NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
pub.dev · #1550 most downloaded on pub.dev
Flutter library for improving app security and threat monitoring on Android and iOS mobile devices. Learn more about provided features on the freeRASP's homepage first.
Last release 3 days ago
05 Oct 2026
Ships fairly regularly
a new release about every 2 months
Nearly every release is documented
notes for 47 of 48 stable releases
1 version withdrawn
withdrawn after publishing
5 years old
50 releases · first in 2021
Improved logging structure and data enrichment for better Portal insights/reports.
_dyld_get_shared_cache_range.Android SDK version: 19.2.3 iOS SDK version: 7.1.4 iOS Added Improved jailbreak detection. Improved data collection. Improved hook detection.
One column per quarter.
Fixed the reporting issue in root detection
Fixed published package contents so required iOS framework artifacts are included
-flattenpackagehierarchy out of consumer ProGuard rules to restore AGP 8+ compatibilityAdded onBootloader callback for detecting an unlocked or compromised bootloader (Android only).
onBootloader callback for detecting an unlocked or compromised bootloader (Android only).onBootloader() callbackNoSuchMethodError on some Android 12+ devicesSwift Package Manager (SPM) support for iOS. Requires Flutter 3.41.0 or newer; CocoaPods remains supported on older versions.
RaspExecutionStateCallback.onAllChecksDone renamed to onAllChecksFinished
RaspExecutionStateCallback.onAllChecksDone renamed to onAllChecksFinishedPackageInfo.installationSource renamed to installerStoreSuspiciousAppInfo.reason (String) renamed to reasons (List<String>)"blacklist" in reasons renamed to "blocklist"MalwareConfig and AndroidConfig.malwareConfig — use SuspiciousAppDetectionConfig insteadSuspiciousAppInfo.permissions field (List<String>?) — list of suspicious permissions detected on the appSuspiciousAppDetectionConfig that can be used to configure malware detectionTalsecConfig, see TalsecConfig.Builder#suspiciousAppDetectionVerifyError caused by JaCoCo bytecode instrumentationScreenProtector methodsFixed new jailbreak checks false positives on iOS 14 and 13.
release: freeRASP 7.5.0 ( #196 ) * add implementation * feat: update ios sdk * chore: update changelog
release: freeRASP 7.5.0 (#196)
* add implementation
* feat: update ios sdk
* chore: update changelog
storeExternalId() method)KernelSU to the existing root detection capabilitiesHMA to the existing root detection capabilitiesonAutomationDetected() callback to ThreatDetected interface
externalId
storeExternalId() now returns ExternalIdResult, which indicates Success or Error when externalId violates restrictionsgetEntry operationScreenProtector concerning the onScreenRecordingDetected invocationstmlibtimeSpoofing.* handle execution state sink on events
release: freeRASP 7.4.0 (#192)
* feat: init update
* fix: xcframework
* revert xcframework update
* fix: xcframework
* fix handler
* fix: android
* fix: android
* update ios
* fix: ios
* fix: format
* fix: format
* update PluginThreatHandler
* update TalsecThreatHandler
* fix: issues
* fix: dart listener
* chore: update changelog
* chore: update files
* chore: update example app
* chore: update example app
* chore: update example app
* update lock handling
* handle execution state sink on events
* update example app
* update example app
onAutomation callback to ThreatCallback for handling Threat.automation threatKernelSU to the existing root detection capabilitiesHMA to the existing root detection capabilitiesonAutomationDetected() callback to ThreatDetected interface
externalId
storeExternalId() now returns ExternalIdResult, which indicates Success or Error when externalId violates restrictionsgetEntry operationScreenProtector concerning the onScreenRecordingDetected invocationstmlibRemoved deprecated functionality Pbkdf2Native and both related native libraries ( libpbkdf2_native.so and libpolarssl.so )
killOnBypass to TalsecConfig that configures if the app should be terminated when the threat callbacks are suppressed/hooked by an attacker (Android only) (Issue 65)onTimeSpoofing callback to ThreatCallback for handling Threat.timeSpoofing threat (Android only)
onLocationSpoofing callback to ThreatCallback for handling Threat.locationSpoofing threat (Android only)
onUnsecureWifi callback to ThreatCallback for handling Threat.unsecureWifi threat (Android only)
onAllChecksDone callback to new RaspExecutionStateCallback
Pbkdf2Native and both related native libraries (libpbkdf2_native.so and libpolarssl.so)Fixed an issue with crashing screen protector
Fixed an issue with native framework
Added support for 16 KB memory page sizes
onMultiInstance callback
Added interface for screenshot / screen recording blocking on iOS
fvm support for Flutter version management
fvm support for Flutter version managementblockScreenCapture method to block/unblock screen capture
blockScreenCapture method to block/unblock screen captureisScreenCaptureBlocked method to get the current screen capture blocking statusscreenshot: Detects when a screenshot is takenscreenRecording: Detects when screen recording is activeAdded request integrity information to data collection headers.
App icons for detected malware are not fetched automatically anymore, which reduces computation required to retrieve malware data. From now on, app ic
getAppIcon methodNew feature: onADBEnabled callback allowing you to detect USB debugging option enabled in the developer settings on the device
New feature: Malware detection as a new callback for enhanced app security
Renewed the signing certificate
Reported ANR issues present on some devices were resolved (GH Flutter issue #138)
False positives for hook detection
Auditing mechanism for runtime checks
ifpip methodping) which couldn't be invoked without the full path🔎 Added new threat Threat.systemVPN for VPN detection
Threat.systemVPN for VPN detectiononSystemVPN in ThreatCallback for handling Threat.systemVPN threat- 📄 Fixed typo in README
⚡ Updated CURL to 8.5.0 and OpenSSL to 1.1.1w ( resolves issue #93)
CURL to 8.5.0 and OpenSSL to 1.1.1w (
resolves issue #93)⚡ Improved reaction obfuscation
Improved logging of the Android SDK and minor bug fixes
📄 Documentation updates and improvements
Minor fixes and added support for AGP 8.0
❗ Removed PolarSSL dependency on Android
onOverlay callback⚡ Fixed issue with incorrect Keystore type detection on Android 11 and above
We are constantly working on improving your freeRASP experience. This update contains a new check - obfuscation detection. Minimal supported Android SDK level was raised to 23.
❗ BREAKING: Raised minSdkVersion on Android to 23
obfuscationIssuesonObfuscationIssuesNullPointerException which could occur during specific subcheck execution on AndroidFixed issue that caused freeRASP to be killed prematurely
Nothing published for this version
✔️ Fixed issue when freeRASP throws IllegalStateException: Talsec is not running
Fixed issue causing app to freeze on iOS
✔️ Fixed issue with app freezing after `start` called on iOS
start called on iOSMinor changes in documentation
📄 Updated documentation for migration from freeRASP 4.x to 5.x
Get ready for some exciting updates! In this latest release, we have revamped the freeRASP's codebase, which has helped to resolve several known issues. As a result, the integration of freeRASP into your workflow is even easier than before.
⚡ New enum values for threat types
New changes incoming! This major update, contains new API to for handling dev and release deployments of freeRASP. Now, you can integrate freeRASP more easily without pesky iOS installation steps. We also no longer rely on HMS.
❗ Only one version of the SDK is used from now on, instead of two separate for dev and release
❗ Only one version of the SDK is used from now on, instead of two separate for dev and release
❗ Removed the HMS dependencies
⚡ Improved root detection accuracy by moving the 'ro.debuggable' property state to an ignored group
⚡ Enhanced root detection capabilities by moving the selinux properties check to device state
⚡ Fine-tuning root evaluation strategy
A new round of fixes and improvements! Here's the list of all the new things we included in the latest release.
✔️ Removed deprecated SafetyNet dependency (issue) on Android
NullPointerException in RootDetector when there are no running
processes (issue) on AndroidWe are constantly listening to our community to make freeRASP better. This update contain fixes to reported issues.
📄 Updated troubleshoot section related to ProGuard issue
Duplicate class issueThis update contains small fix of documentation.
🛠️ Fixed Plans Comparison table in README.md
We are constantly working on improving your freeRASP experience, and today we're happy to announce a major update packed with new features and improvements! Here's the list of all the new things we included in the latest release.
Among the first changes, you will notice our prettier and easy-to-navigate README. We also created a much-desired tool for a hash conversion (includin
Among the first changes, you will notice our prettier and easy-to-navigate README. We also created a much-desired tool for a hash conversion (including a guide on how to use it) and added a check, so you know you've done it right.
AndroidConfig constructorAnd as usual, the new release also contains some bug squashing.
Fixed usage of deprecated API calls (DexFile) for Android 8.0 and above
Fixed bug causing Talsec to not run properly (initialization checks for non null-safe version of Flutter)
Added configuration tests
Improved performance during library initialization
Improved method handling
Improved incident handling
Sensitive content logging modification, package names of well-known dangerous applications ( rooting apps, hooking frameworks, etc...) are no longer sent to Elastic, only a flag that device contains one of those applications is sent
Fixed usage of deprecated API calls (DexFile) for Android 8.0 and above
Fixed issue with root prompt ("app asking for root permission") on rooted devices
Updated jailbreak checks to detect jailbreak hiders
Updated hook checks
Better debugger handling
Better incident handling
Fixed issue with false positive during device binding check
Added UntrustedInstallation callback
Initial full release of freeRASP.
* Update: documentation
### General/Flutter * Fix: documentation
### General/Flutter * Updated README.md ### iOS * Fixed build failure on Xcode
Updated README.md
Fixed build failure on Xcode
Initial testing release of freeRASP.
Your coding agent can read these notes before it upgrades. Set up the MCP server →