Feature: Link & File Sandboxing

Open Any Suspicious Link or File. Nothing Ever Reaches Your Device.

CyberCheck360's cloud sandbox lets you open any link or email attachment in a fully isolated browser with a single click, from Gmail or Outlook, with no setup, no IT team, and no hardware required. The verdict is instant. The risk is zero.

Available free inside the Gmail and Outlook add-ons. No credit card required to start.

Zero malware ever reaches your device
One-click no configuration
Free tier, no card required
ISO 27001 Certified
GDPR Ready
Gmail & Outlook Add-on
One-Click Sandbox
Fully Cloud-Hosted

What is link & file sandboxing?

A Completely Isolated Environment That Executes Threats So Your Device Never Has To

A sandbox is a sealed, virtual environment completely separate from your real computer, network, and data. When you open a link or file inside a sandbox, any malicious code, ransomware dropper, or credential harvester runs and completes inside the container. The container is then discarded. Your device is untouched.

Suspicious Links

Paste or click any URL phishing pages, malware download pages, lookalike login portals and the full page executes in our cloud browser. You see a live screenshot. The payload never runs locally.

Email Attachments & Files

PDFs, Word docs, Excel sheets, and ZIP archives can all carry hidden macros, exploits, or droppers. Open them in the sandbox first. Any malicious behaviour fires in our container & not on your machine.

Unknown Senders & Domains

A newly registered domain, a spoofed supplier, a lookalike brand even if the reputation databases have no record of it yet, our sandbox catches live behaviour the moment the page or file executes.

Why sandboxing matters

Your Antivirus Doesn't Know What It Hasn't Seen Before

Traditional security tools like antivirus, email filters, reputation databases work by matching known threats. If an attacker uses a freshly registered domain, a brand-new malware variant, or a clean file that only turns malicious after opening, reputation-based tools pass it straight through. Sandboxing catches what they miss by watching what the content actually does.

🎣
Contained
Zero-Day Phishing Pages

No reputation signal exists yet. The sandbox visits the page and detects credential-harvesting behaviour in real time.

📎
Contained
Macro-Enabled Office Files

Word, Excel, and PowerPoint macros are a top ransomware delivery method. Executing the file in a container reveals what the macro does.

🔄
Contained
Delayed-Payload Links

Links that look clean at delivery but redirect to malware hours later. The sandbox executes the live destination, not the cached one.

📦
Contained
Archive & Compressed Files

ZIP and RAR files frequently hide multiple-stage payloads. Sandbox unpacks and executes everything inside safely.

↪️
Contained
Multi-Redirect Chains

Attackers chain through Google, Bit.ly, and CDN links to hide the real destination. The sandbox follows every hop.

💻
Contained
Drive-By Downloads

Pages that silently trigger a download and execute malware on page load. The download runs inside the container. Your disk is never written to.

How it works

One Click. Verdict in Seconds. Nothing Reaches Your Device.

No installations, no waiting for IT, no complex workflows. The entire sandbox is hosted in our cloud. You interact with it through your existing Gmail or Outlook inbox.

01

Receive an Email With a Suspicious Link or Attachment

The CyberCheck360 add-on panel appears automatically inside Gmail or Outlook when you open a message. Every link and attachment is immediately visible in the sidebar.

02

Click "Open in Sandbox" One Click, That's It

No configuration. No IT ticket. You click the "Open in Sandbox" button next to any link or file shown in the add-on. Our cloud immediately spins up a disposable, isolated container.

03

The URL or File Executes Entirely in Our Cloud

The page loads, the file opens, macros run, redirects happen all inside our sandboxed environment. Any malware, phishing page, or exploit fires inside the container. Your device, network, and data are completely untouched.

04

Receive an Instant Verdict and Screenshot

You see a full screenshot of the page or file, a threat verdict, and key signals domain age, reputation, detected behaviour. Act with complete confidence: safe to open, or confirmed threat.

05

Container Destroyed Attack Gone

The sandbox session ends and the container is immediately discarded. Nothing persists. No traces remain. The threat executed and was eliminated entirely in our cloud infrastructure.

Works inside your inbox

Sandbox Available Directly in Gmail and Outlook, No Tab Switching Required

The sandbox isn't a separate tool you have to remember to use. It's built into the Gmail and Outlook add-ons that sit right inside your inbox. You see the suspicious link or file. You click "Open in Sandbox". The verdict comes back all without leaving the message.

Gmail Add-on

Open any email in Gmail the CyberCheck360 add-on appears automatically. Every link in the message is listed with its reputation verdict. Spot something suspicious? Hit "Open in Sandbox". The isolated browser session opens in seconds. You see a full screenshot and verdict. No risk to your device.

  • Works in Gmail web and Google Workspace
  • Links and attachments both sandboxable
  • Free tier: 3 sandbox sessions per day
  • Paid: unlimited sandbox + file scanning
See Gmail Add-on

Outlook Add-on

The CyberCheck360 panel appears on the right side of every Outlook message on desktop, web, and Microsoft 365. Every link and attachment is assessed automatically. Click "Open in Sandbox" on any item to execute it safely in our cloud browser. SPF, DKIM, and DMARC results are shown alongside every link verdict.

  • Works in Outlook Desktop, Web, and M365
  • Links and attachments both sandboxable
  • Free tier: 3 sandbox sessions per day
  • Paid: unlimited sandbox + session recording
See Outlook Add-on

CyberCheck360 vs traditional sandboxing

Enterprise Sandboxing Costs a Fortune to Set Up. Ours Takes One Click.

Traditional sandboxing platforms like FireEye, Cuckoo, or enterprise-grade SOC tooling are powerful — but they require months of setup, dedicated security staff, significant infrastructure investment, and ongoing maintenance. CyberCheck360 delivers the same core protection as a fully managed SaaS add-on that any employee can use from their inbox.

FeatureTraditional / Enterprise Sandbox
CyberCheck360
Setup requiredWeeks of professional servicesZero - install the add-on
InfrastructureOn-premise servers or private cloud VMsFully managed SaaS, we run everything
Cost to deploy$50,000–$200,000+ annually (enterprise)Start from Zero
Maintenance & updatesDedicated team requiredZero cost, automatic, always up to date
Who can use itSecurity analysts with trainingAny employee - one button in Gmail/Outlook
Where it runsInternal network or dedicated VMOur cloud - fully isolated from your network
Time to verdictMinutes to hoursSeconds
File scanning inside sandboxAvailable (with licensing)✅ Included on paid plans
Session recordingAvailable (with storage costs)✅ Included on paid plans
Gmail / Outlook integration❌ Separate tool✅ Native add-on, lives in your inbox

The real cost of enterprise sandboxing

Setting Up Your Own Sandbox Is Expensive, Slow, and Needs a Team to Run It

Organisations that deploy traditional sandboxing solutions face a significant investment before they see any protection. Here's what teams typically deal with.

Upfront Licensing

Enterprise sandbox platforms (Palo Alto WildFire, FireEye, Cuckoo with commercial support) start at $30,000–$150,000+ per year depending on volume and features.

Infrastructure Costs

Running on-premise requires dedicated hardware, VM hosts, and network isolation. Cloud-hosted enterprise solutions still require provisioning, VPC configuration, and storage.

Weeks of Setup

Deployment involves professional services engagements, policy configuration, integration with email gateways, and testing. Typical timelines run 4–12 weeks.

Ongoing Maintenance

Sandbox rules, detonation policies, and detection logic require a dedicated security team to monitor, tune, and update. This is a continuous operational cost.

CyberCheck360: Install the Add-on. Start Sandboxing in Minutes.

No infrastructure. No maintenance. No professional services. No security team needed. Every employee can sandbox a suspicious link or file directly from their Gmail or Outlook inbox — immediately after install. The free tier gives 3 sandbox sessions per day with no card required.

SaaS worry-free, everywhere

Available Everywhere. Always Up to Date. Zero Maintenance.

Because CyberCheck360 is fully managed SaaS, there is nothing to install, update, or manage on your infrastructure. Every time you click "Open in Sandbox", you're using our latest detection engine without any action on your part.

Fully Cloud-Hosted

Every sandbox session runs in our isolated cloud infrastructure. Your servers, VMs, and network are never involved.

Instant Verdicts

Sandbox sessions complete in seconds, not minutes. You get a verdict and screenshot before you`ve finished reading the email.

Works From Any Device

Gmail web, Gmail mobile, Outlook Desktop, Outlook Web App the add-on works wherever you read email. No local software needed.

Always Current Detection

We update our threat intelligence and detection engine continuously. You always run the latest version automatically, with no action required.

Free Tier With No Card

3 sandbox sessions per day on the free tier. No credit card, no commitment. Upgrade only when you need unlimited sessions or admin reporting.

GDPR-Ready & ISO 27001 Certified

Data handling meets GDPR requirements. ISO 27001:2022 certified. Suitable for organisations with regulatory and compliance obligations.

Who it's for

Built for Every Employee & Not Just Security Teams

Traditional sandboxing is a tool for analysts. CyberCheck360's sandbox is a tool for anyone who reads email which is everyone.

Finance Teams Handling Supplier Invoices

Invoice fraud and payment redirect scams arrive as email attachments. Before acting on any supplier document, open it in sandbox first. See exactly what it does before it touches your system.

Legal & Compliance Teams

High-value communications mean high-value targets. One malicious PDF in a client matter can expose confidential data or compromise a network. Sandbox every unexpected attachment before opening.

HR Teams Opening Applicant Files

Attackers routinely send malicious CVs and cover letters to HR inboxes. A Word document with a macro, a PDF with an embedded link open them in sandbox and see what they actually contain.

IT Managers Without Dedicated SOC

You need enterprise-grade protection without enterprise-grade cost or headcount. CyberCheck360 gives every user in your organisation a one-click sandbox from their existing inbox managed entirely by us.

FAQ

Frequently Asked Questions

Everything You Need to Know About Link & File Sandboxing Not here? Talk to us.

A sandbox is an isolated, disposable virtual environment that executes a file or visits a URL completely separately from your real computer, network, or data. Any malicious code, phishing page, or exploit fires inside the container. When the session ends, the container is destroyed nothing persists, and your device is never involved.

Antivirus and email filters work by matching known threats against databases of previously seen malware and malicious domains. If a threat is new a freshly registered phishing domain, a zero-day exploit, a clean-looking redirect chain reputation-based tools pass it through. CyberCheck360's sandbox detonates the content live and watches what it actually does, catching threats that no database has seen before.

No. The sandbox runs entirely in our cloud. You install the Gmail or Outlook add-on (a few clicks from the respective marketplaces), and from that point forward the sandbox is available inside your inbox. Nothing is installed on your device, and your device is never involved in the sandbox session.

3 sandbox sessions per day on the free tier, with no credit card required. Paid plans include unlimited sandbox sessions, file scanning inside the sandbox, full session recording, and admin dashboard access.

On paid plans, the sandbox supports PDFs, Microsoft Word and Excel documents (including macro-enabled formats), ZIP and RAR archives, and executable files. The free tier provides link sandboxing with screenshot verdicts.

Sandbox sessions typically start within 5 seconds. Once launched, you can safely browse and interact with the link or file for up to 5 minutes. After the session ends, you'll need to start a new sandbox session to continue.

The sandbox container is destroyed at the end of every session. No file content or page content persists beyond the session. Verdict metadata (threat score, domain signals) is retained in the admin dashboard for audit purposes on paid plans.

The sandbox is currently available through the Gmail and Outlook add-ons. Standalone URL and file sandbox access is also available — contact us for API access or enterprise integrations.

Complete Protection Across Every Surface

Sandboxing is one layer. Pair it with header analysis, link rewriting, and browser-level protection for complete coverage wherever you work.