Comprehensive technical knowledge base covering 12 GSMA eSIM specifications. 84+ articles on Remote SIM Provisioning — SGP.02, SGP.22, SGP.32, SGP.41, SGP.29, SGP.23, SGP.25, SGP.26 and more.
You’ve just bought an eSIM plan for your trip to Japan. You scan a QR code, and within seconds your phone has a brand new digital key. But what actually happened in those few seconds? It was a three-stage secret mission: and you were the spy master who launched it!
Before anything can happen, your carrier needs to prepare a key just for you.
Here’s what happens behind the scenes:
The QR code is surprisingly simple. It looks something like this:
LPA:1$keymaker.example.com$SECRET-CODE-123
That’s it! Just an address and a code. All the real security happens next.
This is where the spy-movie stuff happens. Before the Key Maker hands over any secrets, both sides must prove who they are.
The server goes first : this is very important:
Now the Key Maker knows it’s talking to a real chip, and your chip knows it’s talking to a real Key Maker.
Cool detail: The Assistant app on your phone carries all these messages back and forth, but it can never read them. It’s like a courier delivering sealed envelopes.
Now the real transfer begins. The Key Maker builds a special encrypted package called a Bound Profile : a key locked specifically to your chip.
The delivery uses a super-secure tunnel:
Inside the package are all the pieces of a working profile: network keys, a mini file system, and applets. The chip’s Profile Package Interpreter unwraps each piece and builds the profile inside a new locked box (ISD-P).
When it’s done, the profile is installed but not yet active. You have to flip the switch to turn it on!
On its journey, the key goes through four stages:
If you copy a Bound Profile from one phone and try to install it on another, it won’t work! The encryption is tied to the original chip’s unique secret. It’s like a key that reshapes itself to fit only one lock: and that lock is inside your phone.
Kid-friendly version of GSMA SGP.22, Section 3: Procedures