TeslaKee — Secure BLE PhoneKey APP
The stock app responds to all Bluetooth requests unconditionally, leaving your vehicle vulnerable to relay attacks. Worse: because the stock app also responds to spoofed vehicles broadcasting a valid challenge, anyone running a fake Tesla beacon can silently detect that your phone (and therefore you) is nearby — a covert tracking and presence-detection channel useful for stalking, surveillance, or in-store profiling. TeslaKee solves both problems by introducing a powerful, on-device Policy Engine that verifies your context before authorizing an unlock or even acknowledging a challenge.
Anti-Relay Policy Engine
Our defense-in-depth approach ensures your vehicle only unlocks when you actually intend to:
• Motion Detection: Requires recent device movement, preventing overnight relay attacks while your phone sits on your nightstand.
• GPS Geofencing: Restrict passive entry to trusted zones like your home or workplace.
• Trusted WiFi: Only allow unlocks when connected to your known home network.
• Time-of-Day Rules: Define specific hours when passive entry is active.
• Manual Override: Temporarily bypass all rules for 15, 30, or 60 minutes for unexpected edge cases.
Hardware-Backed Cryptography
TeslaKee uses the Android StrongBox Secure Element. Your cryptographic keys are generated, stored, and utilized entirely within tamper-resistant hardware. The private key never enters application memory and cannot be exported.
Key Features:
• Full vehicle control: Lock/Unlock, Open Trunk/Frunk, Charge Port controls.
• Real-time vehicle status: View closure states, gear, and sleep status at a glance.
• Secure NFC enrollment wizard to pair a new key directly with your vehicle's center console.
• Completely local processing: No cloud servers, no tracking, no analytics, no accounts. Your data stays on your device.
• Available in 13 languages.
Disclaimer: This software is an independent research project and is not affiliated with, endorsed by, or sponsored by Tesla, Inc.

