BrowseFull catalogOutcomesSolve a specific problemRolesStack by teamTrustFilter by risk tier
← Back to the Claude Observatory

apktool-mcp-server

Connector Development Solid
Works inClaude Code Claude Cowork Claude Chat
Solid Scanned — metadata only

Enables programmatic APK decompilation and analysis through Claude, reducing manual reverse engineering overhead and accelerating security audits or app comp…

MCP server built on Apktool that lets Claude reverse-engineer Android APKs: decode APKs, read and modify AndroidManifest.xml, smali code, and resources, search across project files, and rebuild patched APKs. Part of the Zin reverse-engineering MCP suite alongside JADX-AI-MCP. Python 3.10+, runs via uv; tested with Claude Desktop.

631 starsApache-2.0 (commercial OK)FreeNo code needed

Enables programmatic APK decompilation and analysis through Claude, reducing manual reverse engineering overhead and accelerating security audits or app compatibility checks.

Security teams, mobile developers, and reverse engineers who need to inspect APK internals (resources, manifests, code) without manual CLI overhead.

Claude Code Claude Cowork Claude Chat

https://github.com/zinja-coder/apktool-mcp-server

By zinja-coder

How to Get It

Option 1: Claude Desktop AppOpen the Customize panel in the sidebar → browse connectors → search and add. Works in Claude Code, Claude Cowork, and Claude Chat.
Option 2: Paste into Claude CodeCopy the command below and paste it into a Claude Code conversation. Claude will run it for you.
Command
Download the release zip from https://github.com/zinja-coder/apktool-mcp-server/releases, unzip, then add to your MCP client config: uv --directory /path/to/apktool-mcp-server run apktool_mcp_server.py

Tip: Paste this into a Claude Code conversation. Verify command matches your Claude Code version.

First thing to try

Once it’s connected, paste this into Claude:

Help me extract AndroidManifest.xml permissions from third-party APKs for compliance review
PrerequisitesApktool installed and on PATH (apktool.org/docs/install); Python 3.10+; uv package managerCostFree

Trust Signals Auto-scanned

Stars631Contributors4Last updated2026-07-02LicenseApache-2.0 (OK for commercial use)Known CVEsNone foundSources: GitHub Advisory Database + OSV.dev · Scanned 2026-08-17 · scanner v1

Data & Access

Data processingPrompts sent to Anthropic API. Enterprise/Team plans exclude training.

Community Pulse Emerging

Discussed on Reddit

2 mentions across 1 sources

Reviewer notes

Auto-scanned review. These are observations, not a security certification.

catalog_hygiene stale-eval refresh: Scored from trust signals (evidence-eval-v1): 631 GitHub stars; 4 contributors; last commit 47d ago; license Apache-2.0.

Things to check

  • Scanned, not hands-on tested — this entry was auto-scanned from public metadata (GitHub metrics, license, security flags). No reviewer has run it, and no tool-specific limitations have been documented yet.

How to evaluate tools before deploying →

Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.

Evaluation

Ease of Use
4/5
Versatility
4/5
Reliability
4/5
Security
4/5
Overall score4.00 / 5.00 SolidEvaluatedAug 2026
catalog_hygiene stale-eval refresh: Scored from trust signals (evidence-eval-v1): 631 GitHub stars; 4 contributors; last commit 47d ago; license Apache-2.0.

← Back to the Claude Observatory

Rolling Claude out in your org? Let's talk.

Start a conversation →