Busymate DevTools per iOS

Vedi ogni richiesta che il tuo iPhone invia. Senza Mac.

Cattura HTTPS di tutto il sistema direttamente sul telefono: decifra solo i domini che scegli, guardala dal vivo nella dashboard e cambia le regole via etere.

Guarda la procedura di configurazione.

Avvio rapido

Dall'installazione alla cattura live in circa un minuto

Segui i passaggi qui sotto o guarda la dimostrazione all’inizio della pagina.

  1. Sign in

    01

    Create a free Busymate account with Apple or email — it pairs the app to your device.

  2. Add your domains

    02

    List the domains you want to decrypt. Everything else stays end-to-end encrypted.

  3. Install & trust the CA

    03

    Install the local certificate generated just for you — the 1-minute walkthrough above shows exactly how.

  4. Capture & inspect

    04

    Flip capture on, accept the disclosure, and requests stream in live — tap any one for full headers and body.

Real-time feed

Guarda le richieste mentre accadono

Every request streams in live — method, URL, status, headers, and body. No Mac, no Wi-Fi proxy.

Busymate DevTools real-time network feed on iPhone

Full detail

Entra nei dettagli di header e body

Open any request for headers, query, status, timing, and full bodies — formatted and readable.

Busymate DevTools request detail view on iPhone

You choose

Decifra solo i domini che scegli tu

Decrypt only the domains you add. Everything else stays end-to-end encrypted.

Busymate DevTools SSL-proxy domain settings on iPhone

Bigger screen

Sincronizza con la tua dashboard

Optionally sync to dash.busymate.dev — search, tag, and export HAR on a bigger screen.

Busymate DevTools account & sync screen on iPhone

You decide

Il controllo resta a te

Built for traffic from apps and sites you own or are authorized to debug. Capture is always opt-in.

Capture is opt-in

Nothing is captured until you explicitly turn it on and accept the on-screen disclosure.

HTTPS only for chosen domains

Decryption is limited to domains you add — and you can add or remove them at any time.

A local CA, on your device

Decryption uses a CA certificate generated just for you, with guided step-by-step setup inside the app.

Stop and remove anytime

Stop capturing and remove the VPN profile from iOS Settings whenever you like. Synced captures are deletable.

La privacy prima di tutto

La cattura viene eseguita sul dispositivo. Le catture sincronizzate sono salvate nel tuo account e possono contenere dati sensibili. Ispeziona solo il traffico che sei autorizzato a esaminare. Informativa sulla privacy

Pronto a fare debug ovunque

  • iOS / iPadOS 17 or later
  • A free Busymate account (sign in with Apple or email)
  • No in-app purchases
Scarica su App Store — Busymate DevTools

Cattura on-device

The debugger is the phone itself

HTTPS sull’iPhone stesso — senza Mac, senza cavo. Scegli cosa decifrare, attiva la cattura e guardalo in diretta.

A large iPhone outline with a labeled VPN tunnel ribbon passing through it: decrypted request rows stream down the screen and out to a small live dashboard card with green status codes, while a dashed realtime line pushes a settings toggle and rule chip back into the phone. VPN GET POST GET live 200 201 404 200 realtime

Vede tutto, decifra solo ciò che permetti

Una VPN NetworkExtension cattura il traffico a livello di sistema — la tua app, le app di terzi, tutto. Il TLS viene decifrato solo per gli host che aggiungi esplicitamente alla lista SSL, così il resto del telefono resta privato.

Niente Mac. Niente proxy. Niente smanettamenti.

Non c’è nulla da collegare via cavo e nulla da configurare su un laptop. Il telefono cattura, decifra e trasmette da solo — dalla tua scrivania, dal banco di test o dall’altra parte del mondo.

SSL proxying attivo in un clic

Vedi una voce cifrata nella dashboard? Un clic. Il dispositivo riceve la modifica via Realtime e inizia a decifrare quell’host in pochi secondi — senza tornare al telefono.

Gestito da remoto, live via etere

Regole, script, mock e interruttori VPN arrivano sul dispositivo in diretta dalla dashboard — senza rebuild, senza revisione App Store. Attiva la cattura o aggiungi un host alla lista SSL e il telefono lo recepisce via Realtime in pochi secondi.

How it works

Inside the tunnel

A packet tunnel, an SNI matcher and an on-device certificate authority — the whole MITM pipeline runs on the phone.

  1. 01

    The phone becomes the tunnel

    A NetworkExtension packet tunnel claims the default route, so every app's DNS and TCP passes through the debugger — on the device itself. No Mac, no cable, no proxy settings.

  2. 02

    The handshake decides what's decrypted

    Each TLS connection's server name is read from the handshake and matched against your SSL-proxying list — wildcards included. Listed hosts are intercepted; everything else passes through encrypted.

  3. 03

    Certificates are minted on the phone

    La CA viene generata sul dispositivo al primo avvio — le tue chiavi non lasciano mai il telefono. I certificati foglia per host vengono emessi su richiesta e messi in cache, così ciò che arriva nel tuo feed è esattamente la richiesta e la risposta che la tua app ha visto.

  4. 04

    Rows stream straight to your feed

    Every captured pair is written directly to the shared entries table over the device's own long-lived pairing token — no files to pull, no sync step. The dashboard sees it the moment it lands.

Under the hood

The pipeline, specified

What actually runs when you flip capture on — and what never leaves the phone.

Capture
System-wide DNS + TCP via a NetworkExtension packet tunnel
Decryption
Selective, per-host SSL list with wildcard patterns — opt-in, never everything
MITM engine
per-host leaf certificates · RSA-2048
Pairing
365-day device token claimed at pairing — capture keeps streaming without re-login
Live control
Realtime push for settings, SSL lists, VPN on/off, breakpoints and resends — applied in seconds, over the air
Alternate mode
PAC proxy mode routes the phone through the shared MITM proxy instead of the on-device tunnel
Requirements
An iPhone. No Mac, no jailbreak, no computer in the loop

FAQ

iOS questions, answered

Do I need a Mac or any computer?

No. Capture, decryption and streaming all run on the iPhone itself — the phone is the debugger. You watch and control it from the web dashboard on any screen.

Does it decrypt everything on my phone?

No. TLS is opened only for hosts you explicitly add to the SSL-proxying list; every other connection passes through encrypted and untouched. The list is yours, editable live from the dashboard.

How do changes reach the phone without an app update?

The app is server-driven by design: rules, scripts, mocks, SSL lists and even the VPN toggle push to the device over a live Realtime connection. Behaviour changes in seconds — no rebuild, no App Store review cycle.

What about HTTP/3 (QUIC) traffic?

QUIC is not intercepted: the tunnel declines UDP/443 (and counts it), so apps fall back to HTTPS over TCP — where selective decryption and capture work normally.

Ask your mate