APK Security & Privacy Score
Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.
Security
Scan-weighted
94/100
Threat scan clean
Modern target SDK
Privacy
Permissions & network
93/100
High-risk permissions
AllowBackup enabled
Low data access
93/100
Excellent
Overall trust
Facts
Threat scan
0/76 flagged, 0 suspicious
Permissions
5 requested
Network strings
6 URLs (0 HTTP, 6 HTTPS)
Target SDK
36
Certificate
Valid until 2050-11-22 (25 years, suspicious)
Warnings
High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.QUERY_ALL_PACKAGES
AllowBackup is enabled.
Package Name
zed.rainxch.githubstore
Version Code
10
Version Name
1.5.1
Application Name
zed.rainxch.githubstore.app.GithubStoreApp
Debuggable
No
Allow Backup
Yes
Min SDK
Android 24 (Nougat)
Target SDK
Android 36 (Unknown)
Supported ABIs
arm64-v8a
armeabi-v7a
x86
x86_64
Certificate & Signer
Valid From
Valid To
Serial Number
Thumbprint
Issuer: C
Issuer: CN
Issuer: DN
Issuer: L
Issuer: O
Issuer: OU
Issuer: ST
Subject: C
Subject: CN
Subject: DN
Subject: L
Subject: O
Subject: OU
Subject: ST
Security Scan
0
✓ Clean
Malicious
0
Suspicious
0
Harmless
0
Undetected
65
Timeout
2
Failure
0
Scan Providers
ALYac
APEX
AVG
Acronis
AhnLab-V3
Alibaba
Antiy-AVL
Arcabit
Avast
Avast-Mobile
Avira
Baidu
BitDefender
BitDefenderFalx
Bkav
CAT-QuickHeal
CMC
CTX
ClamAV
CrowdStrike
Cylance
Cynet
DeepInstinct
DrWeb
ESET-NOD32
Elastic
Emsisoft
F-Secure
Fortinet
GData
Google
Gridinsoft
Ikarus
Jiangmin
K7AntiVirus
K7GW
Kaspersky
Kingsoft
Lionic
Malwarebytes
MaxSecure
McAfeeD
MicroWorld-eScan
Microsoft
NANO-Antivirus
Paloalto
Panda
Rising
SUPERAntiSpyware
Sangfor
SentinelOne
Skyhigh
Sophos
Symantec
SymantecMobileInsight
TACHYON
Tencent
Trapmine
TrellixENS
TrendMicro
TrendMicro-HouseCall
Trustlook
VBA32
VIPRE
Varist
ViRobot
VirIT
Webroot
Xcitium
Yandex
Zillya
ZoneAlarm
Zoner
alibabacloud
huorong
tehtris
File Signatures
SHA-256
82c2259c374fd159274e2b4037d98867eba1adc71eca0865627db5bcebef6602
MD5
a37935d69a6b93d3c0fa0dee9284f48c
SHA-1
a838b402c3ee540c6e3f228f0c352561a3aaea10
SSDEEP
196608:ohBUqhL2NAP+qxQ6duRlGfOAS7jCaFO2MmDdqOKwUaekrK+tjIp:oz762uHHjCaFOdybUaekr9tE
TLSH
T14CE6F103FE504915DCF520749B5F83E0B2F66DA583A791839A09B918BEFBAD04F39391
VHASH
64ba2968f87a01df734f1d95e6d4e8b5
PERMHASH
850ef5bd55cc851a9a19dc675c3d6eaa45e1edfed61898fd316ebea72b9034cf
File Intelligence
Type Description
Human-friendly file type name based on multiple detection methods.
Type Extension
Most likely file extension inferred from the content.
Type Tag
Primary type tag assigned by the classifier.
Type Tags
Additional type tags that describe the file content.
Magic
File signature result from magic bytes inspection.
Magika
File type predicted by Magika (ML-based file type detection).
TrID
TrID file type guesses with probabilities.
dhash
Perceptual hash used to compare visual similarity of files.
raw md5
Raw MD5 hash of the file contents.
extensions
File extensions found inside the APK and how many of each.
file types
Detected embedded file types and their counts.
highest datetime
Latest timestamp found among files inside the archive.
lowest datetime
Earliest timestamp found among files inside the archive.
num children
Number of files contained within the archive.
type
Container type detected for the analyzed file.
uncompressed size
Estimated total size of all files after extraction.
Sandbox
Sandbox Verdicts
Zenbox android
category: harmless | confidence: 94 | classification: CLEAN | sandbox: Zenbox android
Deep Manifest Analysis
Activity Intents (1)
zed.rainxch.githubstore.MainActivity
Receiver Intents (1)
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
Native Libraries (3)
libandroidx.graphics.path
libandroidx.graphics.path.so
libdatastore_shared_counter
libdatastore_shared_counter.so
libsqliteJni
libsqliteJni.so
Requested Permissions (5)
have full network access
android.permission.INTERNET
android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES
android.permission.DOWNLOAD_WITHOUT_NOTIFICATION
android.permission.DOWNLOAD_WITHOUT_NOTIFICATION
android.permission.QUERY_ALL_PACKAGES
android.permission.QUERY_ALL_PACKAGES
Dynamic receiver access
zed.rainxch.githubstore.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
Activities (1)
zed.rainxch.githubstore.MainActivity
Services (1)
androidx.room.MultiInstanceInvalidationService
Broadcast Receivers (1)
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
Content Providers (3)
androidx.core.content.FileProvider
org.jetbrains.compose.resources.AndroidContextProvider
androidx.startup.InitializationProvider
URL Endpoints (6)
https://cloud.google.com/kms/docs/reference/rest/v1/projects.locations.keyRings.cryptoKeys#CryptoKey
https://developers.google.com/tink/design/access_control#accessing_partial_keys
https://goo.gle/compose-feedback
https://issuetracker.google.com/issues/241760537
https://issuetracker.google.com/issues/new?component=413107&template=1096568
https://issuetracker.google.com/issues/new?component=907884&template=1466542
Submission Details
Submitted At
First Submission
Last Submission
Stored Until