Home / Network skimmer detection

Turn your Wi-Fi into skimmer sensors.

Your Cisco Meraki, Cisco Catalyst, Juniper Mist, HPE Aruba, or Ruckus access points can passively watch your payment terminals for card skimmers around the clock — with no new hardware to install.

Read this first

SkimGuard detects skimmers that transmit a Bluetooth signal. A clear result is not a guarantee that a terminal is safe — it cannot detect a purely mechanical or non-transmitting skimmer. Always check the card reader physically as well.

The Automated tier

Always-on, on the hardware you already own.

Handheld scanning is a snapshot; a skimmer installed an hour after your morning check goes unseen until the next one. SkimGuard's Automated tier closes that gap with continuous monitoring — and the network path does it using the enterprise access points already mounted over your floor.

Modern APs constantly observe the Bluetooth Low Energy advertisements around them. SkimGuard ingests those observations from your network and runs the same detection engine used across the platform to classify each device against known skimmer-hardware signatures. When something matches, it's flagged — no employee, no scan window, no extra device on the counter.

What you get

  • No new hardware. Your existing access points are the sensors.
  • Unlimited APs at a flat per-location rate — no per-AP or per-lane charge.
  • Handheld app included free so staff can still do a targeted spot-check anytime.
  • One dashboard across every monitored location.
  • A public “scanned recently” badge customers can see, signaling the location is monitored.
  • An audit-ready PCI DSS 9.5 & 10 inspection logbook that helps you document and meet the POI-device tamper-inspection and audit-trail controls — included, not an add-on.

Framed for compliance, this is continuous POI (point-of-interaction) tamper detection: your access points watch every payment terminal for the wireless signatures a skimmer emits, so a device planted between staff spot-checks is caught in the window that handheld scanning alone would miss.

Prefer not to use the network, or don't have enterprise Wi-Fi at a site? The Automated tier also runs as a desktop agent on lane or back-office computers. Agent and network integration are the same tier at the same price — the mechanism is up to you.

Supported today

Works with your network vendor.

SkimGuard integrates with the major enterprise wireless platforms in production today. Each vendor has its own detailed page:

  • Cisco Meraki — via the Meraki cloud dashboard.
  • Cisco Catalyst — via Cisco Spaces (Catalyst 9800 controllers and Catalyst APs).
  • Juniper Mist — via the Mist cloud.
  • HPE Aruba — via Aruba Central's monitoring API.
  • Ruckus — via SmartZone or the Ruckus IoT Controller.
Per-vendor detail pages

Read how skimmer detection works on your specific platform: Cisco Meraki · Juniper Mist · HPE Aruba · Ruckus · Cisco Catalyst (via Cisco Spaces).

Honest note on coverage

Some network platforms report only a device's Bluetooth address rather than its full advertisement, which lowers classification confidence for those observations. SkimGuard is transparent about this in the dashboard — and a location with no recent scan reads as “no data,” meaning unknown, not safe.

Full setup steps for each vendor live on the integrations page.

Get started

Your APs are already up there. Put them to work.

Turn your existing Meraki, Catalyst, Mist, Aruba, or Ruckus Wi-Fi into always-on skimmer detection. Talk to sales or start setup for your locations — see the for-business page for current pricing.