Vending and automated kiosks
IoT for Vending Machines
Connectivity for vending machines and automated kiosks: stock telemetry, on-machine contactless payments, predictive maintenance, and sales telemetry. Multi-carrier to guarantee coverage in stations, hospitals, and venues where a single network may not reach.
- 1. Aggregated multi-carrier access; automatic switching to the best available operator.
- 2. Aggregated roaming coverage; exact list varies by country and operator.
Key features
Real-time stock telemetry
Level and rotation sensors report to the central system which SKUs and machines need restocking. Optimized routes for the field operator.
On-machine contactless payments
NFC and QR readers connected to a payment gateway. Card, phone, and operator app on a single interface; authorization in under 2 seconds.
Sales telemetry
Sales data by SKU, hour, machine, and location flow to the cloud to optimize assortment, dynamic pricing, and per-zone promotions.
Alerts and supervision
Detection of refrigeration faults, dispenser jams, overtemperature, vandalism, and disconnection. Immediate alert to field service.
Predictive maintenance
Models over motor, valve, and compressor data to schedule maintenance before failure. Cuts truck rolls and unplanned stops.
Multi-vendor and multi-vertical
Coffee, snacks, cold drinks, ice, ATMs, smart lockers, parking. Any machine with a 4G/LTE-M modem accepts our standard SIMs.
Use cases
Typical problems
- Machines installed in basements, underground parking, or interior corridors where the single operator delivers one bar and the SIM goes dark for the whole day.
- Contactless payment data (card, phone, app) sharing cellular plane with stock telemetry, which complicates PCI scope as the estate grows.
- Cashless readers (Nayax Onyx, MEI Easitrax, ICT Quantum) shipped with the manufacturer's SIM whose per-machine tariff prevents the model from scaling beyond a few dozen units.
- DEX/UCS telemetry that never reaches the back office because the connection drops at every cell handover and the machine does not retry until the operator's next visit.
- Failure alerts (jam, fridge overtemperature, vandalism) that take hours or days to escalate because the machine only reports once a day to save data.
- 2G/3G shutdowns in countries with large fleets of GPRS-modem machines: each shutdown leaves several thousand units silent overnight.
Recommended architecture
- 1
Multi-operator SIM with RSRP priority on LTE-M, fallback to 4G
The modem (Quectel BG95-M3, u-blox SARA-R5, Nordic nRF9160) probes every network and stays on the strongest. LTE-M penetrates basements better and uses less battery on the cashless reader. 4G fallback for machines with video or advertising screens.
- 2
DEX/UCS telemetry over persistent TCP with retry
Modern machines expose DEX (Data Exchange) or the newer UCS (Universal Cashless Specification) over TCP. The modem keeps a persistent connection and retries with exponential backoff. Without this, data is lost on every drop.
- 3
Cashless payment with segregated SIM or private APN to gateway
Nayax/Cantaloupe/MEI readers connect to the cashless provider's gateway. To reduce PCI scope, segregate cashless traffic with a private APN to the acquirer, separated from operational telemetry.
- 4
Telemetry platform with real-time alerts
Systems like Nayax MoMa, Cantaloupe Seed, Vendon, Televend, or Vendista ingest data every minute and trigger alarms for failure, overtemperature, vandalism, or stock-out instantly. Without continuous telemetry you depend on the manual cash-up.
- 5
Small data plan with hard block at 100% to avoid bill surprises
A vending machine typically uses less than 5 MB/month in normal operation. Configure alarms at 70/80/90% and auto-block at 100%. A machine going haywire from a broken firmware can multiply usage by 100x, so the block prevents disaster.
Indicative data plan
| Device | Typical monthly traffic | Recommended plan |
|---|---|---|
| Basic stock + sales telemetry (DEX every 1-4 h) | 1-3 MB/month | Pay-as-you-go or 50 MB annual pack |
| Cashless reader with contactless authorization | 3-10 MB/month | 50 MB pack with private APN to gateway |
| Machine with continuous telemetry (1 sample/min) | 10-30 MB/month | 100 MB pack |
| Machine with advertising screen or video | 500 MB - 2 GB/month | 2 GB pack / Pooled data |
| Smart locker / parcel locker with remote opening | 20-100 MB/month | 100 MB pack with static IP |
Indicative figures for standard coffee, snack, and beverage machines. Machines with security cameras or 4K screens consume far more; request a sizing simulation with your real product mix.
When to use static IP
- Smart locker, parcel locker, or intelligent kiosk whose back office must remotely open compartments on demand.
- Machine with a camera or advertising screen that the operator NOC must reach for support and OTA updates.
- PCI or security audit for large operators that requires per-source IP traceability of the cashless reader.
- When the acquirer or cashless gateway filters origins by IP allowlist instead of per-machine credentials.
When to use private APN
- Cashless with EMV traffic going directly to the gateway (Nayax, Worldline, Stripe, Adyen) that must be segregated from the public Internet to reduce PCI scope.
- Large operator with several thousand machines and a central platform that requires consistent RFC1918 addressing.
- Operational telemetry sent to an ERP in the operator's own data center (SAP, Microsoft Dynamics) over MPLS or IPsec.
- International deployment with a single back office and machines across multiple EU countries.
Compatible devices
Nayax Onyx / VPOS Touch
Cashless reader with touchscreen, NFC, card and app. 4G/LTE-M connectivity with Nayax SIM or third-party. MoMa platform for telemetry.
Cantaloupe ePort / Seed
Dominant cashless reader and telemetry platform in the US. Supports DEX and UCS, integrates with most Crane, AMS, and Royal machines.
MEI Easitrax / VendIT
Telemetry over MEI modem with DEX, embedded in MEI bill validators already installed in large fleets. 4G and LTE-M variants.
ICT Quantum / Bezel
Cashless reader from ICT (Innovative Card Technologies) and bill validator with cellular telemetry. Popular in beverage and coffee machines.
Crane Coinco MEI Cashflow + Crane Connectivity
Coin and bill validators from Crane Payment Innovations with telemetry over the cashless modem. Standard in Crane Merchandising machines.
Vendon V-Box / V-Sense
Low-cost telemetry for mid-size machines. Operational telemetry only (no payment); useful when cashless is already in the reader.
Frequently asked questions
- How much data does a vending machine actually use per month?
- Basic stock and sales telemetry (DEX every 1-4 hours) consumes 1-3 MB per month. Add cashless authorization and you climb to 3-10 MB. Add an advertising screen with creative downloads and you jump to several hundred MB or GB. The vast majority of operators fit comfortably in a 50 MB annual pack at very low cost.
- Do I need one SIM per machine or can I share across nearby ones?
- One SIM per machine. Sharing requires an intermediate router that adds cost, single point of failure, and operational complexity. Machines are usually physically separate or installed at different times, so the individual SIM gives total independence. For smart lockers with many small units in one spot, a shared router does make sense.
- LTE-M or 4G for my machines?
- LTE-M for telemetry-only and basic cashless: better basement penetration, less battery on the reader, cheaper plans. Classic 4G (Cat-1) if the machine has an advertising screen, video, camera, or needs low latency for an interactive on-screen experience. NB-IoT almost never: latency too high for contactless payments.
- How does the 2G/3G shutdown affect my current fleet?
- If your fleet is still GPRS (2G modem), plan migration to LTE-M before the shutdown date in each country. Spain shuts down 3G during 2025 (per operator) and 2G around 2030. Some cashless readers allow comms module retrofit; others require full replacement. Ask your cashless vendor for the migration roadmap.
- What architecture do you recommend to reduce PCI-DSS scope?
- Segregate cashless traffic on a private APN with a direct tunnel to the acquirer (Nayax, Worldline, Stripe Terminal Gateway). The reader should be P2PE-validated so PAN never travels in clear through the machine or the operational network. Operational telemetry (stock, sales, alerts) can go over public APN without affecting PCI scope.
- How do I block a stolen or vandalized machine?
- Suspend the SIM from the IoT portal in under 1 minute. The machine loses connectivity and cannot accept cashless payments. Also notify the cashless provider to block the merchant ID and the insurer. Most modern readers detect tamper and self-block instantly.
- Can I manage machines across multiple countries from a single platform?
- Yes with multi-operator SIM and an international plan. Large operators across EU countries use multi-IMSI with a unified European tariff and a single central platform (Nayax MoMa, Cantaloupe Seed, Vendon). Verify your cashless gateway is enabled in each destination country before installing.
Pre-deployment checklist
- 1Machine inventory: model, modem (2G/3G/4G/LTE-M), SIM format, installed cashless reader, and platform provider.
- 2Location map with a coverage study of the 4 national operators at each point, focusing on basements and indoor sites.
- 3Per-machine decision: individual SIM vs shared router for locker clusters or large vending banks.
- 4Public vs private APN decision for cashless traffic, aligned with the PCI SAQ that applies to the operator.
- 5Static IP only where the back office needs inbound (smart lockers, screen machines, readers with allowlist).
- 62G/3G fleet migration plan to LTE-M with per-country calendar, validated with the cashless provider.
- 7Usage alarm setup at 70/80/90% per SIM and auto-block at 100% to prevent bill surprises.
- 8Immediate decommission procedure for stolen, vandalized, or relocated-without-authorization machines.
- 9Integration of the telemetry platform (Nayax MoMa, Cantaloupe Seed, Vendon, Televend, Vendista) with the operator ERP and the end customer ERP.
- 10Pilot with 10-30 machines for 4-8 weeks under real conditions before full rollout.
Need a printable version? See the pre-deployment guide.
Have a project in mind?
Tell us your use case and we'll help you find the best connectivity solution.