APK & AAB analysis

APK Signature Checker

Inspect APK signing-structure presence (v1/v2/v3) and certificate metadata, including fingerprints, issuer and validity dates. Cryptographic signature integrity and signer identity are not verified.

APK Signature Checker is part of APKLint, an online toolkit for inspecting Android APK files. Inspect APK signing-structure presence (v1/v2/v3) and certificate metadata, including fingerprints, issuer and validity dates. Cryptographic signature integrity and signer identity are not verified. Upload an APK in your browser to view the relevant details; results reflect what the file itself exposes.

Analyze · APK Signature CheckerReady

Drop your file here

or click to choose from your device

Accepts: .APK · up to 1 GB
Deleted after your scan. Files you upload are processed on our servers over an encrypted connection, then removed by the next hourly cleanup after analysis finishes (long scans are protected while they run). We never share them, and need no account.

About APK Signature Checker

Inspect APK signing-structure presence (v1/v2/v3) and certificate metadata, including fingerprints, issuer and validity dates. Cryptographic signature integrity and signer identity are not verified.

APK Signature Checker is part of APKLint’s apk & aab analysis toolkit — Unpack, inspect, and break down Android packages. It’s free to use and needs no account.

Your privacy is the default: files you upload are processed on our servers over an encrypted connection and permanently deleted by a scheduled hourly cleanup after analysis finishes, and never shared.

What APK Signature Checker checks

  • Detects signing structures and their declared schemes
  • Flags weak v1-only (Janus-era) signing
  • Shows certificate fingerprints (SHA-1, SHA-256)
  • Reports certificate validity window

Good to know: Reports signing-block presence and certificate metadata; it does not verify signature cryptography, file integrity or publisher trust.

When to use APK Signature Checker

Best for
Comparing signing-scheme presence and certificate fingerprints between builds. Use Android apksigner separately for cryptographic verification.
Not the right tool for
Not the place for certificate issuer/subject deep dives, use the Signing Certificate tool for the full record.
What you get back
Which signing schemes are present and the certificate SHA-1/SHA-256 fingerprints, as unverified metadata.
How it differs from related APKLint tools
It focuses on scheme presence and certificate metadata. Neither this view nor the Signing Certificate view verifies cryptographic signature validity.
Limitations
This tool does not perform cryptographic signature verification. Detected blocks or certificates alone do not prove file integrity or signer identity.

How to use APK Signature Checker

  1. Choose your APK file — Drop an .apk file onto the page, or click to select it from your device.
  2. Send securely — The file is uploaded over an encrypted connection to our analysis servers.
  3. Read your report — APKLint unpacks and inspects the package and lays out the results on screen.
  4. Your file is removed — It's deleted by an hourly cleanup job after analysis finishes.

Why use APKLint

Always free

Every tool is free with no login and no paywall. Reasonable file and input limits keep the free service stable.

No on-page ad banners

A clean, focused interface with no third-party ad banners cluttering your results.

Privacy-first

Files you upload are deleted by a scheduled hourly cleanup after analysis finishes, and never shared.

Open-source engines

Built on androguard for APK parsing and manifest/certificate analysis.

No sign-up

Start immediately — no account, login, or email required.

Works anywhere

Runs in any modern browser, on desktop or mobile.

Frequently asked questions

What does APK Signature Checker do?

Inspect APK signing-structure presence (v1/v2/v3) and certificate metadata, including fingerprints, issuer and validity dates. Cryptographic signature integrity and signer identity are not verified.

Is v1-only signing a problem?

v1-only signing lacks protections supplied by newer schemes and can be unsafe on affected older Android versions. Review signing requirements and verify the APK with Android apksigner.

Is it free to use?

Yes. Every tool on APKLint is completely free, with no sign-up and no account.

How is my data handled?

Your uploaded file and its result are processed on our servers over an encrypted connection, then removed by the next hourly cleanup after analysis finishes. We never share them.

What files can I send?

An Android APK — a .apk file — up to 1 GB.

All product names, logos, and trademarks are property of their respective owners. APKLint is an independent toolset and is not affiliated with, endorsed by, or sponsored by Google, Android, or any other party.