AI summary
LSPosed module for per-app Android identifier spoofing, letting you assign controlled fake device identities to individual apps. Version 2.0 adds an AI assistant for configuration, an optional MCP automation server for external control, and fixed device templates that now work across all Android versions.
Generated by AI. May contain inaccuracies.
About this app
Privacy Kit is an LSPosed module for per-app Android identifier spoofing.
It is designed for users who want more control over the identifiers that apps can read from their device. Instead of changing identifiers globally, Privacy Kit lets you manage spoofed values on an app-by-app basis so each selected app can receive its own controlled identity.
What Privacy Kit Does
Privacy Kit hooks supported Android identifier access paths through LSPosed and returns configured spoofed values to selected apps. This can help separate app profiles, reduce cross-app tracking based on stable identifiers, and test how apps behave when device identity values are changed.
This module does not make a device anonymous by itself. Apps can still use many other signals, including account login, IP address, network metadata, browser state, app-specific storage, sensors, permissions, and server-side behavior.
Key Features
- Per-app identifier spoofing for selected target apps. - LSPosed/Xposed module integration. - One-tap AI Auto Profile and Maximum Privacy profile flows. - Isolated browser account sessions using Android System WebView on supported Android versions. - Hotfix WebView compatibility for commerce, checkout, login, and payment flows in release 7-1.6. - Live in-process updates (as of release 10-1.8) so location, Build fields, and identifier changes apply to an already-running target app without a relaunch. - Region Preset, per-app walk/jog and drive Activity Simulation scheduling, saved Favorite Locations, and a map-based coordinate picker for location spoofing (as of release 10-1.8). - Hook Diagnostics, an in-app hook log viewer, and history views for troubleshooting LSPosed scope, profile, and hook activity. - Package name: com.sal.privacykit. - Release-only public repository for LSPosed distribution. - Official APK releases published through GitHub Releases. - Public checksum information for release verification.
Requirements
- Android device with root access. - Magisk or another supported root environment. - LSPosed installed and working. - A compatible Android version for your LSPosed setup. - Basic understanding of Xposed module behavior and app compatibility risks.
Enabling the Module in LSPosed
1. Open the LSPosed manager app. 2. Go to the Modules section. 3. Select Privacy Kit. 4. Enable the module. 5. Select the apps you want Privacy Kit to affect. 6. Reboot the device if LSPosed asks you to, or force stop and restart selected target apps when appropriate.
Only enable the module for apps you intend to manage. Keeping the scope narrow usually makes troubleshooting easier and reduces unexpected behavior.
Disclaimer
Use Privacy Kit only on devices and apps where you understand and accept the privacy, compatibility, legal, and policy implications. You are responsible for how you use this module. Some apps and services may restrict access, enforce integrity checks, terminate sessions, or behave unexpectedly when device identifiers are changed.
License
The application source, build project, signing material, and private tooling are maintained privately by the developer.
What's new
- Privacy Kit 2.0 — an assistant that can configure the app for you, an external automation surface, and device templates that finally work on every phone.
- Ask the app what's wrong A built-in assistant (Settings → Assistant) that reads your setup and changes it by calling the app's own tools — create a profile, apply a device template, run Setup Doctor, read hook logs, flip a Developer Setting, open the right screen. Bring your own API key.
- It is built to be narrow on purpose:
- It can only call the app's registered tools. No shell, no free-form writes. It cannot delete anything or weaken your protection without a confirmation card. A tool that would make you more identifiable stops and asks, because consent to that is not something to infer. It never sees your identifier values. Tool results are shaped into counts, rules, grades and setting names before they reach the model, so your real or spoofed IDs are never sent to your AI provider. Answers carry tap-through links to the profile or screen being discussed, and an answer given without running any check is labelled as such. Automate it from your computer (optional, off by default) A zero-dependency MCP server (tools/mcp/) lets an external agent read and change Privacy Kit's configuration over adb. Two separate opt-in switches plus a token, and the policy is enforced on the device, not by the client — so a client that ignores the rules still gets refused. Deletion and app launching are excluded by design.
- Device templates work on every phone now Applying "Nothing Phone" or "Samsung Galaxy" used to silently keep your real device on newer Android versions, because a catalog row's Android version can't always travel to your phone. Now the device identity is applied regardless and the fingerprint is rebuilt around your real release, so the two never contradict each other. A profile named after a phone now reports that phone.
- New: hide manufacturer-private sensors Your sensor list is readable by any app with no permission, and it names your manufacturer and your ROM. On one test device, 31 of 59 sensors reported strings like xiaomi.sensor.fod_detector and org.lineageos.sensor.udfps — while the profile claimed to be a Galaxy S23.
- The new per-app Hide manufacturer-private sensors toggle (Advanced) withholds device-private sensors whose vendor namespace doesn't match the device your profile claims to be, and aftermarket-ROM sensors always. Measured on that device: 59 sensors visible before, 30 after.
- It removes information and never substitutes it. Relabelling the roster to your claimed phone was built and rejected: a donor roster can only match standard sensor types, so the vendor-private half would keep its real strings and apps would see a list naming two different phone makers — which no real device produces, and which would identify Privacy Kit rather than hide it. Ordinary sensors keep their real vendor strings, and the toggle says so.
- Setup Doctor tells the truth about the native layer The native-module check used to report a clean pass while a profile claimed a chip the phone doesn't have. GPU strings, /proc/cpuinfo and CPU frequencies are passthrough by design at every module version, so it now fails with an explanation instead of implying those reads are covered.
- Fixes Profile creation and template application are transactional — a failed template no longer leaves a half-built profile behind. The automation token lives in its own store and is excluded from backups, so it can't travel in a restore. The three sensor modes now have an explicit precedence (Fake > Fuzz > Block); Block was silently winning over the other two when more than one was on. Device templates search the full catalog, so Google/Pixel templates resolve correctly.
About this version
- Version
- 2.0 (40)
- Size
- 39.26 MB
- Requires Android
- 8.0
- Target SDK
- 26
- Architecture
- arm64-v8a, armeabi-v7a
- Downloads
- 12
- Updated
- Sep 19, 2026
- Package
- com.sal.privacykit
Similar apps
Ratings & reviews
- 50
- 40
- 30
- 20
- 10