Skip to content

Is it possible to determine if an Android (banking) app is using hardware attestation, instead of Play Integrity API? #184

Answered by akc3n
wutr asked this question in Q&A
Discussion options

You must be logged in to vote

@wutr,

As per the title, is it possible to determine if an Android (banking) app is using hardware attestation, instead of Play Integrity API?

Check the bank's app settings for the feature option once you log in.. Otherwise, if you don't have an account with that bank, then unless the information is stated on published app listings or the bank's website, you may have to inquire directly from the bank.
There are advanced methods to potentially find hints of this, but I think that would be out of scope here.

The timeline for (bank) apps to switch over to the new Play Integrity API is here https://developer.android.com/privacy-and-security/safetynet/deprecation-timeline#safetynet_attestati…

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@wutr
Comment options

Answer selected by wj25czxj47bu6q
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
3 participants