All articles

How Skanopy analyzes a mobile app, from first contact to report

Skanopy is a deep behavioral analysis platform for mobile apps. Put simply, we look at what an app really does once it is on a phone: the data it sends, to whom, and when in relation to the user’s consent.

On mobile, no one sees this easily. A DPO least of all: there is no tool to observe it. Skanopy is that tool. You install nothing, nothing technical on your side. You hand us the app, you get a report. Here is how.

We start from your need

It begins with a conversation. You tell us which app you want to understand, and why: documenting its compliance, clearing up a doubt about what it ships, tracking it at every version. We frame the need together.

Then we open your access. That is all you have to do.

Getting in touch with Skanopy to scope a mobile app audit.
Getting in touch, to frame the need before the analysis.

You sign in

You sign in to your workspace. Everything is there: your analyses, your reports, your history.

Sign-in screen for the Skanopy analysis workspace.
Your analysis workspace, where your scans and reports live.

You declare the app

A Google Play link is enough. Or, if the app is not published yet, its installer file. Nothing else to provide.

No code, no request to the publisher. Skanopy analyzes the app the way a user experiences it, on a real phone.

Declaring a mobile app in Skanopy, from a Google Play link or an .apk file.
Declaring the app: a Google Play link, or its installer file.

You launch the scan, with a journey

This is where it happens. You describe a journey: accept consent, or refuse it, browse, log in. What a real user would do.

Skanopy replays it on a real phone and watches everything the app sends. You then see which vendors and trackers fire, and when: before consent, or after.

Behind it, the analysis is deep. In front of you, it is a scan to launch, nothing more.

Launching a Skanopy scan with a journey played on a real phone.
The journey to replay, chosen before the scan starts.

You open the report

The scan done, the report is there. You see everything: the active vendors, where the data goes, what is transmitted, what is written to the device, and which of them are not declared in the consent banner.

Every line rests on dated evidence. Skanopy lays out the facts; the interpretation is yours.

Skanopy analysis report: active vendors, decrypted requests and personal data transmitted.
The report: active vendors, data transmitted, and those not declared in the banner.

What it changes for you

Doing this by hand takes hours of specialized work. For a DPO who has neither the time nor the tools, it is out of reach. Skanopy does it for you.

You get precise, dated facts without spending your days on it.