Phone

Phone privacy and sensitive apps

Understand the non-bypass behavior around payment-sensitive Android applications.

Guides follow the current project source. Check the release notes for your installed version.

Foreground protection

When a payment-sensitive application is foreground, RepoTunnel blocks AI screen observation, semantic access, raw input, generic shell and relevant diagnostic paths. It does not attempt to bypass the app's security model.

User remains authoritative

MCP cannot pair/select a phone, grant itself more Phone capabilities or unpause access. Android permissions and device policy remain authoritative.

Why payment-sensitive apps are special

When a payment-sensitive app is foreground, RepoTunnel blocks AI screen observation, raw input, semantic actions and related bypass paths. The user can leave that app to resume eligible automation.

Full Access does not bypass financial-app security boundaries, passwords, OTPs, system permission prompts or device policies.

Good verification practice

Test input and observation against a non-financial app only. To verify the block, check that RepoTunnel reports access denied without attempting real balances, payments or credential entry.

The bundled helper may remain enabled while observation is blocked; an enabled helper does not imply authorization to read a sensitive screen.

Start typing to search.