mail & Outlook
🛡️ Secure VPN to government & corporate networks
📲 CAC/PIV sign-in across your apps
Why it matters

Everything, in one place.

One card. One tap. Every advantage of true hardware-bound identity.

🔑Passwordless login 🛡️Key born in the chip — never leaves 🎣Phishing-resistant 🚫No password to steal 💳Your card stays with you 🧱Double-walled secure channel ⚛️Post-quantum ready — today ☁️No copy in the cloud 🌐Works in Safari, Mail, Outlook & VPN 📱CAC/PIV on iPhone & iPad 🤝Built by AirID + Tx Systems
MagenQ

Secure. Simple. Fast.

Passwordless. Phishing-resistant. Secure by design.
Developed by AirID and Tx Systems (USA).

📅 Free 7-day trial

Your key stays on your card. Always.

MagenQ — Security Explainer
Narrated walk-through · ~2:25
▶ Play with voiceover