What problem does it solve? Mobile penetration tests often drift into device-only trivia that misses real user and backend impact. This Skill keeps iOS and Android assessments focused on meaningful findings across local storage, transport security, and app-to-backend trust boundaries. ## Core Features & Use Cases - Structured Assessment Checklist: Reviews local storage, secrets handling, jailbreak/root assumptions, certificate trust, network protections, and API interaction. - Impact Classification: Distinguishes purely local compromise from issues that create broader account or server-side impact, preventing overstated findings. - Evidence and Reporting Guidance: Defines expected outputs including screenshots, intercepted flows, storage artifacts, device state assumptions, and app build identifiers. - Use Case: During an authorized mobile app pentest, use this Skill to structure the engagement so findings tie directly to user risk and backend implications, with a documented reproduction path. ## Quick Start Ask the agent to assess this Android or iOS application using the mobile domain checklist and report findings with backend impact and reproduction steps.