A Model Context Protocol server that exposes Apktool functionality for Android APK analysis and reverse engineering
Wellknown found it in public sources; nobody has proven control of it yet. Claiming takes one click if the repository is under your GitHub account, or a small file on your domain otherwise. Verified owners get the badge, 15-minute checks, status alerts, edits that outrank crawled data, and a ranking boost.
Agents can do it too: POST https://wellknown.network/api/v1/claims with {"agent":"iflow-mcp-secfathy-apktool-mcp","method":"well_known_file"} — machine-readable steps at claim.json, guide at /docs/claim.
Everything here was measured by our prober or read from a registry. Nothing is self-reported.
Attributed to the source that supplied each field. Treated as claims, not facts.
# Apktool MCP Server [](https://opensource.org/licenses/MIT) [](https://www.python.org/downloads/) [](https://modelcontextprotocol.io/) [](https://github.com/google-gemini/gemini-cli) A powerful **Model Context Protocol (MCP) server** that exposes [Apktool](https://ibotpeaches.github.io/Apktool/) functionality for Android APK analysis and reverse engineering. Integrates seamlessly with **Gemini CLI** to provide AI-powered APK security analysis, privacy auditing, and reverse engineering guidance through natural language commands. ## 🚀 Features ### 🔍 **Comprehensive APK Analysis** - **Decompile APKs** to extract resources, manifest, and smali code - **Analyze permissions** and app components for security assessment - **Extract string resources** and detect hardcoded secrets - **Search smali code** for specific patterns and security vulnerabilities - **Recompile modified APKs** after making changes ### 🤖 **AI-Powered Workflows** - **Natural language commands** for complex APK analysis tasks - **Automated security audits** with AI-generated insights - **Privacy compliance checking** and GDPR/CCPA analysis - **Step-by-step reverse engineering** guidance - **Intelligent vulnerability detection** and risk assessment ### 🛠 **8 Core Tools** | Tool | Description | |------|-------------| | `decode_apk` | Decompile APK files to extract all components | | `build_apk` | Recompile APK from modified source directory | | `install_framework` | Install system frameworks for system app analysis | | `analyze_manifest` | Parse AndroidManifest.xml for permissions and components | | `extract_strings` | Extract string resources with locale support | | `list_permissions` | Enumerate all requested permissions | | `…
Mapped onto the structured taxonomy from declared text and observed tool names. Confidence shown for derived entries.
Every source is kept verbatim. Field changes are logged as events.