| name | firebase-apk-scanner |
| description | Scans Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication issues, and exposed cloud functions. Use when analyzing APK files for Firebase vulnerabilities, performing mobile app security audits, or testing Firebase endpoint security. For authorized security research only. |
| source_skill_id | trailofbits-skills-plugins-firebase-apk-scanner-skills-firebase-apk-scanner-skill-md |
| category | Game, mobile & visual QA |
| source_mirror | ../../../../../skills/by-category/game-mobile-visual-qa/security-reference/firebase-apk-scanner/SKILL.md |
| benchmark_status | artifact_gated |
firebase-apk-scanner
Use this skill when the task matches the description above or the source path clearly applies. Start with this concise entrypoint; open ../../../../../skills/by-category/game-mobile-visual-qa/security-reference/firebase-apk-scanner/SKILL.md only when implementation details, commands, assets, or references are needed.
Workflow
- Confirm the task matches this skill's scope.
- Read the local source mirror if more detail is required.
- Follow repository-level
AGENTS.md; use one AI session only.
- Keep claims tied to files, commands, citations, or benchmark artifacts.
Verification
- Source mirror:
../../../../../skills/by-category/game-mobile-visual-qa/security-reference/firebase-apk-scanner/SKILL.md
- Source commit:
e8cc5baf9329ccb491bfa200e82eacbac83b1ead
- Static benchmark results: see
docs/benchmark-results.md
- Runtime artifacts recorded by this entrypoint:
0
- Assigned scenarios:
skill-proof-trailofbits-skills-plugins-firebase-apk-scanner-skills-firebase-apk-scanner-skill-md, game-mobile-and-visual-qa-air-defense-android-benchmarks, game-mobile-and-visual-qa-coco-captions, game-mobile-and-visual-qa-owasp-juice-shop
Do not claim this skill passed a runtime benchmark until a validated artifact exists.