Writing our Android apps
Writes and refactors app code from our specs and lessons.
Reviews every change, tests it on devices and decides what ships to Google Play.
How we use Claude
Claude is part of how we build apps and how we test them. Here's exactly where it's used, where it isn't, and the rules we keep on both sides.
Illustrative example of a Claude Code session
Where Claude is in our work
Every use has a named person on the other end who reviews, decides and takes responsibility.
Writes and refactors app code from our specs and lessons.
Reviews every change, tests it on devices and decides what ships to Google Play.
Explains concepts, generates practice questions and walks through examples.
Designs the prompts and limits, attacks the feature for prompt injection, and approves release.
Helps sort and prioritise the attack-surface map of an authorised target.
Chooses what to test, does the testing by hand, and reproduces every finding before it's reported.
Architecture
How our apps will reach the Claude API. We test security for a living, so it's designed the way we'd want a client's to be. In development
Sends only the text the learner chooses to send. No account, no identifiers, no API key.
Holds the key as a secret, rate-limits requests, and keeps no logs of questions.
Generates the answer under Anthropic's commercial terms and privacy policy.
A key inside an APK can be pulled out in minutes. Ours lives only in the Worker's secret store.
Rate limits at the Worker stop one client from draining the key or using the tutor as a free general chatbot.
Before release we test each feature for prompt injection, system-prompt leaks and off-topic misuse.
Responsible use
Security work and AI tools are both powerful. These apply to every engagement and every tool, Claude included.
We test only systems the client owns or controls, named in a signed authorization, within the agreed window. No exceptions for "quick checks".
Claude helps us think, sort and write. It is never left to scan or exploit anyone's systems unattended.
Anthropic's Usage Policy, and the scope and rules of every bug bounty and disclosure program we take part in.
Nothing goes in a report because a tool said so. If we can't reproduce it, we don't report it.
Test accounts, notes and evidence are kept confidential and deleted when the engagement ends.
Before we test anyone else's AI product, we attack our own Claude features and fix what we find.
Toward AI security
The same skills that find a missing authorization check find an agent that can be talked into one. We're building toward it deliberately.
Building on EC-Council CPENT AI, and working toward Hack The Box's COAE certification.
Prompt injection, data leaking through tools and retrieval, and agents acting beyond their remit.
Adversary-style testing of AI systems and the organisations around them, under written rules of engagement.
Questions
We'll tell you up front where Claude is used in your engagement, and answer any question about it.
Claude is a trademark of Anthropic, PBC. ElCampeon Systems is an independent company, not a partner of Anthropic.