← hub·evidence

Vendored code, spotcheck

What the classifier calls 'vendored' in the decompiled apps, one package at a time, so you can judge if each is really a third-party library or misclassified app code.
Package-level spotcheck, not complete repos. Each group collects files that share a package name, pulled from real decompiled apps, so you can judge whether the recurrence gate labeled it right: a real bundled LIBRARY (Tencent, BouncyCastle, Jackson, AppLovin, libGDX) vs a PROPRIETARY APP wrongly swept in because it recurs across mods (WhatsApp, Instagram, Shopee, Spotify, PicsArt). A library is not a standalone repo, so this view is by design file-level. For complete repos see Browse apps and C/C++ by category.
collapse all expand all sort:
select a file
Pick a repo on the left, then read any file in it, top to bottom.