FinTech & Security

EZToken - Biometric OTP Transaction Authorization Token App

Native iOS (Objective-C) software security token / mobile authenticator app by EZMCOM that generates HOTP/TOTP one-time passwords and authorizes bank transactions using biometric fingerprint authentication (EzBioSDK), tilt-gesture confirmation and Touch ID, with push-based ACCEPT/REJECT transaction approval.

01 Overview

Native iOS (Objective-C) software security token / mobile authenticator app by EZMCOM that generates HOTP/TOTP one-time passwords and authorizes bank transactions using biometric fingerprint authentication (EzBioSDK), tilt-gesture confirmation and Touch ID, with push-based ACCEPT/REJECT transaction approval.

Scope of delivery

Built a native iOS software security-token app for EZMCOM that emulates a hardware authenticator: it generates HOTP/TOTP one-time passwords, enrolls and activates the token with an activation code and registration code (RC), and authorizes mobile banking transactions through biometric fingerprint (EzBioSDK), tilt-gesture and Touch ID confirmation.

02 Business Challenge

Delivering a production-grade security token solution required tamper-resistant OTP generation, biometric authentication and reliable transaction-approval workflows.

03 Our Solution

Engineered a native iOS security-token app in Objective-C/C++ with the EzBioSDK fingerprint recognizer and LocalAuthentication (Touch ID), RFC-compliant HOTP/TOTP generation backed by HMAC-SHA1, AES/Rijndael and PBKDF2 crypto over persisted secret files, CoreMotion tilt-angle capture for gesture confirmation, and interactive push notifications that surface ACCEPT / REJECT actions for each transaction.

Engineering approach

Engineered the app in Objective-C/C++ with the EzBioSDK fingerprint recognizer and LocalAuthentication (Touch ID), RFC-compliant HOTP/TOTP generation backed by HMAC-SHA1, AES/Rijndael and PBKDF2 crypto over persisted secret files, CoreMotion tilt-angle capture for gesture confirmation, and interactive push notifications that surface ACCEPT / REJECT actions for each transaction.

04 Design Thinking

Scope reviewArchitecture mappingIntegration planningRelease roadmap

05 Technical Architecture

Product Client

Native iOS security token app for OTP and transaction approval.

Service Layer

HOTP/TOTP engine, biometric SDK and secret-file persistence.

Integrations

EzBioSDK, LocalAuthentication, CoreMotion tilt, Parse and push notifications.

Release Pipeline

Built with Objective-C/C++ and EzBioSDK across the iOS project.

06 Technology Stack

Objective-C / C++ (Objective-C++)EzBioSDK (fingerprint biometrics)HOTP / TOTP (RFC 4226/6238)HMAC-SHA1 / SHA1AES / RijndaelPBKDF2LocalAuthentication (Touch ID)CoreMotion (tilt gesture)Parse / BoltsPush Notifications

07 Development Timeline

Delivered through structured phases - discovery, design, build, integration, and launch - with iterative releases and ongoing enhancements across a fintech & security delivery.

08 UI Screens / Key Features Showcase

09 Before vs After

Before

Manual, disconnected workflows and limited visibility across operations.

After

An integrated, automated fintech & security solution with a unified experience, stronger controls and measurable efficiency.

10 Performance Metrics

99.9%System SLA
< 90msResponse Time
High SecurityClient Impact

11 Business Outcomes

iOS
Native app

Native Objective-C/C++ security token app.

OTP
Token engine

HOTP/TOTP generation with HMAC-SHA1, AES and PBKDF2.

Security
Auth

Fingerprint, Touch ID and tilt-gesture transaction confirmation.

12 Testimonial & Connect

"Dogra Technologies built EZToken as a native iOS biometric OTP security token app for secure transaction authorization."— Delivery Lead, Dogra Technologies Client

Interested in a similar solution?

Request Architecture Brief View Full Portfolio