Home » HomeKit House-Sitter Access Checklist 2026: Locks, Alarms, Cameras, Privacy, and Revocation

HomeKit House-Sitter Access Checklist 2026: Locks, Alarms, Cameras, Privacy, and Revocation

A HomeKit house-sitter setup should give a temporary helper enough access to enter, care for pets, handle packages, and respond to a routine alarm without turning them into a permanent smart-home administrator. The hard part is not creating one code. It is finding every credential, camera, notification, and automation tied to the visit—and removing all of them when the stay ends.

This checklist covers Apple Home sharing, smart-lock codes, alarm PINs, cameras, privacy, notifications, outages, false alarms, handoff, and revocation. Product features and guest permissions change, so verify current support on the manufacturer’s pages before relying on a sitter workflow.

At a glance

Job Safer starting rule Proof before departure
Enter One named, time-limited credential and one expected door Sitter enters without the owner’s master code
Alarm One named PIN plus a plain-language mode card Sitter completes a supervised arrival and departure
Apple Home Share only the controls the visit requires Review the home from the sitter’s account
Cameras Disclose every active camera and block private areas Sitter confirms the disclosed views and recording state
Alerts Owner and backup responder keep primary responsibility Turn off the owner’s phone and confirm escalation
Departure Remove codes, invitations, shares, and schedules separately Old credentials fail while owner access still works

Define the sitter’s real jobs first

Write the visit plan before opening Apple Home, the alarm app, or the lock app. A weekend pet sitter may need the front door, alarm keypad, one camera-free pet area, and package instructions. An overnight house sitter may also need selected lights, a thermostat, a garage route, and a way to contact monitoring support. A cleaner or plant-waterer usually needs less.

List each required action:

  • Enter through the assigned door during an agreed window.
  • Disarm and re-arm the intrusion alarm.
  • Lock the physical door and confirm the latch caught.
  • Reach pet food, medication, water, or plant-care areas.
  • Move packages without opening unrelated storage.
  • Recognize a real smoke, carbon-monoxide, water, or intrusion warning.
  • Reach the owner, backup contact, property manager, or monitoring provider.

Do not share a control merely because it is available. If the sitter does not need the garage, interior cameras, bedroom lights, alarm settings, or automation editor, leave those controls out.

Apple Home access is only one credential

Apple’s current Home sharing guidance explains resident and guest access. Available guest controls, schedules, locks, garage doors, and remote access depend on current software, compatible accessories, and a home hub. Review the options on the actual owner and sitter devices; do not assume a screenshot from another home matches yours.

An Apple Home invitation is separate from a smart-lock code, alarm PIN, garage account, camera share, Wi-Fi password, key, and monitoring verbal password. Removing the Apple invitation does not prove that the other credentials stopped working.

Use named, temporary credentials

Create a sitter-specific code or account when the product supports it. Avoid sharing the owner’s master PIN. A named credential is easier to identify in activity history, limit by schedule, and revoke without changing every resident’s access.

Use the smart-lock access-code audit to list every code and owner. The HomeKit guest-access checklist covers Apple Home invitations and supported guest schedules. Treat both as parts of the same visit record.

Build a door-by-door route map

Temporary access often fails at the second barrier. A sitter may unlock the front door but find an armed interior door, a separate building entrance, a garage deadbolt, or a pet gate that blocks the planned route. Walk the complete path.

Barrier Credential or action Owner Fallback
Building or community entrance Fob, call box, or staff process Building manager Named building contact
House entry Named lock code plus alarm PIN Homeowner Sealed key with backup responder
Garage or side door Share only if the care route requires it Homeowner Use the primary entrance
Pet or utility room Physical latch and clear instructions Homeowner Backup care location
Package storage Defined drop area Homeowner Leave package in the agreed safe place

Label door sensors and locks by location instead of model number. “Back door open” is useful; “Sensor 7 active” is not. Confirm the sitter sees the same names on their device and keypad.

Make the alarm handoff boring

A sitter should not learn alarm modes while an entry timer is sounding. Give them a one-page card with the assigned door, entry delay, named PIN, expected mode, owner contacts, backup contact, monitoring number, and the provider’s approved test procedure.

Explain each mode in the language used by the installed system:

  • Away: the home is empty and the broader intrusion sensor set may be active.
  • Home: people are inside while selected perimeter sensors remain active.
  • Standby or Off: intrusion arming is off; life-safety alarms remain separate.

The exact sensor set varies. Walk the sitter through the real property. Put a monitored account into the provider’s approved test mode before any drill, and never contact emergency services as a practice exercise.

The false-alarm reduction checklist helps review entry delays, sensor names, pets, codes, and call lists. Record the sitter’s role in the emergency-contact plan.

Keep life-safety response outside smart-home shortcuts

A HomeKit scene can turn on lights or announce that a door opened. It should not be the only smoke, carbon-monoxide, gas, water, or evacuation warning. Use listed life-safety alarms, follow their installation instructions, and give the sitter a clear leave-and-call plan.

The sitter needs to know:

  • Which warnings mean leave immediately.
  • Where pets, carriers, leashes, shutoffs, and meeting points are located.
  • Which actions are safe only after leaving the property.
  • Who owns repair, monitoring, and insurance calls.
  • That they should not re-enter a dangerous property to cancel an alarm.

Keep these instructions on paper in a known place so a failed phone, router, or app does not erase the response plan.

Disclose cameras before the sitter accepts

Tell the sitter where every active camera is, what it can see, whether it records audio, when it records, who can watch live video, and how long clips may be retained. Do not place cameras in bathrooms, bedrooms used by the sitter, changing areas, or other spaces where a person expects privacy. Local recording and consent rules vary; confirm the rules that apply to the property.

The Federal Trade Commission’s home-camera security guidance recommends strong unique passwords, multi-factor authentication when available, updates, and safer remote access. Check the owner, sitter, and backup accounts.

Use the HomeKit security privacy guide to review rooms, recording status, shared accounts, downloads, and recovery. If a sitter does not need video, do not share video merely for convenience.

Give alerts to people who can act

The homeowner should not forward every motion clip, battery warning, door alert, and automation error. Too many notifications hide the event that matters. Assign an owner and backup responder for each alert.

Alert Primary responder Sitter action
Assigned door failed to lock Sitter, then owner Check the physical latch and follow the fallback
Unexpected perimeter opening Owner or monitoring provider Stay away and use the contact plan
Camera offline Owner Do not troubleshoot private network equipment unless asked
Water or life-safety alarm Occupant and emergency plan owner Follow the written leave-and-call plan
Low lock or sensor battery Owner Use the tested fallback; do not improvise a reset

Run the HomeKit notification audit on the sitter’s phone and both responder phones. Check focus modes, notification summaries, app permissions, cellular data, lock-screen privacy, and what happens when the owner’s phone is off.

Keep automations conservative

A sitter visit changes the normal occupancy pattern. A geofence may arm while the sitter remains inside. An auto-lock may secure the wrong door while they carry pet supplies. A “vacation” scene may turn off needed lights or climate controls.

Before leaving:

  • Pause automations based only on the owner’s phone location.
  • Check auto-lock timing at the assigned entrance.
  • Confirm pet-safe climate and lighting rules.
  • Remove surprise voice announcements in sleeping areas.
  • Keep alarm arming a deliberate action unless the full visit pattern was tested.

Do not build the visit around an automation that the sitter cannot identify, stop, and recover from.

Abode setup for temporary care

An Abode household can use the Smart Security Kit as the alarm and sensor layer, a Mini Door/Window Sensor on the assigned entrance, Keypad 2 for dedicated mode control, and Abode Lock where the door and current system support it. Confirm hub compatibility, Apple Home behavior, user permissions, PIN options, and code schedules before the visit.

Abode’s current plans page describes self-monitoring, paid services, cellular backup, and professional monitoring choices. Verify which history, automation, backup, and response features are included in the active plan. A sitter should never be promised that an alert will reach a monitoring operator unless the account and event type are actually covered.

Failure tests before handing over the house

Sitter’s phone is unavailable

Turn off the sitter’s phone. Can they enter, disarm, lock the door, and reach a contact with the keypad, code, paper card, and fallback key process? If not, the visit depends too heavily on an app.

Owner’s phone is unavailable

Turn off the primary owner’s phone. Confirm the backup person receives the expected alert and has the account permission, property address, and provider details needed to act.

Internet is down

Disconnect the home internet without cutting power to the security devices. Repeat a safe arrival and departure. Record which lock, keypad, alarm, hub, and camera functions remain available and how the sitter knows to use the fallback.

Lock battery is weak or the door is misaligned

Test the physical latch with the door open and closed. Show the sitter the approved backup entry. A motor sound or app checkmark does not prove the deadbolt reached the strike plate.

A false alarm occurs

Use the provider’s test mode and procedure. The sitter should know the disarm step, the contact order, and what account detail they are allowed to provide. They should also know when to leave instead of troubleshooting.

The sitter arrives early, late, or is replaced

Test the schedule boundary. Confirm access fails outside the intended window without breaking owner access. If a replacement sitter is needed, create a new named credential instead of forwarding the first sitter’s code.

30-minute house-sitter acceptance test

  1. List every invitation, account, code, key, camera share, Wi-Fi share, and schedule tied to the visit.
  2. Use the sitter’s credential at the real building and house entrances.
  3. Disarm and re-arm with the named alarm PIN.
  4. Confirm the door sensor, lock, and keypad use clear location names.
  5. Check the latch physically after locking.
  6. Review every camera and recording state with the sitter.
  7. Trigger one safe notification and confirm the owner and backup paths.
  8. Turn off the sitter’s phone and repeat entry.
  9. Turn off the owner’s phone and confirm backup response.
  10. Disconnect the internet and test the local fallback.
  11. Review life-safety exits, pets, packages, contacts, and the no-re-entry rule.
  12. Run the full revocation checklist, then restore only the access needed for the actual visit.

Repeat the short arrival and departure test after a lock, hub, router, keypad, app, plan, sitter, or schedule change.

Departure and revocation checklist

Do not end the visit by removing only the Apple Home invitation. Use the original credential inventory and close each item separately:

  • Remove the Apple Home guest or resident invitation.
  • Delete or disable the sitter’s lock code.
  • Delete the alarm PIN and monitoring call-list entry.
  • Remove camera shares and downloaded-clip access.
  • Remove garage, gate, building, delivery, and Wi-Fi access that is no longer needed.
  • Collect physical keys, fobs, remotes, and written passwords.
  • Restore paused automations and verify the normal household schedule.
  • Test that the old sitter credentials fail.
  • Test that owner, backup, and emergency access still work.
  • Record the date, tester, and any credential that could not be removed.

Verdict

The best HomeKit house-sitter setup is temporary, named, disclosed, tested, and easy to revoke. Give the sitter one planned route, one alarm process, only the controls they need, and a paper fallback. Keep owners responsible for alerts, disclose every camera, and prove that every credential can be removed without locking out the household.

Frequently asked questions

Should a house sitter be added as a resident in Apple Home?

Only if the sitter needs the available resident controls and the owner accepts that scope. A supported guest invitation, named lock code, and alarm PIN may be enough. Review current Apple and accessory permissions on both devices.

Can a sitter use the owner’s alarm code?

A separate named PIN is safer when the system supports it. It protects the master credential, improves activity records, and can be removed without changing every household member’s code.

Do indoor cameras need to be disclosed to a house sitter?

Disclose every active camera, its view, audio state, recording rules, and access. Avoid bedrooms, bathrooms, changing areas, and other private spaces, and check the recording and consent rules that apply locally.

What if the internet fails during the visit?

Keep a tested keypad, lock, key, and paper-contact fallback. Test the actual alarm, lock, hub, and router behavior before leaving; do not assume every device works locally.

How should house-sitter access be removed?

Remove Apple Home access, lock codes, alarm PINs, camera shares, garage or gate access, Wi-Fi sharing, and physical credentials separately. Then prove the old access fails and owner access still works.

Turn the house-sitter handoff into an auditable access window

A sitter can have the right lock code and still be unable to complete the visit safely. The alarm may be in the wrong mode, a camera alert may go only to the owner, the phone may lose service, or a temporary permission may remain active after the final visit. Treat the handoff as a controlled access window with a start, an owner, a backup, a tested route, and a recorded closeout.

Write the sitter’s approved jobs before granting access. Separate entry, alarm use, pet or plant care, package handling, camera visibility, emergency response, and departure. Do not grant administrator access merely because it is faster than assigning a narrower role.

House-sitter control record

Control Required record Owner Closeout proof
Identity Full name, verified phone, visit dates, backup contact Homeowner Final visit confirmed
Entry Named code or invitation, exact door, allowed hours Access owner Credential expired or removed
Alarm Allowed modes, entry delay, keypad route, false-alarm response Alarm owner Normal household mode restored
Cameras Disclosed devices, live-view rights, recording boundaries Privacy owner Temporary viewing rights removed
Alerts Primary owner, backup, safe verification method Alert owner Temporary alert routing removed
Emergency Local contact, service numbers, safe exit, pet plan Response owner Any incident documented
Accounts Apps, devices, sessions, roles, recovery path Account owner Session and permission audit passed

Use eight operating routes before leaving the property

1. Create and remove one temporary access path

Use the temporary smart-lock access checklist for every exterior door the sitter may use. Record the named user, door, schedule, code owner, successful outside test, failed-code behavior, emergency fallback, and removal test.

Do not reuse a household code or send the owner’s account password. If the lock cannot assign a narrow credential, use a controlled physical-key handoff or another door rather than granting broad account access.

2. Prove a backup administrator can act without sharing the owner account

Run the backup administrator drill with the real backup person. Confirm they can receive the right alerts, verify a sitter problem, contact the sitter, reach the monitoring provider if applicable, and revoke access without using the primary owner’s password.

The backup should not inherit every camera, recording, billing, or device-management permission. Give only the rights needed for the documented response job, then review those rights after the access window closes.

3. Audit the sitter’s phone and every trusted session

Use the trusted-device and session audit to list phones, browsers, tablets, and old app sessions tied to the home. Check whether a prior sitter, former resident, replacement phone, or shared browser still has access.

Record device name, user, last use, role, sign-in method, recovery method, and removal result. Do not assume deleting an app ends the server-side session.

4. Test phone permissions under the sitter’s normal settings

Run the home-security app permission audit on the sitter’s phone and the owner’s backup phone. Check notifications, mobile data, background operation, battery restrictions, Focus modes, location access where needed, camera permission where needed, and the correct signed-in account.

Test while each phone is locked and off the property Wi-Fi. A successful alert on the owner’s phone does not prove that the sitter will receive a door, alarm, battery, or lockout alert.

5. Define the safe route when internet service fails

Run the home-security internet outage test with the hub, router, lock, alarm, cameras, door sensors, and phones. Record local entry, local alarm behavior, camera recording, remote control, delayed alerts, cellular backup where present, and recovery order.

The sitter needs a rule that can be followed without guessing. Write which door and credential still work, which actions are prohibited, who to call, and when to leave rather than retrying a failed lock or alarm command.

6. Make lockout recovery safe and local

Use the smart-lock lockout recovery checklist before the first solo visit. Test the mechanical key or approved emergency-power path, door alignment, battery state, code lockout behavior, owner contact, backup contact, and locksmith rule.

Do not hide a key in an obvious location or ask the sitter to force a door. If the safe backup cannot be tested, the access plan is not ready.

7. Remove the temporary resident or member at the end

Follow the HomeKit member-removal checklist after the final visit. Remove the person from Apple Home if they were added, revoke vendor-app roles, expire lock codes, remove alarm users, review shared camera access, and test from the former user’s device where practical.

Check automations, scenes, notifications, shared albums, saved browsers, and recovery contacts. Revocation is complete only when the former access path fails and the remaining household access still works.

8. Record incidents and review the handoff after the final visit

If any alert, lockout, false alarm, outage, camera concern, or unexpected entry occurred, build a factual record with the incident timeline worksheet. Align lock activity, alarm events, camera clips, messages, calls, and time zones.

Then use the incident after-action review to assign fixes, owners, deadlines, and a retest. Separate observed facts from assumptions and preserve only the evidence needed for a lawful, proportionate response.

Run a 60-minute house-sitter shift test

  1. Minutes 0–8: Review the sitter’s approved jobs, visit window, entry door, alarm modes, camera disclosure, alert owner, backup, and emergency contacts.
  2. Minutes 8–18: Enter from outside with the named credential. Confirm door state, lock activity, entry delay, keypad use, and the result of one wrong-code attempt.
  3. Minutes 18–28: Complete the real care route. Test the relevant room access, package or pet task, privacy boundary, and any door that must remain closed.
  4. Minutes 28–36: Trigger approved door, alarm, battery, and camera alerts. Check the sitter, primary owner, and backup phones while locked and on cellular data.
  5. Minutes 36–44: Disconnect internet under controlled conditions. Prove local entry, alarm behavior, recording, prohibited actions, and the recovery sequence.
  6. Minutes 44–51: Simulate a weak lock battery or failed entry. Use only the approved backup path and confirm the sitter can exit safely.
  7. Minutes 51–57: End the visit, close and lock every used door, restore the approved alarm mode, and confirm the final state.
  8. Minutes 57–60: Expire the test credential, remove temporary rights, check sessions, and prove the former path no longer works.

House-sitter access scorecard

Area Pass Needs work
Scope Jobs, dates, doors, modes, and privacy limits are written Broad verbal permission or unclear end date
Credential Named, narrow, tested, and removable Shared code, owner password, or untracked key
Alerts Sitter, owner, and backup receive only the alerts they own Alerts are delayed, missing, duplicated, or unowned
Failure route Internet, phone, battery, and lockout paths are tested Sitter must improvise or repeatedly retry a failed command
Privacy Cameras are disclosed and rights match the care job Hidden recording, unnecessary history, or broad viewing rights
Revocation Member, code, app role, session, and alert rights are removed Any former path remains usable
Evidence Incidents have a factual timeline, owner, fix, and retest Only screenshots, guesses, or unassigned problems remain

Do not leave until these house-sitter blockers are cleared

  • The sitter must use the owner’s account password, permanent household code, or full administrator role.
  • The approved entry door binds, fails to latch, or cannot prove its final locked state.
  • The sitter has not practiced the alarm entry delay, false-alarm response, and safe exit.
  • Indoor cameras or audio recording have not been disclosed before the sitter accepts the job.
  • Alerts reach only an unavailable owner or are blocked by normal phone settings.
  • Internet loss removes control and the sitter has no written local fallback.
  • Emergency power, mechanical key, or lockout support cannot be used safely.
  • Old residents, prior sitters, former phones, or browser sessions still have access.
  • No one owns end-of-window revocation and the final failed-access test.

A good house-sitter handoff is uneventful by design. The sitter gets the smallest useful access, every failure has a safe route, and the household can prove that temporary access ended when the final visit did.

Have your say!

0 0