What problem does it solve?
Mobile audit guidance helps you identify and prioritize security weaknesses in iOS and Android applications against OWASP MASVS/MASTG, reducing the risk of exposed secrets, weak crypto, broken session handling, and unsafe network or deep-link flows.
Core Features & Use Cases
- MASVS-aligned mobile security review: checks insecure storage, cryptography, network communication, authentication/session management, platform interaction, and (optionally) resilience against reverse engineering.
- Practical evidence-driven reporting: produces a structured output format that maps findings to MASVS categories and includes remediation and verification guidance.
- Grey/black-box and source-oriented testing support: guides you through static analysis, binary inspection, and runtime testing considerations to validate security posture.
Quick Start
Use the mobile-audit skill to assess an iOS or Android app you own by running a MASVS/MASTG checklist review and producing an evidence-based security report.