Encryption protects your photos from someone who takes your phone. It does nothing about someone standing in front of you asking you to open it. That is a different problem with a different answer.

A disguised app icon is not the same thing: it hides that a vault exists, not what is in it.
Encryption handles a stolen phone. A key you have not typed is the end of it.
It does nothing about someone standing in front of you. Then encryption only lets you refuse, and refusing confirms there is something to see.
The category calls this plausible deniability. It is mostly a domestic problem, not a spy one.


















A fake PIN means typing a code while the person who asked is watching. A shake fires from a phone you are already holding.
Three of these are the owner's mistake, not the app's.
The decoy hides what is in the vault, not that you have one. The app is on your home screen with its own name and icon.


It protects against a person, not an expert with tooling. No vault app should claim otherwise.
It is also not a legal strategy. In some places you can be compelled to produce a passcode, and misleading an official can be a separate offence from whatever they were looking for. If your situation involves a border, a court or an investigation, the right tool is a lawyer.