Intentionally vulnerable Android application.
- 
            Updated
            Sep 20, 2025 
- Java
Intentionally vulnerable Android application.
SonarQube plugin for identifying hardcoded secrets, such as passwords, API keys, AWS credentials, etc..
pSlip is an Android Static Analysis Toolkit Designed To Detect Applications Exposing Dangerous Permissions, Explicit Intent Injection & Tapjacking Risk (Beta) now in V.1.0.7
ASIST tool
Apk scanner which scans for secrets keys like stripe, paypal etc in apk file or extarcted folder.
Ipa scanner which scans for secrets keys like stripe, paypal etc in ipa file or extarcted folder.
This tool is designed to find hardcoded secrets in Source code,Logs or ur local files. Lightweight,Multithreaded tool to find Secrets,sensitive data in youre day to day life
Add a description, image, and links to the hardcoded-credentials topic page so that developers can more easily learn about it.
To associate your repository with the hardcoded-credentials topic, visit your repo's landing page and select "manage topics."