Checking sign-in…

Competitor app intelligence · Android + iOS

Every competitor
leaves traces.

Paste a package or bundle ID. Get a full case file — every SDK, every evasion technique, every geo offer they thought was hidden.

See a sample report
📦 APK / IPA intake
🔬 Static + storefront
📡 Field ops
🎯 Gray hunt
📄 Case file
iGaming App — Sample A com.sample.igaming.a · Android · v3.0.0
Blank WebView decoy Geo offer Hit · NG External browser handoff USDT flow +14 more signals
87 risk score

What ad-spy can't show you

The creative is the tip.
We dig to the foundation.

What SDK stack is actually behind their creative?

Ad-spy shows you the banner. We open the APK or IPA and map every third-party library, attribution SDK, and payment rail they wired in.

What offer do they serve in your geo — vs the decoy?

Blank WebView in Berlin, live lobby in Lagos. Field ops run retail device personas per market and capture the real offer URL plus the screenshot that proves it.

Are those five clones all from the same operator?

DEX / binary fingerprint hashing and shared-backend mapping link clone networks across package names, developer accounts, and geo-variants — with a NEW badge on fresh matches.

Technique radar

The playbook they hoped
you couldn't read.

Every APK or IPA leaves a trail — in the binary, the storefront, the live traffic, and the geo offer. Horus Eye tags every technique your competitor uses and ships the evidence string with each finding.

VPN & proxy detection Split APK / dynamic delivery Launch-count delay gate Review-mode detection OTA content swap Emulator / sandbox detection Retail device persona bypass Blank WebView decoy WebSocket control channel Remote config domain rotation Utility app disguise External browser offer handoff Device fingerprint gate IP reputation check Referrer / attribution gate Geo-gating & locale checks Timezone & GPS spoofing gate Language-based content switch Per-geo offer isolation Crypto & alt payment rails TRC-20 / direct USDT flow Alt-PSP integration Operator cluster linking DEX copycat fingerprint Shared backend network map Hidden API strike Certificate pinning Dynamic host injection CDN & proxy relay detection Play Store homoglyph clone App Store storefront disguise Per-locale listing variation Developer account reuse WebView H5 casino shell React Native / Flutter shell Cocos2d-x game wrapper WKWebView iOS shell
Live — Field ops

Watch the app run.
Every pixel. Every request. Every geo decision.

Static analysis reads the code. Field ops runs it under a retail device persona — every screen rendered, every network call made, every branch taken based on your geo, device, and timing.

📱
Retail device persona
Runs like a real handset — build props and fingerprints that don't trip emulator / sandbox gates rivals use to hide the lobby.
🌐
Live traffic intercept
Every HTTP/S call, WebSocket message, and DNS lookup captured while the app decides what to show for your geo.
🎯
Per-geo offer isolation
Each market probe stays isolated so you see the offer that geo actually gets — not a blended or cached decoy.
👁
AI analyst on the device
A live operator watches the screen, taps through consent and splash, locks the gray lobby, and dumps the geo's device logs — you watch it work.

Every signal ships with evidence

Each flagged technique includes the class name, string, or traffic capture that triggered it — ready for your intel deck, fraud review, or compliance write-up.

Gray delivery chain

Blank decoy in one market.
Real offer in another.

The same build can look like a utility app to a store reviewer and a full casino funnel to a player in the right geo. Gray hunt follows that chain to the offer URL — even when the shell hands off to an external browser.

Hit / Partial / Miss per geo

Gray hunt scores every market: real offer unlocked, partial unlock, or still sitting on the decoy — so you know where the funnel actually works.

Offer URL + screenshot proof

When the lobby lands, the case file keeps the URL and the best frame from the capture sequence — evidence you can drop into an intel deck.

External browser handoff

Some shells push the real offer into Chrome or Safari. We follow that handoff instead of locking onto a blank in-app WebView.

Multi-geo field ops

Your competitor behaves differently
in every market.

The same APK can show a blank screen in Berlin and a full casino lobby in Lagos. Horus Eye probes each geo with retail-looking device personas so you see the actual offer they serve — not the decoy.

🌍
Tier 1 — Western Europe & AU
Compliance-aware builds
  • KYC / RG gates — which operators build in, which skip it
  • Responsible gambling SDK presence flagged per market
  • App Store vs Play submission vs sideload strategy detected
🌏
High-growth — SEA, LATAM, MENA
Gray-market evasion stack
  • Domain rotation cadence — how fast they swap backends
  • Payment rails by geo — local e-wallets, OTC, crypto
  • Content unlock triggers — what conditions show the real offer
🇮🇳
Restricted — IN, CN, RU
Workaround architecture
  • Mirror domains & CDN relay chains mapped per operator
  • VPN-gate logic — which apps fight it vs accommodate
  • Storefront footprint — third-party APK / IPA site coverage
🌐
Your target markets
Custom geo profiling
  • Request any geo — retail device personas, not datacenter VPNs
  • Recurring sweeps — catch backend and offer changes as they roll out
  • Diff reports — what changed geo-by-geo week over week
40+Markets covered
RealDevice profiles

We don't route through a datacenter IP. Each probe uses retail device personas matched to the target market — and keeps offers isolated per geo so evasion logic doesn't fire on a blended session.

How we compare

Ad-spy tools show you creatives.
We show you the machine.

Ad-spy tools
AdSpy, AppFollow, SimilarWeb
Horus Eye This
Ad creatives & landing pages Not our thing
APK / IPA binary analysis DEX + Mach-O / plist
Play + App Store storefront intel ~ Partial Multi-locale disguise
SDK & third-party library map ~ Partial Class-level fingerprint
Evasion & cloaking technique detection 30+ flagged signals
Live geo offer capture (gray hunt) URL + screenshot proof
Backend infrastructure map CDN + domain rotation
Geo-conditional content probing 40+ market profiles
Copycat / white-label cluster detection Fingerprint + NEW badge
Payment rail detection (crypto, alt-PSP) TRC-20, USDT, wallets
Shareable case file + PDF export ~ Partial Public link + PDF
App download trend data

Ad-spy tools are great at what they do. We don't replace them — we see the layer underneath. Most affiliate teams end up running both.

Pricing

One case file pays for itself.
The rest is edge.

Buy scan packs — no subscription, no expiry. Pay in USD or USDT.

1
Scan
One full case file — static + dynamic signals, report, stored APK.
$99 $20
$20 / scan

  • Static + Play / App Store analysis
  • Live geo field ops & gray hunt
  • Technique radar (30+ signals)
  • Shareable report + PDF export
  • APK / IPA retained for re-analysis
10
Scans
Campaign pack — track releases and clones across ten apps.
$700 $140
$14 / scan

  • Static + Play / App Store analysis
  • Live geo field ops & gray hunt
  • Technique radar (30+ signals)
  • Shareable report + PDF export
  • APK / IPA retained for re-analysis
25
Scans
Compliance desk - portfolio monitoring for regulators and risk teams.
$1500 $300
$12 / scan

  • Static + Play / App Store analysis
  • Live geo field ops & gray hunt
  • Technique radar (30+ signals)
  • Shareable report + PDF export
  • APK / IPA retained for re-analysis

Scans never expire  ·  No subscription required  ·  USDT payments processed on-chain  ·  Need more? Talk to us

Android live · limited