Android के लिए HTTP और API ट्रैफ़िक इंस्पेक्टर
अपने Android फ़ोन पर HTTPS ट्रैफ़िक जाँचें
अपने ऐप्स का हर रिक्वेस्ट देखें — Android फ़ोन पर ही।
VpnService कैप्चर। HTTPS सिर्फ़ आपके चुने डोमेन के लिए। डैशबोर्ड पर लाइव — न कंप्यूटर, न Wi-Fi प्रॉक्सी।
यह ऐप फ़िलहाल Google Play पर टेस्टिंग में है — अगर लिस्टिंग अभी आपके लिए उपलब्ध नहीं है, तो APK सीधे इंस्टॉल करें।
लाइव डेमो आज़माएँ

From install to live capture in
चार आसान चरण — ऐप का गाइडेड सेटअप हर चरण में आपका साथ देता है।
साइन इन करें
01Google या ईमेल से मुफ़्त Busymate खाता बनाएँ — यह ऐप को आपके डिवाइस से जोड़ता है।
अपने डोमेन जोड़ें
02जिन डोमेन को डिक्रिप्ट करना है उन्हें सूचीबद्ध करें। बाकी सब एंड-टू-एंड एन्क्रिप्टेड रहता है।
गाइडेड सेटअप चलाएँ
03कैप्चर नोटिफ़िकेशन की अनुमति दें, सिर्फ़ आपके लिए बना सर्टिफ़िकेट इंस्टॉल करें और Android की VPN सहमति दें — एक बार में एक स्क्रीन।
कैप्चर करें और जांचें
04कैप्चर चालू करें और रिक्वेस्ट लाइव आने लगेंगी — पूरे हेडर और बॉडी के लिए किसी पर भी टैप करें।
रिक्वेस्ट को होते ही देखें
हर रिक्वेस्ट लाइव आता है — मेथड, URL, होस्ट, स्टेटस। न कंप्यूटर, न Wi-Fi प्रॉक्सी।


हेडर और बॉडी में गहराई से जाएँ
किसी भी रिक्वेस्ट को खोलें — URL, मेथड, टाइमिंग, हेडर और फ़ॉर्मेटेड बॉडी।


जब तक आप न कहें, कुछ भी कैप्चर नहीं होता
कैप्चर आपकी सहमति के बाद ही शुरू होता है। होम स्क्रीन से कभी भी रोकें।


पेचीदा हिस्से, स्टेप-बाय-स्टेप
नोटिफ़िकेशन, CA सर्टिफ़िकेट और VPN सहमति — एक गाइडेड विज़ार्ड, Settings में खोजबीन नहीं।


You stay in
Busymate DevTools उन ऐप्स और साइटों का ट्रैफ़िक जांचने के लिए है जो आपकी हैं या जिन्हें डीबग करने की आपको अनुमति है। कैप्चर हमेशा आपकी मर्ज़ी से होती है और क्या डिक्रिप्ट होगा, यह आप ही तय करते हैं।
कैप्चर आपकी मर्ज़ी से
जब तक आप इसे स्पष्ट रूप से चालू करके स्क्रीन पर दी सहमति स्वीकार नहीं करते, कुछ भी कैप्चर नहीं होता।
सिर्फ़ चुने डोमेन का HTTPS
डिक्रिप्शन आपकी SSL सूची के डोमेन तक सीमित है — इन्हें कभी भी जोड़ें या हटाएँ।
आपके डिवाइस पर आपकी निजी CA
डिक्रिप्शन सिर्फ़ आपके लिए बने CA सर्टिफ़िकेट से होता है, जो यूज़र सर्टिफ़िकेट के रूप में इंस्टॉल होता है। रूट किए डिवाइस पर चाहें तो इसे सिस्टम-स्तर पर भी इंस्टॉल कर सकते हैं।
कभी भी रोकें और हटाएँ
होम स्क्रीन से कैप्चर बंद करें और जब चाहें Android सेटिंग्स से VPN व सर्टिफ़िकेट हटा दें। सिंक की गई कैप्चर मिटाई जा सकती हैं।
प्राइवेसी सबसे पहले
ट्रैफ़िक Android की VpnService से डिवाइस पर ही कैप्चर होता है — कुछ भी हमारे सर्वर से होकर नहीं जाता। कैप्चर डेटा में टोकन और क्रेडेंशियल जैसे संवेदनशील मान हो सकते हैं, इसलिए सिर्फ़ वही डोमेन जांचें जिन्हें आप समझते और नियंत्रित करते हैं। सिंक की गई कैप्चर आपके अपने खाते में रहती हैं और कभी भी मिटाई जा सकती हैं। Android की प्राइवेसी नीति पढ़ें.
Ready to debug
- Android 7.0 या नया
- मुफ़्त Busymate खाता (Google या ईमेल से साइन इन करें)
- रूट ज़रूरी नहीं — रूट सिर्फ़ वैकल्पिक सिस्टम-स्तरीय डिक्रिप्शन खोलता है
Your whole phone's traffic,
HTTPS Android फ़ोन पर ही। चुनें क्या डिक्रिप्ट करना है, कैप्चर चालू करें, लाइव देखें।
VpnService से पूरे सिस्टम की कैप्चर
Android की VpnService फ़ोन का सारा ट्रैफ़िक ऐप से होकर भेजती है — हर ऐप, DNS और TCP समेत, सब डिवाइस पर ही कैप्चर। कंप्यूटर की ज़रूरत नहीं।
सिर्फ़ वही डिक्रिप्ट होता है जिसकी आप अनुमति दें
TLS सिर्फ़ आपकी SSL सूची के होस्ट के लिए डिक्रिप्ट होता है — आपके लिए बने CA सर्टिफ़िकेट से, जो यूज़र सर्टिफ़िकेट के रूप में इंस्टॉल होता है। रूट किए डिवाइस पर चाहें तो इसे सिस्टम-स्तर पर लगाकर उन ऐप्स तक भी पहुँचें जो यूज़र CA नहीं मानते। बाकी सब जस का तस निकल जाता है।
आपके डैशबोर्ड पर लाइव
हर रिक्वेस्ट रीयल-टाइम में आपके निजी डैशबोर्ड पर स्ट्रीम होती है — बड़ी स्क्रीन पर जांचें, खोजें, टैग करें, मॉक करें और HAR में एक्सपोर्ट करें।
PAC मोड — जब VPN न चले
प्रॉक्सी पसंद है? PAC मोड डिवाइस को उसका अपना प्रॉक्सी ऑटो-कॉन्फ़िग URL देता है — इसे अपने Wi-Fi नेटवर्क पर सेट करें और ट्रैफ़िक डिवाइस की VPN की बजाय आपके निजी Busymate प्रॉक्सी से जाएगा।
MCP से एजेंट-रेडी
फ़ोन जो भी कैप्चर करता है, AI एजेंट उसे MCP सर्वर से क्वेरी और स्क्रिप्ट कर सकते हैं — और बिल्ट-इन AI साथी BusyBro आपके ट्रैफ़िक को पहले से जानता है।
रिमोट-प्रबंधित, आपकी भाषा में
कैप्चर सेटिंग्स, SSL सूचियाँ और मॉक नियम डैशबोर्ड से फ़ोन पर लाइव पहुँचते हैं — न री-इंस्टॉल, न अपडेट। और पूरा ऐप 14 भाषाएँ बोलता है।
Inside
A system VPN, a userspace TCP/IP stack and selective TLS interception — the whole pipeline runs on the phone.
- 01
VpnService takes the route
Android hands the whole phone's packets to the app's TUN interface — a system VpnService running as a special-use foreground service. Every app's traffic, no root required.
- 02
A userspace netstack rebuilds the flows
Packets are parsed and TCP is reassembled entirely inside the app — IPv4 and IPv6, DNS forwarding, QUIC accounting — then forwarded upstream. The netstack is the debugger's own, not the kernel's.
- 03
TLS opens only where you allow it
Hosts on your SSL list are intercepted with a CA generated for your install and added as a user certificate. Rooted devices can opt into a system-wide CA tier for apps that ignore user CAs; everything else passes through encrypted.
- 04
The same rows, the same feed
Captured pairs land in the identical table and wire shape as iOS, the proxy and Chrome capture — over the same pairing handshake and long-lived device token, listening on the same Realtime control channels.
The stack,
What ships on the phone — and how it stays the exact peer of the iOS app.
- Capture
- System-wide VpnService TUN with a userspace TCP/IP netstack — no root needed
- Decryption
- Selective per-host TLS interception via a per-install user CA; optional system-CA tier on rooted devices
- UI
- Kotlin · Jetpack Compose (Material 3)
- OS support
- minSdk 24 (Android 7.0) · targetSdk 36
- Distribution
- Google Play (production) — plus a signed APK for direct sideload
- Credential storage
- Device token in hardware-Keystore-backed encrypted preferences; backups excluded
Android questions,
Is the app on Google Play?
Yes — it's live in production on the Google Play Store, and a signed APK is also published for direct sideload if your device or fleet can't use Play.
Do I need root?
No. Capture and user-CA decryption work on any Android 7.0+ phone. Root only unlocks the optional system-CA tier, which reaches apps that ignore user-installed certificates.
Is it the same product as the iOS app?
It's the contract-identical twin: the same entry tables, the same wire shape, the same pairing handshake and Realtime channels — so Android and iOS devices stream side by side in one dashboard feed.
Why is there a persistent notification while capturing?
Android requires a visible foreground service while a VPN runs. The notification is your capture-session indicator — and it stops the OS from killing capture mid-session.