Ask anything official about AppDefender.dev. I only answer from approved knowledge. I do not invent capabilities, and I do not enforce policy.
Pro.AI
AppDefender.dev’s AI security assistant
Pro.AI explains what AppDefender.dev officially supports. It searches approved knowledge first. It does not invent capabilities, and it does not decide or enforce policy. Enforcement stays in the SDK, the Launch Security Gate, and ThreatDesk.
AppDefender.dev security assistant
Suggested
Knowledge foundation
Approved FAQ records — not a loose text list
The public assistant uses 57 approved records today (57 seed + 0 published from the Super Admin desk). Records are structured so the desk can grow past 500 without changing the engine. Each record has an ID, audience, product, platform, SDK, version, keywords, related IDs, owner, and Approved status. Drafts never reach Pro.AI.
Path: question → FAQ search → semantic match → approved response. Not question → model → invented capability. Confidence under the band, or a security-sensitive miss, returns a support handoff — never a guessed feature. Unanswered questions go to Super Admin. The Security Team writes the official FAQ, then approves it, then Pro.AI can use it.
What Pro.AI may know
Product architecture it can explain
AppDefender
- RASP
- Launch Security Gate
- Runtime threat detection
CodeDefender
- Obfuscation
- Anti-tampering
- Integrity
KeysDefender
- SDK keys
- Credential protection
- Secret management
Offline Threat Defender
- Signed cached policy
- Local detection
- No fail-open
ApiDefender
- ATS Lite
- ATS Full
- SSL pinning
MFADefender
- MFA beside the token
- OTP ignored after BLOCK
- Silent re-check
SMVDefender
- Identity beside SMS OTP
- SMSV
- DLT stays on the server
BindDefender
- Handset and SIM bind
- One-device block
- Clone / sideload detect
Native Security Bridge
- Thin adapter
- Native core owns the decision
- No secrets in JS
Web Apps
- Session gate
- Public App ID
- DevTools as a risk event
Pro.AI
- FAQ assistant
- Developer assistant
- Security assistant — explains, does not enforce
Controls
Mandatory on this assistant
- Approved-answer enforcement and source attribution
- No hallucination of unpublished capabilities
- No Client-to-Client data on this public site
- No secrets or internal instructions in answers
- Input limits, injection refuse, and rate limiting
- Unanswered questions captured for Security Team review — then a new approved FAQ