New app: MegaProxy

Required

  • The app complies with the inclusion criteria.
  • The original app author has been notified. I am the upstream app author and maintainer.
  • All related fdroiddata and RFP issues have been referenced. There are no related issues to reference.
  • Builds with fdroid build and all pipelines pass. The 1.0.1 pipeline passed; the updated 1.0.2 recipe requires its own successful F-Droid build and reproducibility verification.
  • There is an issue tracker and author contact information in the metadata.
  • Upstream maintains localized summaries, descriptions, changelogs, icons, screenshots, and feature graphics in Fastlane metadata.
  • Releases are tagged and automatic update checks are enabled.

Suggested

  • External repositories are added as git submodules instead of srclibs. The recipe uses the official pinned Go source as an F-Droid srclib to build the Go toolchain; the app does not vendor an external application repository.
  • Reproducible Builds are enabled. The recipe compares each APK with its upstream-signed release APK and pins the expected signing certificate. Verification of this updated version is pending the F-Droid pipeline.
  • Multiple APKs for native code. Separate armeabi-v7a, arm64-v8a, x86, and x86_64 APKs use ordered version codes 17001 through 17004.

Application

MegaProxy is an open-source Android VPN client for connections through user-managed HTTPS and SSH proxy servers, including jump proxies. It contains no advertising or telemetry.

This submission targets MegaProxy 1.0.2 (ABI-specific versionCode values 17001 through 17004, commit 599c1ac9894f31091a78d23e6a41e3bfb1db34b1). The release builds with JDK 21 and disables the AGP dependency metadata signing block with dependenciesInfo.includeInApk = false and includeInBundle = false.

Upstream source: https://github.com/andre487/AndroidMegaProxy

Release: https://github.com/andre487/AndroidMegaProxy/releases/tag/v1.0.2

Privacy policy: https://github.com/andre487/AndroidMegaProxy/blob/main/PRIVACY.md

Issue tracker: https://github.com/andre487/AndroidMegaProxy/issues

Upstream 1.0.2 release verification: the release workflow succeeded, and all five published APKs were downloaded and checked against SHA256SUMS, expected version codes and the pinned signing certificate. Distribution is now via GitHub Releases; Google Play integration has been removed. This does not replace F-Droid's buildserver reproducibility checks for the updated recipe.

When the official F-Droid installer or an installer handling fdroidrepo/fdroidrepos links is detected, and no manual source override is saved, update checks use the F-Droid package API and updates are delegated to F-Droid. MegaProxy does not download APKs in F-Droid update mode. The optional GitHub mode requires explicit user consent before downloading; source selection and the two newly declared permissions are explained in the update comment. Changelogs are now provided for every APK version code (17000–17004) in both en-US and ru-RU, including all four APKs published by F-Droid. The release automation generates and validates these copies for future releases.

Edited by Andrey Prokopyuk

Merge request reports

Loading
Loading