Binary-only
Drop in any IPA, APK, or AAB and get a Bundle Report. No source, no telemetry, no onboarding.
Inputs: IPA 路 APK 路 AAB
- Risk score + factor explanation
- App size breakdown
- SBOM with OSV / GitHub Advisory CVE flags
- Release-over-release diff
- Security & privacy findings
- Public-app watchlist (per-org)
- Bundle Report on every build
- CI Quality Gate on binary upload