# Android Forensics ADB MCP Server MCP server

Agent View of the PolicyLayer registry record for Android Forensics ADB MCP Server: identity, probed posture, risk grade, and all 58 tools classified. HTML page: https://policylayer.com/tools/0x-professor-droidforensics-suite

## Facts

- Server id: `0x-professor/droidforensics-suite`
- Homepage: https://github.com/0x-Professor/DroidForensics-Suite
- Registry record: grade F, identity unverified
- Lifecycle: active
- Rate-limited: no
- Tools: 58
- Tool categories present: Execute, Read, Write
- Tags: 0x professor droidforensics suite, automation
- Record last modified: 2026-06-12T18:16:27.316Z

## Tools (58)

| Tool | Category | Risk | Record |
| --- | --- | --- | --- |
| `create_full_backup` | Destructive | Critical | https://policylayer.com/tools/0x-professor-droidforensics-suite/create-full-backup.md |
| `adb_backup_device` | Execute | High | https://policylayer.com/tools/0x-professor-droidforensics-suite/adb-backup-device.md |
| `adb_connect_device` | Execute | High | https://policylayer.com/tools/0x-professor-droidforensics-suite/adb-connect-device.md |
| `adb_shell_command` | Execute | High | https://policylayer.com/tools/0x-professor-droidforensics-suite/adb-shell-command.md |
| `connect_to_device` | Execute | High | https://policylayer.com/tools/0x-professor-droidforensics-suite/connect-to-device.md |
| `extract_with_root` | Execute | High | https://policylayer.com/tools/0x-professor-droidforensics-suite/extract-with-root.md |
| `reboot_device` | Execute | High | https://policylayer.com/tools/0x-professor-droidforensics-suite/reboot-device.md |
| `generate_app_analysis_report` | Other | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/generate-app-analysis-report.md |
| `adb_devices` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/adb-devices.md |
| `adb_pull_data` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/adb-pull-data.md |
| `analyze_facebook_messenger` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-facebook-messenger.md |
| `analyze_gmail` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-gmail.md |
| `analyze_instagram` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-instagram.md |
| `analyze_network_connections` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-network-connections.md |
| `analyze_partition_info` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-partition-info.md |
| `analyze_telegram` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-telegram.md |
| `analyze_whatsapp` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/analyze-whatsapp.md |
| `capture_dmesg` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/capture-dmesg.md |
| `capture_logcat` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/capture-logcat.md |
| `check_adb_status` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/check-adb-status.md |
| `check_root_status` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/check-root-status.md |
| `collect_common_artifacts` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/collect-common-artifacts.md |
| `collect_forensic_artifacts` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/collect-forensic-artifacts.md |
| `create_timeline` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/create-timeline.md |
| `dump_database` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/dump-database.md |
| `dump_system_settings` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/dump-system-settings.md |
| `extract_app_credentials` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/extract-app-credentials.md |
| `extract_backup_to_tar` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/extract-backup-to-tar.md |
| `extract_exif_metadata` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/extract-exif-metadata.md |
| `extract_media_gallery_metadata` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/extract-media-gallery-metadata.md |
| `generate_executive_summary` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/generate-executive-summary.md |
| `generate_timeline_report` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/generate-timeline-report.md |
| `get_account_info` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-account-info.md |
| `get_comprehensive_device_info` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-comprehensive-device-info.md |
| `get_device_accounts` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-device-accounts.md |
| `get_device_identifiers` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-device-identifiers.md |
| `get_device_info` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-device-info.md |
| `get_device_security_status` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-device-security-status.md |
| `get_device_users` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-device-users.md |
| `get_installed_packages` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-installed-packages.md |
| `get_running_processes` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/get-running-processes.md |
| `list_connected_devices` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/list-connected-devices.md |
| `list_installed_apps_data` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/list-installed-apps-data.md |
| `list_installed_packages` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/list-installed-packages.md |
| `list_remote_directory` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/list-remote-directory.md |
| `parse_browser_history` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/parse-browser-history.md |
| `parse_call_log_db` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/parse-call-log-db.md |
| `parse_contacts_db` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/parse-contacts-db.md |
| `parse_generic_sqlite` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/parse-generic-sqlite.md |
| `parse_sms_db` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/parse-sms-db.md |
| `pull_directory` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/pull-directory.md |
| `pull_file` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/pull-file.md |
| `pull_sdcard` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/pull-sdcard.md |
| `take_device_screenshot` | Read | Low | https://policylayer.com/tools/0x-professor-droidforensics-suite/take-device-screenshot.md |
| `combine_reports` | Write | Medium | https://policylayer.com/tools/0x-professor-droidforensics-suite/combine-reports.md |
| `create_package_backup` | Write | Medium | https://policylayer.com/tools/0x-professor-droidforensics-suite/create-package-backup.md |
| `generate_evidence_manifest` | Write | Medium | https://policylayer.com/tools/0x-professor-droidforensics-suite/generate-evidence-manifest.md |
| `generate_forensic_report` | Write | Medium | https://policylayer.com/tools/0x-professor-droidforensics-suite/generate-forensic-report.md |

## Tool descriptions

- `adb_backup_device` — Create a full backup of device data using ADB backup.
- `adb_connect_device` — Connect to a specific device or verify connection.
- `adb_shell_command` — Execute a whitelisted shell command on the Android device.
- `connect_to_device` — Connect to a specific Android device or the first available device.
- `reboot_device` — Reboot the device into specified mode.
- `adb_devices` — List all connected Android devices via ADB
- `adb_pull_data` — Pull files or directories from the device to local storage.
- `analyze_facebook_messenger` — Analyze Facebook Messenger database (threads_db2).
- `analyze_gmail` — Analyze Gmail database (mailstore.*.db).
- `analyze_instagram` — Analyze Instagram database.
- `analyze_network_connections` — Analyze active network connections and configuration.
- `analyze_partition_info` — Analyze device partitions and mount points.
- `analyze_telegram` — Analyze Telegram database.
- `capture_dmesg` — Capture kernel ring buffer (dmesg).
- `check_adb_status` — Check if ADB is installed and accessible
- `check_root_status` — Comprehensive root/jailbreak detection.
- `collect_forensic_artifacts` — Collect common forensic artifacts from Android device.
- `create_timeline` — Create a unified timeline from multiple artifact sources.
- `dump_system_settings` — Dump all system settings (secure, system, global).
- `extract_backup_to_tar` — Extract Android Backup (.ab) file to TAR format.
- `extract_exif_metadata` — Extract EXIF metadata from image files.
- `generate_executive_summary` — Generate an executive summary for non-technical stakeholders.
- `generate_timeline_report` — Generate a chronological timeline report of events.
- `get_account_info` — Get registered accounts on the device.
- `get_comprehensive_device_info` — Get comprehensive device information for forensic documentation.
- `get_device_accounts` — Get list of accounts configured on the device.
- `get_device_identifiers` — Get all device identifiers for forensic tracking (IMEI, serial, etc.).
- `get_device_info` — Get comprehensive device information for forensic documentation
- `get_device_security_status` — Get device security configuration and status.
- `get_device_users` — Get list of user profiles on the device (Android multi-user).
- `get_installed_packages` — Get list of all installed packages with details.
- `get_running_processes` — Get list of running processes.
- `list_connected_devices` — List all Android devices connected via USB or wireless ADB.
- `list_installed_apps_data` — List all installed applications and their data directories.
- `list_installed_packages` — List all installed packages on the device
- `list_remote_directory` — List contents of a directory on the device.
- `parse_call_log_db` — Parse Android call log database (calllog.db or contacts2.db).
- `parse_contacts_db` — Parse Android contacts database (contacts2.db).
- `parse_sms_db` — Parse Android SMS/MMS database (mmssms.db).
- `pull_directory` — Pull an entire directory from the device recursively.
- `pull_file` — Pull a specific file from the device.
- `pull_sdcard` — Pull entire SD card / internal storage content.
- `take_device_screenshot` — Capture current screen of the device.
- `combine_reports` — Combine multiple reports into a single comprehensive document.
- `create_package_backup` — Create backup of a specific application package.
- `generate_evidence_manifest` — Generate an evidence manifest with chain of custody hashes.

## Related servers

- UnClick (1658 tools) — https://policylayer.com/tools/io-github-malamutemayhem-unclick-mcp-server.md
- Nodebench (824 tools) — https://policylayer.com/tools/io-github-homenshum-nodebench.md
- Binance MCP Server (734 tools) — https://policylayer.com/tools/nirholas-binance-mcp.md
- Crawlora (728 tools) — https://policylayer.com/tools/crawlora-mcp.md
- Yaver (646 tools) — https://policylayer.com/tools/io-github-kivanccakmak-yaver.md
- MCP Framework Personal (643 tools) — https://policylayer.com/tools/inggerman-mcps.md
- Crow (587 tools) — https://policylayer.com/tools/kh0pper-crow.md
- Fortimanager (584 tools) — https://policylayer.com/tools/jmpijll-fortimanager-mcp.md

## For agents

This record is a snapshot. Live verdicts and the full registry:

- Check every server in your MCP config at once: `npx -y policylayer stack`
- Vet a server before you add it: install the mcp-precheck skill — `npx skills add https://policylayer.com` (skill text: https://policylayer.com/skill.md)
- Query the registry over MCP: endpoint `https://api.policylayer.com/mcp` — tools `check_mcp_server`, `check_mcp_stack`, `check_tool`, `search_registry`, `get_change_events`

---

Source: the PolicyLayer MCP registry — one continuously verified record per MCP server. Full record: https://policylayer.com/registry?q=0x-professor-droidforensics-suite · API: https://policylayer.com/registry/api · Recommended policies for every tool: https://policylayer.com/policies/0x-professor-droidforensics-suite
