SQLCipher (sqlcipher-android) 16 KB page-size fix: upgrade to 4.6.1
Artifact net.zetetic:sqlcipher-android · measured 2026-10-01 · all libraries
fixed
SQLCipher (sqlcipher-android) versions up to and including 4.6.0 that we measured ship 4 KB-aligned native libraries (offending for Google Play's 16 KB page-size requirement). The first measured aligned stable version is 4.6.1; the newest measured, 4.19.1, is aligned.
- Sampled, not exhaustive: 24 of 25 published versions were measured with native code; unmeasured versions in between are unknown.
Measured evidence
| Version | Library file | p_align | File date | Source | |
|---|---|---|---|---|---|
| Last offending | 4.6.0 | jni/arm64-v8a/libsqlcipher.so | 4 KB (2^12) | Tue, 21 May 2024 16:18:06 GMT | artifact |
| First aligned | 4.6.1 | jni/arm64-v8a/libsqlcipher.so | 16 KB (2^14) | Tue, 20 Aug 2024 14:38:14 GMT | artifact |
p_align is the smallest PT_LOAD segment alignment of the ELF. 16 KB-compatible needs at least 16384 (2^14). Method: min PT_LOAD p_align of arm64-v8a/x86_64 .so inside the published AAR/JAR; aligned = >=16384 for every lib. Dates are repository file times, not official release dates.
Offending versions measured (7)
4.5.2, 4.5.3, 4.5.4, 4.5.5, 4.5.6, 4.5.7, 4.6.0
Native libraries seen: libsqlcipher.so.
The Gradle change
implementation("net.zetetic:sqlcipher-android:4.6.1")an aligned version, lowest measured above the last offending one; newer measured versions are aligned too (latest 4.19.1). Check: ./gradlew :app:dependencyInsight --dependency sqlcipher-android --configuration releaseRuntimeClasspath
Confirm what Gradle actually resolves, since another dependency may pull an older version:
./gradlew :app:dependencyInsight --dependency sqlcipher-android --configuration releaseRuntimeClasspathRe-verify it yourself
Download the artifact and run the free checker (check16k.py, Python 3, no dependencies):
curl -LO https://repo1.maven.org/maven2/net/zetetic/sqlcipher-android/4.6.1/sqlcipher-android-4.6.1.aar
python3 check16k.py sqlcipher-android-4.6.1.aarExit 0 = aligned, 1 = an unaligned library found. Better still, run it on your final .aab/.apk.
The paid kit ($12, v2) contains the complete measured fix map for all 80+ libraries as JSON and a table, every raw per-version measurement, the spot-check evidence, and the step-by-step guide for Play's 16 KB requirement. This page and the checker script stay free.
Get the kit ($12)Related artifacts
- SQLCipher (legacy android-database-sqlcipher) (net.zetetic:android-database-sqlcipher)