Reverse Flow
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
Optimized command-line arguments for all Android RE tools — jadx, baksmali, aapt, apkid, rg.
$ npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install Paresh-Maheshwari/morphe-ai tool-reference --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/Paresh-Maheshwari/morphe-ai.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.kiro/skills/tool-reference .claude/skills/tool-reference && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "tool-reference" agent skill from https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-reference into .claude/skills/tool-reference/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tool-reference", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-referenceType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install Paresh-Maheshwari/morphe-ai tool-reference --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Paresh-Maheshwari/morphe-ai.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.kiro/skills/tool-reference .agents/skills/tool-reference && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "tool-reference" agent skill from https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-reference into .agents/skills/tool-reference/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tool-reference", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install Paresh-Maheshwari/morphe-ai tool-reference --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Paresh-Maheshwari/morphe-ai.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.kiro/skills/tool-reference .cursor/skills/tool-reference && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "tool-reference" agent skill from https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-reference into .cursor/skills/tool-reference/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tool-reference", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/Paresh-Maheshwari/morphe-ai.git --path .kiro/skills/tool-reference--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install Paresh-Maheshwari/morphe-ai tool-reference --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Paresh-Maheshwari/morphe-ai.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.kiro/skills/tool-reference .gemini/skills/tool-reference && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "tool-reference" agent skill from https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-reference into .gemini/skills/tool-reference/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tool-reference", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install Paresh-Maheshwari/morphe-ai tool-referenceInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/Paresh-Maheshwari/morphe-ai.git skills-src && mkdir -p .github/skills && cp -r skills-src/.kiro/skills/tool-reference .github/skills/tool-reference && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "tool-reference" agent skill from https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-reference into .github/skills/tool-reference/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tool-reference", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install Paresh-Maheshwari/morphe-ai tool-reference --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Paresh-Maheshwari/morphe-ai.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.kiro/skills/tool-reference .opencode/skills/tool-reference && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "tool-reference" agent skill from https://github.com/Paresh-Maheshwari/morphe-ai/tree/main/.kiro/skills/tool-reference into .opencode/skills/tool-reference/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tool-reference", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
tool-referenceOptimized command-line arguments for all Android RE tools — jadx, baksmali, aapt, apkid, rg.
Tool Reference is an agent skill from Paresh-Maheshwari/morphe-ai. Optimized command-line arguments for all Android RE tools — jadx, baksmali, aapt, apkid, rg. Use when running any analysis tool to get the best flags and arguments.
Its SKILL.md is about 1.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Reverse engineering and malware. It works with Android and Kaggle. The repository describes itself as: Morphe's AI-powered Android APK patching workspace — multi-agent pipeline for APK analysis, target hunting, patch writing & deployment. The licence is GPL-3.0.
Read from SKILL.md and the folder at commit 2d7fde2. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
rguvxFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use uvx, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Tool Reference loads about 1.4k tokens when it runs. Until then it costs about 45 tokens; SKILL.md has 214 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from Paresh-Maheshwari/morphe-ai at commit 2d7fde2, republished under its GPL-3.0 licence (© Paresh-Maheshwari). 214 words, ~1,364 tokens.
.claude/skills/tool-reference/SKILL.md (or your agent's skills folder).When to use: Running any RE tool. Use these optimized flags for best results. Always use
rginstead ofgrep. For jadx, the Kaggle runner (.kiro/jadx-decompile) is the primary path for large APKs — explain the data flow and get approval before uploading; local jadx is the fallback for small/quick tasks or when remote is declined.
Use rg instead of grep everywhere. It's faster, respects .gitignore, and has better output.
# Search Java files only
rg "pattern" path/ -g "*.java"
# List matching files only (fast overview)
rg "pattern" path/ -g "*.java" -l
# With context lines
rg "pattern" path/ -g "*.java" -C 3 # 3 lines before+after
rg "pattern" path/ -g "*.java" -A 10 # 10 lines after
# Case insensitive
rg -i "pattern" path/
# Count matches per file
rg "pattern" path/ -g "*.java" -c
# Only show matching text (extract values)
rg -o "pattern" path/
# Max matches per file (avoid flooding)
rg "pattern" path/ --max-count 3
# Search smali files
rg "pattern" path/ -g "*.smali"
# Fixed string (no regex interpretation)
rg -F "exact.string.match" path/
# Multiple patterns
rg "pattern1|pattern2|pattern3" path/ -g "*.java" -l
# Exclude directories
rg "pattern" path/ --glob '!**/test/**'The Kaggle runner is the primary decompilation path for large APKs. Explain that the direct URL and downloaded APK are processed by Kaggle, obtain explicit user approval, then run:
.kiro/jadx-decompile "<url>" analysis/<app>/# Full decompile with all optimizations
jadx -d output/ input.apk \
--deobf \
--show-bad-code \
--decompilation-mode restructure \
-j $(nproc) \
-Pdex-input.verify-checksum=no \
-Pkotlin-metadata.class-alias=yes \
-Pkotlin-metadata.method-args=yes \
-Pkotlin-metadata.fields=yes \
-Pkotlin-metadata.data-class=yes \
-Pkotlin-metadata.to-string=yes \
-Pkotlin-metadata.getters=yes \
--use-source-name-as-class-name-alias always \
--use-kotlin-methods-for-var-names apply-and-hide \
--rename-flags all
# Decompile single class (quick check)
jadx --single-class "com.example.ClassName" -d output/ input.apk
# Sources only (no resources — faster)
jadx -d output/ --no-res input.apk| Flag | Purpose |
|---|---|
--deobf | Rename obfuscated a/b/c to readable names |
--show-bad-code | Show broken code instead of hiding |
--decompilation-mode restructure | Cleanest Java output |
-j N | Thread count (use all cores) |
--no-res | Skip resources (faster) |
--single-class | Decompile one class only |
# Disassemble single DEX
baksmali d classes.dex -o smali/
# Disassemble specific DEX from APK
baksmali d "app.apk/classes2.dex" -o smali/classes2/
# Disassemble with code offsets (useful for debugging)
baksmali d --code-offsets classes.dex -o smali/
# Disassemble specific classes only
baksmali d --classes "Lcom/example/Target;" classes.dex -o smali/
# Use all cores
baksmali d -j $(nproc) classes.dex -o smali/
# Disassemble ALL DEX files from APK
for dex in $(unzip -l app.apk | rg "\.dex" | awk '{print $4}'); do
name=$(basename $dex .dex)
unzip -o app.apk $dex -d /tmp/dex_extract
baksmali d /tmp/dex_extract/$dex -o smali/$name
done# Package name, version, SDK (most common)
aapt dump badging app.apk | head -5
# Full manifest as XML tree
aapt dump xmltree app.apk AndroidManifest.xml
# Check for split APK requirements
aapt dump xmltree app.apk AndroidManifest.xml | rg -i "split|requiredSplit"
# List permissions
aapt dump permissions app.apk
# List all resources
aapt dump resources app.apk
# List strings
aapt dump strings app.apk# Basic scan
uvx apkid app.apk
# Verbose (more detail)
uvx apkid -v app.apk
# Recursive (scan inside split APKs)
uvx apkid -r app.apk
# JSON output (for parsing)
uvx apkid -j app.apk| Output | Meaning |
|---|---|
compiler: r8 | R8 optimizer used (standard) |
compiler: d8 | D8 compiler (no optimization) |
obfuscator: proguard | ProGuard obfuscation |
packer: * | App is packed (harder to patch) |
anti_vm | Emulator detection present |
anti_debug | Debugger detection present |
# List all files in APK
unzip -l app.apk
# List DEX files
unzip -l app.apk | rg "\.dex"
# List native libraries
unzip -l app.apk | rg "\.so|lib/"
# Check framework (React Native, Flutter)
unzip -l app.apk | rg "index.android.bundle|libflutter|libapp"
# Extract specific file
unzip -o app.apk classes5.dex -d /tmp/
# Extract decompiled zip
unzip -qo decompiled.zip -d decompiled/# Extract all printable strings from APK
strings app.apk | rg -i "premium|entitlement|license"
# Find base64 encoded URLs
strings app.apk | rg "aHR0c" | while read b; do echo "$b" | base64 -d 2>/dev/null; echo; done
# Find API endpoints
strings app.apk | rg "https?://" | sort -u© Paresh-Maheshwari, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .kiro/skills/tool-reference of Paresh-Maheshwari/morphe-ai.
Open the folder on GitHubat commit 2d7fde2
Tool Reference next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Tool Reference this skillParesh-Maheshwari/morphe-ai | 177 | — | ~1.4k | Automated safety check: Pass | GPL-3.0 | |
| Reverse Flowlingbol088-spec/reverse-flow-skill | 940 | — | ~2.4k | Automated safety check: Pass | MIT | |
| APK Static Analysisdslsdzc/rev-skills | 130 | — | ~2k | Automated safety check: Pass | Apache-2.0 | |
| Mobile Reversesickn33/agentic-awesome-skills | 47k | 1 repos | ~1.5k | Automated safety check: Pass | MIT | |
| Mobile Auditbriiirussell/cybersecurity-skills | 413 | — | ~2.6k | Automated safety check: Warn | MIT | |
| Re Armdslsdzc/rev-skills | 130 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 |
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
dslsdzc/rev-skills
Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation.
sickn33/agentic-awesome-skills
Authorized Android/iOS application reverse engineering and security testing: APK/IPA analysis, runtime instrumentation (Frida/Objection), SSL-pinning and jailbreak/root-detection bypass, per OWASP…
briiirussell/cybersecurity-skills
Audit iOS and Android mobile applications against OWASP MASVS / MASTG — insecure storage, weak crypto, certificate pinning, deeplinks, IPC, jailbreak/root detection, reverse-engineering resistance.
dslsdzc/rev-skills
ARM 架构逆向(非 Android):Cortex-M/A 向量表、Thumb/ARM 切换、AAPCS 调用约定、位置相关代码重定位、MMIO 外设寄存器交叉。
webhtv/webhtv
Build, review, debug, reverse-engineer data sources for, and package FongMi/WebHome custom homepage single-file HTML.
Paresh-Maheshwari/morphe-ai
Build, test, deploy, and troubleshoot Morphe patches — gradle commands, CLI usage, git workflow, common errors and fixes.
Paresh-Maheshwari/morphe-ai
Complete Morphe development environment setup — prerequisites, cloning repos, gradle auth, IDE config, build commands.
Paresh-Maheshwari/morphe-ai
Complete guide to Morphe fingerprinting — how to identify obfuscated methods using stable characteristics.
Paresh-Maheshwari/morphe-ai
Morphe CLI v1.17.0 (morphe-desktop) complete command reference — patch, list-patches, list-versions, options-create, utility install/uninstall.
Paresh-Maheshwari/morphe-ai
Morphe FAQ, current pinned official app targets, and app-specific notes.
Paresh-Maheshwari/morphe-ai
Complete reference for all Morphe utility libraries — BytecodeUtils, ResourceUtils, FreeRegisterProvider, Settings, UI, Extensions.
Categories
Optimized command-line arguments for all Android RE tools — jadx, baksmali, aapt, apkid, rg. Tool Reference is an agent skill from Paresh-Maheshwari/morphe-ai. Optimized command-line arguments for all Android RE tools — jadx, baksmali, aapt, apkid, rg.
Tool Reference fits situations like: running any analysis tool to get the best flags and arguments; tasks that involve Reverse engineering and malware.
Run `npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a claude-code`. Or copy the skill folder (.kiro/skills/tool-reference in Paresh-Maheshwari/morphe-ai) into .claude/skills/tool-reference in your project. Claude Code loads it when a task matches its description.
Run `npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a codex`. Or copy the skill folder (.kiro/skills/tool-reference in Paresh-Maheshwari/morphe-ai) into .agents/skills/tool-reference in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Paresh-Maheshwari/morphe-ai --skill tool-reference -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/tool-reference, .gemini/skills/tool-reference, .github/skills/tool-reference and .opencode/skills/tool-reference in your project.
Going by SKILL.md and its folder, Tool Reference needs the command-line tools its instructions call (rg and uvx).
SKILL.md contains no URLs. Its commands use uvx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Tool Reference is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.4k tokens (SKILL.md is roughly 5.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Tool Reference: Reverse Flow (lingbol088-spec/reverse-flow-skill, 940 stars), APK Static Analysis (dslsdzc/rev-skills, 130 stars), Mobile Reverse (sickn33/agentic-awesome-skills, 47k stars) and Mobile Audit (briiirussell/cybersecurity-skills, 413 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Paresh-Maheshwari (a GitHub user) maintains it in Paresh-Maheshwari/morphe-ai, which has 177 GitHub stars. The repository holds 13 skills in this directory. The repository was last updated on September 29, 2026.
Source: Paresh-Maheshwari/morphe-ai on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.