Sandboxed & rebuilt, not scanned

GuardBox keeps the risk off your phone.

A sandboxed container for WhatsApp, Telegram, and email. Files and images are redirected and opened inside a single-use cloud sandbox the moment they arrive — far from your device. The exploit isolates in the box.

An image is not just an image.

File parsers are a proven, recurring source of real exploits — and messaging apps are the most common way one reaches your phone.

No built-in protection

WhatsApp, Telegram, and email clients decode whatever they're sent — there's no layer between "someone sent this" and "your phone parsed it."

Disguised payloads

Malware is routinely packaged to look like an ordinary photo or document, passing casual inspection by file name or thumbnail alone.

Auto-preview is the risk

With auto-download and auto-preview left on, a messaging app can render a file before you ever get a say — that's the setting GuardBox asks you to turn off first.

Reconstruction, not detection.

GuardBox doesn't scan the original file for known threats — it never trusts the original at all. It decodes it, discards it, and rebuilds a clean copy from scratch.

WhatsApp share-target

Share a file to GuardBox the same way you'd share it to anyone else — the original never lands in GuardBox's own storage.

Telegram bot

Forward to @GuardBox and the file is pulled server-to-server from Telegram — it never travels through your device at all.

Email attachment routing

Route attachments to GuardBox before they ever reach a client-side mail parser.

Safe Viewer

What you see afterward is a rendered, pixel-based view of the clean copy — nothing is decoded locally.

EU-based sandboxes

Isolated, ephemeral processing hosted in the EU, torn down after every file.

REST API & SDK

Programmatic submission for teams who want GuardBox wired into their own tools.

Built for people who can't afford to be wrong once.

Individuals

Journalists, activists, and families who want a safe way to open what's sent to them — free, self-hostable forever.

Businesses

News agencies, NGOs, and public-sector teams handling sensitive files under GDPR and NIS2 expectations.