Runs token-efficient defensive mobile app reviews for Cursor and Codex. Inventories exported Android components, backup flags, ATS exceptions, and deep links in local manifests and plists, then reports compact hardening fixes. Use when the user asks for Android, iOS, mobile security, deep links, or certificate pinning review. Do not use for jailbreak exploits, store bypasses, or attacking other apps.