Developer Tools · Security

Apktool MCP

secfathy/apktool-mcp

A powerful Model Context Protocol (MCP) server that exposes Apktool functionality for Android APK analysis and reverse engineering. Integrates seamlessly with Gemini CLI to provide AI-powered APK security analysis, privacy auditing, and reverse engineering guidance through natural language commands.

Install

Client configuration

{
  "mcpServers": {
    "apktool": {
      "command": "python3",
      "args": [
        "/absolute/path/to/apktool_server.py"
      ],
      "env": {
        "APKTOOL_WORK_DIR": "<APKTOOL_WORK_DIR>"
      }
    }
  }
}

Environment variables

APKTOOL_WORK_DIR
Author
@secfathy
Category
Developer Tools, Security
License
MIT
Updated
Oct 6, 2026

Features

  • Decompile APKs to extract resources, manifest, and smali code

  • Analyze permissions and app components for security assessment

  • Extract string resources and detect hardcoded secrets

  • Search smali code for specific patterns and security vulnerabilities

  • Recompile modified APKs after making changes

  • Natural language commands for complex APK analysis tasks

  • Automated security audits with AI-generated insights

  • Privacy compliance checking and GDPR/CCPA analysis

  • Step-by-step reverse engineering guidance

  • Intelligent vulnerability detection and risk assessment

Tools (8)

  • decode_apk

    Decompile APK files to extract all components

  • build_apk

    Recompile APK from modified source directory

  • install_framework

    Install system frameworks for system app analysis

  • analyze_manifest

    Parse AndroidManifest.xml for permissions and components

  • extract_strings

    Extract string resources with locale support

  • list_permissions

    Enumerate all requested permissions

  • find_smali_references

    Search for patterns in decompiled smali code

  • get_apk_info

    Get basic APK metadata and information

Details on this page are taken from the project's README. Open README

Supported clients

Clients mentioned in this server's README:

View all
Claude Desktop logo

Claude Desktop

Desktop · Freemium · Proprietary

Anthropic's official Claude AI desktop application. Supports MCP servers to extend functionality.

WindowsMacOS

Related MCP servers

More servers
Playwright logo

Playwright

microsoft/playwright

72.2k

Playwright is a framework for web automation and testing. It drives Chromium, Firefox, and WebKit with a single API — in your tests, in your scripts, and as a tool for AI agents.

Developer Tools
repomix logo

repomix

yamadashy/repomix

15.2k

Repomix is a tool that packs a codebase into an AI-friendly format, supporting local and remote repository processing and providing code compression, security checks and multiple output formats.

Developer Tools
UI-TARS-desktop logo

UI-TARS-desktop

bytedance/UI-TARS-desktop

12.9k

TARS is ByteDance's multimodal AI agent stack, shipping two projects: Agent TARS (a CLI and Web UI agent built on MCP) and UI-TARS-desktop (a desktop GUI agent).

Developer Tools
blender logo

blender

ahujasid/blender-mcp

10.6k

formerly blender-mcp — the PyPI package is now mcp-for-blender. Existing setups keep working; no config change is required. Read more.

Developer Tools
Playwright Browser Automation logo

Playwright Browser Automation

microsoft/playwright-mcp

9.2k

A Model Context Protocol (MCP) server that provides browser automation capabilities using Playwright. This server enables LLMs to interact with web pages through structured accessibility snapshots, bypassing the need for screenshots or visually-tuned models.

Developer Tools
2344 logo

2344

comet-ml/opik

7k

Opik is the open-source LLM observability and evaluation platform for AI agent tracing, LLM evaluation, prompt management, and production monitoring. Built by Comet. Apache-2.0 licensed, free to self-host the full platform, with 20,000+ GitHub stars.

Developer Tools