Install
openclaw skills install @crawlora-org/app-privacy-disclosure-comparisonCompare public App Store privacy labels, Google Play data-safety declarations, and listed Android permissions through Crawlora. Use for an app shortlist or disclosure matrix with publisher/app identity, taxonomy, market, missing data, and runtime-verification limits preserved.
openclaw skills install @crawlora-org/app-privacy-disclosure-comparisonSet CRAWLORA_API_KEY to your Crawlora key. Prefer the listed Crawlora MCP tools
when connected; otherwise use the bundled scripts/crawlora.sh, which sends
x-api-key to https://api.crawlora.net/api/v1. Read
reference/endpoints.md for exact methods and parameters.
Check application code as well as HTTP status; payloads are inside data.
Stop on authentication errors, back off on 429, and retry a transient upstream
failure once. Bound calls/pages by the requested scope and credit budget. Retain
source IDs, URLs, source dates, and observation/crawl times separately.
Compare what selected mobile apps publicly disclose, for the user's requested data categories or access concerns. Establish platforms, app set, storefronts, language, use case, and any specific requirements before interpreting fields.
lang but no country
parameter: do not pretend a country set on another route scopes that disclosure.scripts/crawlora.sh /appstore/search term="note taking" country=us
scripts/crawlora.sh /googleplay/search term="note taking" country=us lang=en
# Use returned platform-specific IDs before requesting disclosures:
# scripts/crawlora.sh "/appstore/privacy/$TRACK_ID" country=us
# scripts/crawlora.sh /googleplay/datasafety app_id="$PACKAGE_ID" lang=en
# scripts/crawlora.sh /googleplay/permissions app_id="$PACKAGE_ID" country=us lang=en
Return an app-by-category/purpose/access matrix with declared, explicitly-not- declared, and unknown states, plus the original field and source/time behind any mapping. Separate developer declarations, store-presented fields, and your interpretation. Optional collection, purpose, linking, and sharing context matter; a category count alone does not establish the amount or sensitivity of actual data.
Listed permissions do not prove those permissions are granted, exercised, or abused on the user's device. A data-safety label is not runtime traffic analysis, an independent audit, a compliance determination, or a malware finding. Do not claim low permissions prove safety or high ratings validate privacy. Resolve conflicts through attributed evidence and questions for further testing. A comparison does not authorise installing apps, submitting packages, changing permissions, accessing accounts, or sending user/device data to an app.