The card handed over at check-in is not a key in the mechanical sense. It carries a small block of encoded data that a lock reads, evaluates and decides on, and that data governs far more of the building than one door.
The lock decides, not the network
Most guestroom locks are battery powered and offline. They are not wired to the front desk, which is why they keep working during a network outage or a power cut.
The card carries the permission with it: a room identifier, a validity window and a sequence value. The lock compares that against what it already knows and opens or refuses on its own.
This is also why a new card silently kills the old one. The fresh card carries a higher sequence value, and the lock treats anything lower as superseded the moment it sees it.
Expiry is written at issue
The departure date and time are encoded when the card is cut, so a card stops working at checkout without anyone doing anything at the door.
Extending a stay therefore requires a trip to the desk even when the room does not change. The reservation moved, but the card did not.
Cards that fail a day early are usually reflecting the reservation rather than a fault in the card, which is why the desk checks the folio before recutting.
Elevators, gates and amenities use the same credential
In buildings with floor-restricted elevators, the card releases only the floors a guest is entitled to, which keeps a public lobby public without staffing every landing.
Parking gates, fitness rooms, pool decks and club lounges read the same card. Each reader checks for a specific entitlement rather than for identity.
Adding a lounge to a stay is then a data change, not a physical one. The desk writes an extra permission to the card and the reader starts accepting it.
Staff cards are a hierarchy, not a copy
Housekeeping, engineering and management cards sit at different levels, and each level opens a defined set of doors. A room attendant's card typically covers an assigned section and little else.
Locks retain a short audit trail of recent openings, recording which credential was presented and when. That record is what security reviews after a reported loss.
Emergency override cards and mechanical bypasses exist for failures, but they are controlled items precisely because they sit outside the ordinary permission structure.
What the card does not store
A persistent rumor holds that key cards carry credit card numbers. The encoding is generally a room, a date range and a sequence, which is all the lock needs to make its decision.
The privacy exposure is smaller than the folklore suggests, but a found card can still open a door until it expires, which is the real reason to return or destroy it.
Demagnetization from phones and wallets remains the common failure on magnetic stripe cards, while contactless cards fail more often from a dying lock battery than from the card itself.