SHD1 multi-DEX shell
Certificate-bound keys. Re-sign without the right cert fails closed — a real control, not a sticker.
Product service
Professional hardening you can verify — shell, Dex2C/VMP options, RASP-style signals, Play-ready AAB. Comparable in spirit to international Core-layer protection, sold with transparent SKUs.
Certificate-bound keys. Re-sign without the right cert fails closed — a real control, not a sticker.
Optional method native / VM paths with harden profiles. Report KPIs included in delivery.
Environment and tamper signals on a hard fail path. We document evidence; we do not claim immunity.
Bundle in → protected AAB out, with App signing vs upload key checklist for Google Play.
Practical support for Uni-style packaging pitfalls (ClassLoader / asset overlay). Honest JS boundaries.
Artifact + pack report + verify log + contract appendix — the same standard for Cloud and service deals.
| Shield (product / CLI) | Cloud SaaS | |
|---|---|---|
| Who runs packer | You or our engineers | CalfSec workers |
| Best when | Private CI, air-gapped | Fast upload/download |
| Play coaching | Optional add-on | Optional add-on |
| Threat console | Roadmap | Roadmap (post thin SaaS) |