Why Am I Seeing a Security Alert When Logging In to the Geojit App?


If you see a security alert while logging in to the Geojit app, it means the app has detected one or more security indicators that suggest the device may be rooted, jailbroken, modified, or running debugging or instrumentation components. To help protect your account and financial information, access may be restricted on devices that do not meet the required security standards. This article explains why the alert appears, the security checks performed by the app, and the steps you can take if you believe the alert has been triggered incorrectly.


Why am I seeing the “Security Alert” popup while logging in to the Geojit app?
The Geojit app performs security and device-integrity checks to ensure that the app is running in a secure and unmodified environment. If the device is detected as rooted, jailbroken, modified, or running certain debugging/instrumentation tools, login may be restricted.


What security checks are performed by the Geojit app?

The app performs multiple security checks, including:

  • Root/Magisk detection
  • Riru/Zygisk-related traces
  • Xposed/LSPosed detection
  • Frida instrumentation detection
  • VPN detection
  • Rootbeer-based root detection
  • Developer options and debugging/ADB checks
  • Jailbreak and debugger detection on iOS devices


Does this mean my phone is definitely rooted if I see this message?

Not necessarily. The security system checks for multiple indicators of a modified or potentially compromised environment. In some cases, a device may trigger a security check because of remnants or components associated with rooting, modification, or debugging tools, even if the customer is not actively using them.


I have never rooted my phone. Why am I still getting this alert?

Certain applications, system modifications, debugging tools, or remnants of previously installed components can cause a security check to fail. For example, the security check may detect traces associated with frameworks such as Riru, Magisk, LSPosed or similar tools.


In my case, the security check shows “Process memory maps – Failed” and “matched Riru." What does this mean?

This indicates that the app detected a Riru-related trace in the device's process memory map. This is one of the indicators used to identify potentially modified or instrumented devices. Other security checks may still show as passed.


Why does Geojit restrict login on such devices?

A rooted or modified device can potentially bypass normal operating-system security controls and may expose sensitive information or application activity to unauthorized access. Since the Geojit app handles financial and personal information, access is restricted when the device does not meet the required security standards.


What should I do if I receive this security alert?

Please try accessing the Geojit app from an unmodified device with the standard operating-system configuration. If your device has previously been rooted or modified, ensure that the modifications and associated components have been completely removed and restart the device.


Can I continue using Geojit if my device is detected as rooted or modified?

For security reasons, login through the Geojit app may be restricted on devices that fail the required integrity checks. Please use an unmodified device to access the app.


What if I believe the security alert has been triggered incorrectly?

If you are using a standard, unmodified device and believe the alert is incorrect, please contact Geojit Customer Support with the device model, operating-system version, app version, and screenshot of the Security Check Details so that the issue can be investigated.


Does having Developer Options enabled cause the app to block access?

Developer options and debugging settings are among the security checks performed by the app. Depending on the security configuration and other indicators detected on the device, access may be restricted. If you do not require Developer Options, it is recommended to disable them and retry.


Will disabling Developer Options alone resolve the issue?

Not necessarily. The app performs multiple independent security checks. If another security indicator—such as root, Riru, Magisk, Xposed/LSPosed, or instrumentation traces—is detected, the login restriction may continue.


Is this security check performed only on Android devices?

No. Security checks are performed on both Android and iOS. On iOS, the checks include indicators such as jailbreak detection and debugger attachment, while Android devices undergo a broader set of root, instrumentation, and debugging checks.


Still need help? Create Ticket