The article suggests using the contactless sensor, but how is that not another potential "skimmer" device?
I haven't looked into it, but I would guess that there's a key exchange with the reader that binds the contactless payment to that reader in such a way that the card produces a signed unique identity that proves it is the card without leaking the actual card numbers to the reader. Just a guess, but that's how I would want to build something like this. You don't have that much room on a chip but way more than a magstripe. (Security pattern: something you have that is time/merchant delimited)
I believe that in magstripe they just have a strip magnetized to produce some digits + your pin (Security pattern: something you know + something you have).