I reverse-engineer Android applications to understand how real-world APIs behave,
then turn the findings into typed, tested, and documented Python tools.
- 🔬 I focus on Android reverse engineering, mobile API research, and authentication flows.
- 🐍 I build maintainable Python SDKs with type hints, offline tests, and practical documentation.
- 💳 My current research explores Indonesia's e-wallet and QRIS merchant ecosystem.
- 🛡️ I care about responsible research: findings are evidence-based, sensitive data is never published, and unknowns stay clearly marked as
TODO. - 🤝 I'm open to open-source collaboration, security research, and interesting Python projects.
My principle: research, don't guess. Every claim should be traceable to code, a capture, or a reproducible test.
|
An unofficial Python client for Indonesian QRIS merchant APIs, covering GoPay/GoBiz and ShopeePay. Includes OTP authentication, transaction feeds, dynamic QRIS, payouts, and payment watchers. Highlights: typed API · offline test suite · provider guides · APK research knowledge base |
A researched Python port of Highlights: modular services · resilient HTTP transport · APK-verified behavior · migration notes |
These are independent, unofficial research projects for educational purposes. They are not affiliated with or endorsed by the providers they study.
| Languages |
|
| Engineering |
|
| Security research |
|
Language statistics reflect public repository bytes and do not represent experience level.
Have a bug report, a research lead, or an idea for collaboration?
- 💬 Reach me on Telegram: @JoestarMojo
- 🐛 For project-specific issues, use the relevant repository's Issues or Discussions page.
- ⭐ If one of my projects helps you, consider starring it—it makes the work easier to discover.

