Install
$ agentstack add mcp-heretek-re-re-apktool ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
re-apktool
MCP server for Android APK triage. Two backends are supported on the same MCP surface:
- apktool (Java) — the canonical APK disassembler. Produces
a Smali representation of every DEX class plus a decoded AndroidManifest.xml. Install: apt-get install apktool or download the jar from .
- androguard (Python) — pure-Python APK / DEX / manifest
parser. Always installed (the server's hard dep). Faster to import, easier to script; less Smali-friendly than apktool.
The MCP wrappers call whichever backend is available; the check_apktool tool reports the active backend so the analyst knows which one fired.
Tools
| Tool | What it does | |---|---| | check_apktool | Health check — return apktool / androguard / java availability | | parse_apk | Open the APK, return header info (package, version, min/target SDK, per-file entry list, signature block presence) | | list_dex_classes | Enumerate classes across every classes*.dex in the APK | | decode_manifest | Return the decoded AndroidManifest.xml (text) plus the parsed activity / service / receiver / provider / permission lists |
Why both backends?
apktool is the gold standard for Smali and manifest decoding, but it's a Java tool the user has to install. The parse_apk + list_dex_classes + decode_manifest surface area is small enough that androguard covers ~90% of the analyst's needs (header + classes + manifest) without requiring a JRE. The MCP layer prefers apktool when present and falls back to androguard cleanly.
Install
pip install -e ./servers/re-apktool # androguard (required)
apt-get install apktool # apktool (optional, java)
Run
re-apktool # stdio transport (default for MCP)
python -m re_apktool # equivalent
Deferred to a future run
The original Explore findings called for an APK parser; this scaffolding lands it so the future Android target run has the toolchain. The Live Fire Windows-target run uses re-leak-scan + re-winedbg for the three named products; re-apktool becomes the workhorse when an Android binary is in the input.
Source & license
This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: Heretek-RE
- Source: Heretek-RE/re-apktool
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.