1.0.0
Rootect v1.0.0
First public release of Rootect — environment-integrity evidence for Android apps.
It detects root (Magisk / KernelSU / APatch, including when actively hidden), runtime instrumentation (Frida, Xposed / LSPosed, Zygisk), app tampering and repackaging, debuggers, and emulators.
Rootect reports evidence, not verdicts — the host app decides whether to block, degrade, or log.
Install
Kotlin DSL (build.gradle.kts):
dependencies {
implementation("io.github.rootect:rootect-core:1.0.0")
}Groovy DSL (build.gradle):
dependencies {
implementation 'io.github.rootect:rootect-core:1.0.0'
}No third-party dependencies, no permissions, no Google Play requirement. minSdk 24. Native code ships for arm64-v8a, armeabi-v7a, and x86_64.
The public API is fully Java-callable — see Integration.
Highlights
- Native by default. Detection runs on raw syscalls in a stripped native library — bypassing it means reverse-engineering, not writing a five-line hook.
- Hardware attestation. Opt-in Keystore attestation, designed to be verified server-side where it can't be faked.
- Honest about its limits. Every signal documents what defeats it — no overclaiming.
Documentation
License
Apache 2.0.