Jailed iOS app that can install IPAs permanently with arbitary entitlements and root helpers because it trolls Apple
skip-uicache
option to the TrollStore root helperget-task-allow
entitlement) (Contributed by @khanhduytran0)apple-magnifier://enable-jit?bundle-id=<Bundle_ID>
), this can allow a sandboxed app to semi-automatically get JIT, it will switch to TrollStore and then back to the app with JIT enabled (Only works when URL scheme is enabled in TrollStore settings!) (Contributed by @khanhduytran0)com.apple.private.security.no-sandbox
entitlement (got broken in 2.0.6) (e.g. Dopamine, TrollSpeed, etc.)Notes from 2.0.0:
Uses ChOma library for MachO parsing (not in the best state right now but it works for applying the bypass :D): https://github.com/opa334/ChOma
Big thanks to @alfiecg24 for providing the bypass and helping with automating it using ChOma and @TheRealClarity for some minor contributions to ChOma.
For early installing: If you can manage to replace a removable system app with PersistenceHelper_Embedded (using MDC / kfd), then reboot the device and run it afterwards, the replaced app can be used to install TrollStore.