AppReviewFix
Guideline library
Google PlaySecurity

MalwareMalware policy

What this guideline means

Apps flagged by Google Play Protect's automated scanning as containing malicious code, trojans, or exploit behavior are held regardless of intent — a legitimate SDK that behaves like known malware can trigger this.

Why apps actually get flagged

A surprisingly common false-positive cause is an aggressive obfuscation/packing tool applied to the build, which shares behavioral signatures with actual malware packers.

A real example

"Google Play Protect detected code in your app that exhibits behavior consistent with malware, per the Malware policy. Your app has been suspended."

Got this exact rejection?Paste it in and get a diagnosis specific to your app, free.
Decode my rejection
Related guidelines
5.1.1Data Collection and Storage4.3Spam2.1App Completeness
AppReviewFix
ProductDecoderPre-submission checkPricingGuideline library
CompanyAboutFAQContact
ResourcesBlog
LegalTermsPrivacy
© 2026 AppReviewFixBuilt by a developer, not a committee.