jadx-mcp-server

MCP.Pizza Chef: zinja-coder

Android apps ship as compiled packages, and JADX turns them back into readable code. This pairs a modified JADX build with a small server so an assistant can read that code while you work. From Claude Desktop you can ask what a class does, search the whole app, read its manifest, and look for weak spots. Both halves are required — the JADX-AI-MCP plugin plus this server — and getting them running takes Java 11, Python 3.10, and a release download.

Coding

Use This MCP server To

Ask what a decompiled Android class actually does Search an app's code for hard-coded passwords or keys Read an app's manifest and explain its permissions Get a summary of an unfamiliar app's structure Track down where a suspicious call is made

README

JADX-MCP-SERVER (Part of Zin's Reverse Engineering MCP Suite)

⚡ Fully automated MCP server built to communicate with JADX-AI-MCP Plugin to analyze Android APKs using LLMs like Claude — uncover vulnerabilities, parse manifests, and reverse engineer effortlessly.

GitHub contributors JADX-AI-MCP GitHub contributors JADX-MCP-SERVER GitHub all releases GitHub release (latest by SemVer) Latest release Java 11+ Python 3.10+ License

⭐ Contributors

Thanks to these wonderful people for their contributions ⭐


ljt270864457

badmonkey7

p0px

bx33661

Haicaji

Mostafa Nazari

ChineseAStar

cyal1

tainn

ZERO-A-ONE

neoz

SamadiPour

wuseluosi

CainYzb

tbodt

LilNick0101

lwsinclair

LYC-Android

zbhello

1yearning1

mhsjzsq

darkblack1234

Merrg1n

jadx-mcp-server FAQ

Which apps does this work in?
Claude Desktop, running alongside the modified JADX viewer on the same computer.
Do I need a key?
No key. Everything runs locally against the app file you opened yourself.
Can I use this to check an Android app for security problems?
Yes — that is its main purpose: reading the decompiled code and manifest to point out weaknesses.
How hard is setup?
Two pieces to install: the JADX-AI-MCP plugin from its releases page and this server, with Java 11 and Python 3.10 or newer already present.
Is this the whole tool?
No. It is one part of the author's reverse-engineering collection and only works with the matching JADX plugin.
Do I need my own copy of the app file?
Yes. You open the app in JADX; the server simply gives the assistant a view of what is loaded.