OPEN REPORT MENU
SUMMARY
ISSUES SEVERITY
MANIFEST SCANNER
NA
NA
NA
VULNERABILITIES
Weak Crypto Algorithms
MEDIUM
sources/com/freshchat/consumer/sdk/j/aa.java
STRINGS
aws pool id
LOW
sources/com/niyo/customer/base/core/NiyoIdentityProvider.java
ASSETS
file path
LOW
resources/AndroidManifest.xml
0 CRITICAL severity MANIFEST issues present
0 HIGH severity MANIFEST issues present
0 MEDIUM severity MANIFEST issues present
0 LOW severity MANIFEST issues present
0 INFO severity MANIFEST issues present
0 RESILIENCE severity MANIFEST issues present
0 CRITICAL severity VULNERABILITIES issues present
0 HIGH severity VULNERABILITIES issues present
17 MEDIUM severity VULNERABILITIES issues present
15 LOW severity VULNERABILITIES issues present
13 INFO severity VULNERABILITIES issues present
0 RESILIENCE severity VULNERABILITIES issues present
0 CRITICAL severity STRINGS issues present
3 HIGH severity STRINGS issues present
19 MEDIUM severity STRINGS issues present
22 LOW severity STRINGS issues present
0 INFO severity STRINGS issues present
0 RESILIENCE severity STRINGS issues present
0 CRITICAL severity ASSETS issues present
0 HIGH severity ASSETS issues present
13 MEDIUM severity ASSETS issues present
431 LOW severity ASSETS issues present
0 INFO severity ASSETS issues present
0 RESILIENCE severity ASSETS issues present
ISSUES
Weak Crypto Algorithms - 6 issues
Non-parameterized SQL Query - 3 issues
Tapjacking attack prevention by app - 1 issues
object_deserialization - 2 issues
android_ssl_pinning_good - 1 issues
insecure_pending_intent - 1 issues
insecure_random_java - 12 issues
accept_self_signed_cert - 6 issues
cbc_padding_oracle - 7 issues
Check for rooted device by app - 4 issues
Storage of sensitive information in Shared Preferences - 1 issues
WebView javascript enabled - 1 issues
MALWARES
0
MALWARES
APKiD
2
APKiD
STRINGS
aws_pool_id - 1 matches
google_api_key - 3 matches
possible_secret - 19 matches
unknown_high_entropy_string - 10 matches
possible_uuid - 11 matches
ASSETS
file_path - 140 matches
url - 132 matches
host - 85 matches
filename - 7 matches
rest_api - 49 matches
relative_endpoint - 2 matches
PERMISSIONS SUMMARY
Permissions
Count
Safe
8
Risky
8
Dangerous
0
ASSETS WORDCLOUD
niyo-global.firebaseio.com - 1 count
niyopay.zendesk.com - 1 count
play.google.com - 2 count
login.goniyo.com - 6 count
my.goniyo.com - 5 count
api.goniyo.com - 10 count
s3.ap-south-1.amazonaws.com - 8 count
openweathermap.org - 1 count
www.dailymaverick.co.za - 1 count
api.unsplash.com - 1 count
maps.google.com - 3 count
maps.googleapis.com - 1 count
www.hrblock.in - 1 count
www.goniyo.com - 1 count
campaigns.goniyo.com - 1 count
TRACKERS
4
TRACKERS
CleverTap
Google CrashLytics
Google Firebase Analytics
Wootric
THIRD PARTY LIBRARIES
59
THIRD PARTY LIBRARIES
Android Support v4
Jetpack Activity
Jetpack Annotation
AppCompat
Arch
Browser
Jetpack API
Jetpack UI
Androidx Core
Exifinterface
androidx.legacy
Lifecycle
Loader
Media
HIDE REPORT
Are you the developer or owner of this app? Choose to keep your report private from BeVigil's Search for 30 days.
HIDE
A smart companion for all your travels. (Powered By DCB Bank) With Zero forex markup, Niyo offers much more than your typical travel card. We prioritise user-friendliness. With amazing features including In-app Card Controls, Currency Converter and ATM Locator. What's more, your card will work seamlessly in 150+ countries! We don't just take pride in what we've built, we are also committed to continue creating an experience worth loving. We strive to create fans, not customers, be it with our products, services, or marketing efforts.