ThreatSweep reads permissions, checks for root and live USB debugging, and turns the mess into a single risk score — 41.2 or 96.7, whatever it actually is. The scan runs locally. Nothing about your app list leaves the device unless you ask it to check a hash against VirusTotal.
A lot of "cleaner" and "security" apps on the Play Store fake their work — a spinning wheel, a countdown, then a suspiciously round number. ThreatSweep doesn't animate anything it hasn't actually measured.
Permission lists come straight from Android's PackageManager for every installed app. If the audit says an app holds 14 permissions, that's a count, not a guess.
Root detection runs actual binary and build-tag checks (su binaries, test-keys, known root packages). USB debugging status is read from the live system settings, not inferred.
Every score is a weighted sum of dangerous-permission counts, exposed components, and known-risk signals — recomputed fresh each time, never cached to look busy.
The 'clean storage' and 'battery' buttons open Android's own system screens — we don't run a fake optimization pass and take credit for it.
An installed package sits in local storage, untouched.
ThreatSweep computes a one-way hash of the APK — a fixed 64-character fingerprint, not a copy.
Only that 64-character string is sent over HTTPS to check against VirusTotal's reputation database.
Essential auditing for basic device awareness.
Full protection and advanced tools.
Save over 35% compared to the monthly plan.
Billed and processed by Google Play Billing. ThreatSweep never sees or stores your payment details.
Free to install. Full audit, zero setup, nothing uploaded.
GET THREATSWEEP