mobile security skills

18 tagged mobile security, measured the same way as everything else here.

Browse within: ios 14owasp-mobile 11penetration-testing 11frida 10objection 8android 5

igf

01

ChiChou/grapefruit

Skill Claude CodeCodex

CLI interface for igf (Grapefruit) dynamic instrumentation server. Use to enumerate Frida devices, list apps, run hooks, query logs, access device file systems, inspect classes, dump memory, and perform mobile app security analysis.

1.4k 21d ago A 51 tokens original MIT

mastg

02

ChiChou/grapefruit

Skill Claude CodeCodex

Autonomous mobile security audit aligned with OWASP MASTG v2. Performs checklist-driven analysis across MASVS categories: storage, crypto, network, platform, code, resilience, privacy. Exports structured markdown report with MASTG test references.

1.4k 21d ago A 53 tokens original MIT

Fausto-404/ai-mobile-reverse-skills

Skill Claude CodeCodex

A six-stage workflow for authorized security analysis of Android apps using decompiled code, captured network traffic, and native libraries such as JNI or SO files.

149 18d ago A 89 tokens original MIT

anasfik/FlutterGuard

Skill Claude CodeCodex

Review Flutter Android APK/AAB release artifacts for manifest, permission, cleartext traffic, exported component, embedded secret, signing, size, WebView, deep link, and third-party service risks.

24 8d ago A 44 tokens

vantage

05

tinoimammp/vantage-security-agent

Skill Claude CodeCodex

Autonomous, artifact-driven SAST (Static Application Security Testing) for web AND mobile app repositories, plus optional code-level remediation. Use whenever the user asks to security-review, pentest, audit, or scan a codebase for vulnerabilities — web (SQLi, XSS, IDOR/BOLA, auth bypass, SSRF, XXE, hardcoded secrets…

4 1mo ago A 230 tokens original MIT

xtofuub/frida-mcp-server

Skill Claude CodeCodex

Reverse engineers iOS applications using Frida dynamic instrumentation to understand internal logic, extract encryption keys, bypass security controls, and discover hidden functionality without source code access. Use when performing authorized iOS penetration testing, analyzing proprietary protocols, understanding…

2 2mo ago B 97 tokens original MIT