Protect your applications from file-borne threats with MetaDefender Cloud Prevention API. Detect malware in real time with 30+ commercial antivirus engines and Content Disarm and Reconstruction (CDR). Integrate easily via RESTful API to block malicious files, enforce compliance, and safeguard sensitive data. Trusted by SMBs and enterprises, including Fortune 500 companies, for mission-critical file security with 99.9% uptime SLA. Start securing your files today.
MetaDefender Cloud Prevention API provides enterprise-grade protection against malware, ransomware, and malicious file content for your applications. Multi-scanning with 30+ commercial antivirus engines delivers up to 40% better detection rates than single-engine solutions. At the same time, award-winning Content Disarm and Reconstruction (CDR) removes threats before they reach your users or infrastructure.
Industry-Leading Zero-Day Protection: Our Deep CDR technology achieved a perfect 100% protection and accuracy score from SE Labs, the only solution to earn this recognition. This "trust no file" approach deconstructs every file and rebuilds it with only safe components, preserving usability while eliminating hidden threats that traditional scanning misses.
Developer-Friendly Integration: Integrate MetaDefender Cloud via a RESTful API for real-time scanning and sanitization of uploaded files, without slowing workflows. Comprehensive documentation and sample code enable rapid deployment across a wide range of file types and sizes, delivering scalable and reliable protection for both SMBs and large enterprises.
Enterprise-Proven Scale: Process millions of files daily with 99.9% uptime SLA. Enterprises of all sizes, including Fortune 500 companies, trust MetaDefender Cloud to secure critical operations. OPSWAT customer EPAM Systems strengthened remote access and file security for 70,000+ devices, while FastTrack Software prevented malicious file uploads, ensuring safe and compliant software distribution.
Note: This is a contract listing for use with a Private Offer only and cannot be provisioned without acceptance of a Private Offer. Prices reflected in the Pricing Information section of this listing apply only to Public Offers. Please contact our Sales team to get a customized quote for a Private Offer. To inquire about a Private Offer, please contact us at apn-sales@opswat.com
Note: Private offer pricing is based on a per-tier, per # of API calls basis.
Highlights
Multi-Scanning and CDR: Detect and remove malware in real time with 30+ commercial anti-virus engines and Content Disarm and Reconstruction (CDR). Proactively stop advanced threats before they reach users or infrastructure.
Seamless RESTful API Integration: Easily integrate scalable file scanning into applications on AWS. Support for a wide range of file types and sizes ensures reliable protection without slowing workflows.
Enterprise-Proven Security: Trusted by global enterprises to secure file uploads, protect sensitive data, enforce compliance, and maintain operational resilience across AWS deployments.
Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
MetaDefender Cloud Prevention API - Enterprise. 30,000 requests/month. Annual subscription. CDR and AV multiscanning are tracked as separate API requests (using both technologies on the same file will consume 2 API requests from the allowance).
This listing offers one pricing option: the Enterprise tier of the MetaDefender Cloud Prevention API. You pay through an annual subscription that includes 30,000 API requests per month. Pricing is tied to request volume, not the number of users or files alone. Each scan technology counts separately. If you run both content disarm and reconstruction (CDR) and antivirus multiscanning on the same file, you use two requests from your monthly allowance. This structure means your usage depends on which detection technologies you apply to each file.
Top-of-mind questions for buyers
What counts as one API request for billing purposes?
One API request is a single call to run one detection technology on one file. If you run both content disarm and reconstruction and antivirus multiscanning on the same file, that counts as two requests. Each technology applied to a file draws separately from your 30,000 monthly allowance.
What happens if I exceed my 30,000 monthly requests?
The Enterprise tier includes a buffer allowance that lets you go over the monthly count without an extra fee, up to a set percentage. Beyond that buffer, contact the vendor for details, since the marketplace listing does not state the charge for usage past the buffer.
Which detection technologies draw from my request allowance?
Multiscanning with anti-malware engines and content disarm and reconstruction each count as a request. Applying both to one file uses two requests. Proactive data loss prevention, archive extraction, and file type verification are part of the same processing workflow, so your allowance depends on which technologies you enable per file.
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
MetaDefender Core detects over 99% of known and unknown malware and recursively sanitizes 200+ file types, helping organizations secure every file across security workflows and enforce zero trust at the file level.
MetaDefender Core detects over 99% of known and unknown malware and recursively sanitizes 200+ file types, helping organizations secure every file across security workflows and enforce zero trust at the file level.
MetaDefender Core detects over 99% of known and unknown malware and recursively sanitizes 200+ file types, helping organizations secure every file across security workflows and enforce zero trust at the file level.
MetaDefender Core detects over 99% of known and unknown malware and recursively sanitizes 200+ file types, helping organizations secure every file across security workflows and enforce zero trust at the file level.
Advanced file inspection has reduced manual investigations and has improved protection from threats
Reviewed on Aug 16, 2026
Review from a verified AWS customer
What is our primary use case?
MetaDefender inspects files before they can reach our organization or reach our computers, especially when dealing with attachments, downloads, and files coming from external sources. A typical example is when we received a Word document from an external sender that looked like a normal business file, but MetaDefender was able to mitigate and mark it as suspicious, which could have harmed our internal environment systems. MetaDefender protects us from harmful files, harmful downloads, and attachments.
Regarding the incident with the award documents, we were able to sanitize it because we were very curious to know what was inside. We used its Deep CDR, which removed hidden or potentially dangerous content from it. After that, we generated a safer version and viewed it, but it was suspicious.
What is most valuable?
The best features of MetaDefender are multi-scanning because our files are checked by more than 20 antivirus engines, which gives us more confidence instead of relying on a single antivirus product. We also really appreciate the adaptive sandbox, where a file that looks suspicious can be analyzed in an isolated environment sandbox before opening it on our computers. Another feature is Deep CDR, which is very strong for us because if a document is needed but has potentially dangerous content, we can sanitize it and generate a safer version. Threat intelligence is also one of the best features because it is helpful in looking at file reputation, vulnerabilities, and other indicators to understand why something may be risky.
Regarding how the multi-scanning feature has changed my workflow and confidence in file security, multi-scanning means one file is scanned by more than 20 antivirus engines. Each engine gives a result, and this gives me confidence that a file was not a false positive or it is a false negative. It is very useful, and in case one engine misses something, another may catch it.
MetaDefender has positively impacted my organization by greatly improving our security posture and how we handle files. The ability to catch suspicious files before they penetrate our systems has been excellent. Its multi-scanning feature provides us with a wider detection layer and has reduced the amount of time we spend investigating suspicious files. A file that previously required checking through multiple security tools can now simply be submitted to MetaDefender, and we receive review and detection results in just a few minutes, 20 at maximum.
We have seen more than 50% less manual investigation time for files that require multiple checks, and we have also saved about 20 to 30 minutes per suspicious file during investigation. Additionally, we have spent less time manually comparing files from different antivirus engines since MetaDefender has multiple engines.
My impression of the detection rates provided by MetaDefender's multi-scanning has been good, as this feature checks a single file with more than 20 antivirus engines, which gives me confidence that if all 20 virus engines detect that this file is not safe, it is really not safe. If one engine misses something, another one may catch it.
We use the adaptive sandbox analysis, and the impact is significant when a file looks suspicious but the scan results are not clear. In such cases, instead of opening the file directly on our computers, we can analyze the behavior of the file using the sandbox.
I would assess the effectiveness of Deep CDR in safely reconstructing files without signatures as high. It can reconstruct a document and, if needed, may contain some dangerous content, but it sanitizes it and generates a safer version that can be viewed. Importantly, it supports more than 180 file types, which makes it more useful.
What needs improvement?
I would like to see more straightforward explanations of what happens during execution. Instead of showing us technical indicators, I would like to see a summary that anyone, even those who are not technical personnel, can understand regarding why a file is suspicious. I would also like to see improved false positive handling, especially when only one or two engines flag a file while others do not. Additionally, I would like more context explaining why those engines flagged it and whether similar files have previously been confirmed as safe by other engines.
For how long have I used the solution?
I have been using MetaDefender for 16 months, which is one year and four months.
What do I think about the stability of the solution?
MetaDefender is stable; we have not faced any downtime for 16 months since we started using it.
What do I think about the scalability of the solution?
MetaDefender is scalable and excellent at scaling.
How are customer service and support?
Customer support is excellent and knowledgeable, providing prompt answers and available 24/7.
What was our ROI?
We have seen a return on investment mainly coming from the time saved. For example, checking suspicious files used to take around 45 minutes to 1 hour because we had to run different checks and compare results. However, after using MetaDefender, the initial scan across multiple engines can take roughly 10 minutes, saving us about 40 minutes per investigation.
Which other solutions did I evaluate?
We evaluated other options.
What other advice do I have?
I don't have anything else to add about my main use case or any other scenarios where MetaDefender has helped my team.
I would not like to add anything else about the features.
I am not aware of the expanded file type and archive coverage feature. However, if you are referencing the use of compressed files like ZIP, we must insert them, especially when several documents are sent together. Instead of extracting them manually one by one and checking, we can submit the archive to MetaDefender and let it inspect the contents inside the ZIP file.
I have mixed feelings about the enhanced reporting and audit visibility features because they sometimes provide basic reports. However, the good thing is that they show what happened to a file during the security review, which I find useful because we can go back and see the scan results, which detection engines flagged the file, the threat reputation, and the final verdict instead of relying on someone's notes. For an audit, it provides us with a clear audit trail; if an audit asks why a suspicious attachment was blocked, we can show that it was scanned, what security checks we found, and what actions we took.
I would not like to add more about the needed improvements.
My experience with pricing for MetaDefender is that it is a little bit expensive compared to platforms like Splunk. It is more of an enterprise security purchase than a simple subscription. It has a free version that was useful for us to test and scan its capability, but when we started adding more scan volumes and API access, we looked at the commercial licensing, which is a bit expensive.
My advice for others looking into using MetaDefender is that for high-risk files, do not open them directly on your computers. They should automatically go through the adaptive sandbox. I would also recommend MetaDefender as an additional security layer because it will improve your security posture. My overall rating for MetaDefender is 9 out of 10.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Merit Ronald
File inspection has strengthened banking security and reduces manual review effort
Reviewed on Aug 07, 2026
Review provided by PeerSpot
What is our primary use case?
MetaDefender is used to inspect every file before it enters our environment. Whenever customers upload documents through online banking, send email attachments, or when we are exchanging files, MetaDefender automatically scans those files before they are delivered to our users or into our internal systems. It uses multi-scanning to check each file with multiple antivirus engines at the same time. If a threat is detected, the file is blocked or quarantined according to our security policy.
For documents such as Word, Excel, and PDF files, we use its deep CDR, content disarm and reconstruction, to remove risky content such as macros, vendor scripts, or active projects, creating a cleaner version that employees can safely open. We also use its threat intelligence to compare files against known malware or ransomware. This is advantageous because it helps us identify malicious files quickly before they spread through our systems.
Another important use is vulnerability assessment, where the platform checks our endpoints and servers for outdated software, missing security patches, and known vulnerabilities, providing us with a report. This is beneficial in helping us reduce risks before they can be exploited.
What is most valuable?
File analysis and reporting are very important to us because they provide detailed information about each candidate file. The results include threat classification and associated recommendations. Threat intelligence helps us identify files connected to known malware and other threats, improving our detection ability. The multi-scanning feature is beneficial because it scans files using multiple security engines, improving detection and giving us more confidence regarding file safety.
MetaDefender has strengthened file security, which is crucial in banking. It reduces the risk of malware by ensuring every file is scanned before reaching users, giving us more confidence in file safety. Automated file inspection improves efficiency and reduces time spent on manual inspections. It has also helped reduce malware-related incidents, improving overall security and reducing operational risks.
What needs improvement?
I would appreciate more AI-driven recommendations during investigations. Suggestions for the most appropriate actions based on scanner results would help us respond quickly. Simplifying policy configuration would help us run the platform more smoothly and reduce deployment and management time.
For how long have I used the solution?
I have been using MetaDefender for the last eighteen months.
What other advice do I have?
I have been working in my current field for five years.
MetaDefender is mostly automated in the background within our workflow. We use various features such as DeepCDR and threat intelligence which help us remove potential elements such as macro scripts automatically. This automation is essential in everyday operations.
MetaDefender saves us significant time on manual inspections. Since we started using it, we no longer spend time manually checking files, reducing time by approximately seventy percent.
The user interface is complex initially, scanning large or complex files can take longer than expected, false positives occasionally require manual review, and the pricing is somewhat high. MetaDefender has strong AI capabilities combining AI with multiple advanced engines. The threat intelligence and AI file analysis are excellent, and I trust the platform because every file is inspected before reaching users. Features such as multi-scanning and DeepCDR have helped significantly in avoiding malicious files, and I trust its security framework overall. I rate MetaDefender an eight overall.
Rajkumar Gupta
Adaptive policies have reduced downtime and simplified secure protection for cloud-based VMs
Reviewed on Jul 22, 2026
Review from a verified AWS customer
What is our primary use case?
My main use case for MetaDefender is on my devices. I have a specific example of how I use MetaDefender on my devices in that it has been installed by the administrator on my VMs which are being listed on my public cloud.
I don't have anything specific to add about how I use MetaDefender in my setup, as it is protecting my whole VMs, so not any particular file.
What is most valuable?
The best features MetaDefender offers, in my opinion, are that it adapts the policies on the go, and that is the best feature.
When I say it adapts policies on the go, it has the ability that if there is a new policy or the new configuration that has come up without any downtime, it just adjusts it and reiterates to all of the users and all of the devices. MetaDefender has positively impacted my organization as it has reduced time for the users.
MetaDefender reduces time for users in their working, as it does not occupy the RAM usage of their devices plus it does not take time for the downtime or shutting down or the rebooting of the devices.
What needs improvement?
I have not seen any areas where I can suggest improvements for MetaDefender, so probably it is good enough. I would rate it an eight because its interface can be improved and it can improve their integrations as well, so there is room for improvement.
For how long have I used the solution?
I have been working in my current field for four and a half years. I have been using MetaDefender for the past six months.
What do I think about the stability of the solution?
MetaDefender is stable.
What do I think about the scalability of the solution?
MetaDefender's scalability is pretty much scalable.
How are customer service and support?
The customer support is good.
Which solution did I use previously and why did I switch?
I previously used a different solution, Palo Alto, which I switched from because it was very expensive.
What was our ROI?
I have seen a return on investment as fewer employees are needed in terms of implementation.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing is that it is good and at par with other competitors.
Which other solutions did I evaluate?
Before choosing MetaDefender, I evaluated other options, including Palo Alto and Check Point, as many were evaluated.
What other advice do I have?
My impression of the detection rates provided by MetaScan Multi-scanning is that it is good and pretty accurate. I would assess the effectiveness of Deep CDR in reconstructing files safely and without signatures as they are pretty much effective, and it is really useful for the administrator.
My thoughts on the file-based vulnerability assessment feature in identifying vulnerabilities before deployment are that it is good, and it is a very good feature. I use adaptive sandbox analysis, and its impact on analyzing suspicious files is very great because it detects pretty much early.
I am using the enhanced reporting and audit visibility features, and they have helped meet our audit requirements as it has given us a great requirement study and plus it has also helped in ISO audit requirement as well. I would assess the effectiveness of the solution in blocking or sanitizing content based on policy as good and pretty much effective.
My advice to others looking into using MetaDefender is that if you are looking ahead at a solution which can be implemented quickly and at a lesser cost, go ahead with it. I would rate this product an eight overall.
DineshKumar31
Security workflows have improved as it identifies threats and streamlines vulnerability patching
Reviewed on Jul 06, 2026
Review provided by PeerSpot
What is our primary use case?
The major use cases of MetaDefender in my work environment involve preventing malware updates, data breaches, and compliance violations through scanning files for malware, vulnerabilities, and sensitive data at the network perimeter.
What is most valuable?
The best features of MetaDefender include its ability to detect malware and vulnerabilities, which I also use at server levels, including production and testing servers, helping me identify and address vulnerabilities by applying patch updates.
When sanitizing files based on policies, MetaDefender processes and sanitizes files to remove hidden content, including embedded objects and scripts while preserving the visible content.
I use MetaDefender Archive Extractor, which supports over 30 archive file types, improving detection and preventing archive bombs, allowing administrators to perform archive handling once for each file type.
What needs improvement?
I would like to see improvements in the tool's automation capabilities. It would be beneficial if it could automatically create tickets and notify responsible teams about any identified vulnerabilities rather than relying on a manual process.
I want to see enhancements allowing for automatic ticket creation using APIs to streamline the workflow and assign tickets to respective teams.
For how long have I used the solution?
I have been using MetaDefender for the last two years on my official laptop.
What do I think about the stability of the solution?
I do not have any stability issues with MetaDefender.
What do I think about the scalability of the solution?
MetaDefender is scalable; it allows for automation in scaling resources as needed during peak times.
How are customer service and support?
I would rate technical support as a nine out of ten.
Which solution did I use previously and why did I switch?
I have evaluated other options available in the market, such as Microsoft and McAfee, but found MetaDefender to be distinct.
I decided to go with MetaDefender due to its architectural compatibility with the client's budget requirements, as its scanning and vulnerability detection capabilities are better than other tools.
How was the initial setup?
For me, onboarding MetaDefender was not too difficult, being balanced between straightforward and complex.
What was our ROI?
I have seen measurable benefits, as MetaDefender saves time, preventing the need for manual processes associated with other tools.
What other advice do I have?
The detection rates from MetaScan multi-scanning are managed mainly by other teams in alignment with our organization policy, where they can achieve detection rates of 81-87% with four engines or 95% with sixteen engines, and the comparison with Microsoft Defender often yields similar results.
I do not have an opinion on the effectiveness of Deep CDR in file reconstruction.
We have a process in place for identifying vulnerabilities before deployment where team members raise tickets on the ServiceNow portal for the respective teams to address.
I do not use Adaptive Sandbox analysis, as that is managed by another team.
I do not notice improvements in workflow automation as recent enhancements are managed by other teams; I am focused on using the tool to identify vulnerabilities.
I do not have an assessment of how multi-scanning and content disarm and reconstruction affect our data security operations.
I recommend implementing MetaDefender for its impressive features that maintain the health of the system. My overall review rating for MetaDefender is nine out of ten.
Alex Nigai
Content sanitization has improved file security and supports flexible policy-based workflows
Reviewed on Jun 05, 2026
Review provided by PeerSpot
What is our primary use case?
I am an integrator for MetaDefender. My usual use cases for MetaDefender involve connecting the products into the environment of the customer, including MetaDefender Core, ICAPs, endpoints, and all the related components.
What is most valuable?
I find the CDR, specifically the CDR ability, the most valuable aspect of MetaDefender so far. I appreciate the CDR because I can show customers how it works and demonstrate the effectiveness of this feature, and it is very helpful.
I did not pay much attention to the expanded file type and archive coverage feature initially. Could you explain what you mean by file type?
The enhanced reporting and audit visibility features are acceptable. Some customers of mine had problems with the health checks and monitoring of the logs, but it has improved, so that is very positive.
What needs improvement?
Most of the time, in our experience at Danet Communications, we work with government offices, and they need the CDR. However, because CDR is affecting files such as MSI and EXE files, they are always creating new passes of scanning. This is acceptable, but I would like OPSWAT to improve that, perhaps to decrease the impact when the process becomes slower. I am not sure if that is something that is possible.
There is something about MetaDefender that I think could be improved or enhanced, specifically regarding a feature request. Something that annoyed me was the less noticeable improvement from version 5.8.0 to 5.9.0 of MetaDefender Core. Now you have to search in the block if you want to create a blocklist, which is somewhat annoying when searching for your file. I may have just been accustomed to the old version.
From my experience, there are perhaps some improvements in workflow automation with the recent enhancements to policy orchestration and engine parallelization. However, there are many settings in the workflow that you cannot quickly understand what they are doing. Adding a question mark around them that provides a bit more information about that option would be beneficial.
For how long have I used the solution?
I have been working with MetaDefender for approximately six to seven months.
What do I think about the stability of the solution?
Regarding the reliability and stability level of MetaDefender, there are minor problems here and there, but nothing specific. Every time when help is needed, we receive the assistance.
When I say there are some troubles here and there, I mean there are different and unusual bugs or complications and things that cannot be connected to each other even though all the network configuration is acceptable.
What do I think about the scalability of the solution?
The scalability level of MetaDefender is good. It is learning and increasing with every patch, and that is acceptable.
How are customer service and support?
When I need help, I reach out first by trying to find information in the documentation. If I cannot find that, I go to the Ozi AI. If I see that the AI cannot help me, then I ask for an agent.
When it comes to my communication with agents, I find they are responsive and professional. A lot of the time, they are busy, so they cannot participate in calls or Teams meetings. However, if we schedule a meeting, they will attend, especially if it is very important.
How was the initial setup?
I usually participate in the initial setup, including the installation of MetaDefender. Most of the time, I send requirements for the server, and the customer has to create a server that meets what I have requested. After the customer has made the prerequisites, I can work with them on installing and connecting the products into their environment.
The initial setup usually looks like this for me: first, I need to send the prerequisites for every product, and I reference OPSWAT documentation to see what is needed, such as Visual Studio or Desknet. Then I send downloads of the products.
I usually find the initial setup has small challenges such as connectivity issues, but these are not on OPSWAT's side. They are more related to the customer's environment.
What other advice do I have?
I assess the effectiveness of MetaDefender in blocking or sanitizing content based on policy as very good. It contains a lot of file types, and most of the file types are included, so that is acceptable.
My impression of the detection rate provided by MetaScan multi-scanning is positive. I work mostly with the core, and my clients have not encountered false positives or those kinds of issues.
I evaluate the effectiveness of Deep CDR in reconstructing files safely and without signatures as good. I measure if it is effective by processing a lot of files, verifying that the content I want to be removed is being removed, and confirming that the hash is different.
To be honest, the file-based vulnerability assessment feature is more of a toggle option that we always enable, but we have not thoroughly tested it. I do see the effectiveness of this feature.
I think the adaptive sandbox analysis of MetaDefender works well. We do not have many customers using it, but from the customers who are using it, it functions effectively. Some of my customers describe its impact on analyzing suspicious files as adding additional layers of security. The reviews were positive, and while it may slow the scanning time slightly, that is understandable.