Scan results

    Offline Games no wifi internet

    iOS

    Collection of offline HTML5 games with integrated advertising. Requires user consent for personalized ads through App Tracking Transparency.

    CITT SCORE
    90
    out of 100
    TRUSTED

    Quick Verdict

    Best for: Mobile gamers comfortable with ad-supported play

    What It Means For You

    Gameplay and device data are shared with a large network of ad platforms including Google AdMob, Facebook, AppLovin, Unity Ads, IronSource, InMobi, Mintegral, and Vungle, primarily for serving and measuring ads. App performance data is collected by Firebase Crashlytics and AppMetrica. No location, contacts, camera, or microphone data is accessed.

    Method and Limitations

    Static analysis only. CITT reviewed the code of this build without running the app, so runtime behavior was not observed. The findings below describe the analyzed build and may not reflect server-side controls or later versions. CITT makes no determination about compliance with any law or platform policy; it reports what the artifacts contain and cites the published guidance so a reader can compare.

    How CITT scores an app

    Findings (11)

    Data Security

    2 total
    2 Info

    Network Security

    2 total
    1 Medium
    1 Info

    Code Security

    2 total
    2 Info

    Privacy

    2 total
    2 Low

    Third-Party Risk

    3 total
    1 Medium
    1 Low
    1 Info

    Third-Party Services

    AppLovin MAX, Facebook Audience Network, FBSDKCoreKit, Google AdMob, InMobi SDK, Vungle / Liftoff, Unity Ads, MTGSDK (Mintegral), IronSource / LevelPlay, AppMetrica (Yandex), Firebase Crashlytics, Firebase Messaging, Firebase Remote Config, KSCrash, AdAttributionKit, SKAdNetwork, GCDWebServer, Open Measurement SDK (OMSDK)

    Security Strengths

    • Keychain configured with kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly — prevents iCloud sync, device-scoped only
    • WKWebView bridge loads only locally bundled game content — no remote URL injection surface
    • ATT prompt properly integrated before IDFA access
    • No server-side secrets or private keys found anywhere in binary or plists
    • VulnFanatic found zero vulnerability patterns across all 40 analyzed framework binaries
    What changed since the last scan

    Version diff is on the Developer plan. See developer plans.

    Context Tags

    ads
    games

    Package

    com.media720.offlinegames

    Version

    1.55 (build 15502)

    Analysis Date

    Apr 14, 2026

    0

    Was this analysis helpful?

    Feedback helps us improve our analysis

    View on App Store

    Recommendation: Trustworthy

    This app generally follows good security and privacy practices.

    Key Findings

    Data Security - 2 findings (2 info)

    Network Security - 2 findings (1 medium, 1 info)

    Code Safety - 0 findings

    Privacy - 2 findings (2 low)

    Privacy Concerns

    What Data is Collected

    Review the app's store listing and in-app privacy notices for a full data collection disclosure.

    Third-Party Data Sharing

    The following third parties may receive your data:

    • AppLovin MAX
    • Facebook Audience Network
    • FBSDKCoreKit
    • Google AdMob
    • InMobi SDK
    • Vungle / Liftoff
    • Unity Ads
    • MTGSDK (Mintegral)
    • IronSource / LevelPlay
    • AppMetrica (Yandex)
    • Firebase Crashlytics
    • Firebase Messaging
    • Firebase Remote Config
    • KSCrash
    • AdAttributionKit
    • SKAdNetwork
    • GCDWebServer
    • Open Measurement SDK (OMSDK)

    Understanding the Scores

    Security: 93/100
    Privacy: 88/100

    Security Breakdown

    • Data Security: 100/100 - how the app handles data at rest
    • Network Security: 88/100 - how the app handles data in transit
    • Code Safety: 100/100 - overall code hygiene signals

    Privacy Breakdown

    • Data Collection: 95/100 - scope of data collected
    • Data Sharing: 88/100 - third-party data sharing behavior
    • User Control: 94/100 - controls the app offers you

    Positive Security Features

    • Keychain configured with kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly — prevents iCloud sync, device-scoped only
    • WKWebView bridge loads only locally bundled game content — no remote URL injection surface
    • ATT prompt properly integrated before IDFA access
    • No server-side secrets or private keys found anywhere in binary or plists
    • VulnFanatic found zero vulnerability patterns across all 40 analyzed framework binaries
    • GCDWebServer correctly bound to localhost only — no network exposure
    • No camera, microphone, contacts, health, or clipboard permissions requested

    Areas for Improvement

    • Review the category summary above for where the app could strengthen its practices.
    • Keep the app updated so you receive the latest security improvements from the developer.

    About This Analysis

    This security analysis was conducted by CITT (Can I Trust That), an independent security analysis service. We perform static code analysis on mobile applications to help users make informed decisions about app security and privacy.

    App Details

    Developer: Unknown developer
    Version: 1.55 (build 15502)
    Analysis Date: 2026-04-14
    Package: com.media720.offlinegames

    Right of Reply

    Developer not yet contacted