The desktop application (build 26.0.10.45) seems to handle correctly BEEF webpages (The Browser Exploitation Framework - https://github.com/beefproject/beef), blocking malicious scripts (see image below, with Notification "Infected web page detected").
However, the Android version (3.159.1036) with all shields ON does not block the same BEEF webpage.
I hosted a public server with a default BEEF application to test this (not gonna share that URL for security reasons).
It's just a configuration problem in my Android app?