> For the complete documentation index, see [llms.txt](https://docs.couchdrop.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.couchdrop.io/security-and-governance/malware-scanning.md).

# Malware Scanning

Learn about Malware Scanning in Couchdrop

## Introduction

Couchdrop can scan files for malware before they are uploaded to their destination storage.

Malware scanning is an additional paid add-on and is configured at the folder level. This lets you enable scanning only for locations where files need to be checked rather than applying it across your entire Couchdrop account.

If Malware Scanning is not enabled for your account, contact [**sales@couchdrop.io**](mailto:sales@couchdrop.io).

## Enabling Malware Scanning

Once Malware Scanning has been enabled for your account, you can enable it on individual folders.

Scanning must be enabled on a folder before files uploaded to that location will be scanned.

Malware Scanning can be used with any storage platform that can be connected to Couchdrop.

## How Malware Scanning works

Couchdrop uses **ClamAV** to scan files for malware.

Files larger than **1 GB** cannot be scanned.

Scanning behavior is managed by Couchdrop and cannot be customized by administrators.

## Malware Scanning events

If a malware scan fails, Couchdrop records an event in the reporting section of the [Admin Portal](/administration/admin-panel-and-user-mode.md).

These events appear as:

`malware_scan_failed`

Use these events when reviewing malware scanning activity or investigating failed scans.

## Frequently Asked Questions

<details>

<summary>Why should I use Couchdrop Malware Scanning?</summary>

Malware Scanning provides an additional layer of protection when receiving files from external parties.

It can be particularly useful when files are entering internal storage or automated file pipelines and you want them scanned before they reach their destination.

</details>

<details>

<summary>How do I enable Malware Scanning?</summary>

Malware Scanning is an additional paid add-on. If it is not enabled for your account, contact [**sales@couchdrop.io**](mailto:sales@couchdrop.io).

Once enabled, Malware Scanning can be configured on individual folders.

</details>

<details>

<summary>What malware scanning engine does Couchdrop use?</summary>

Couchdrop uses [ClamAV](https://www.clamav.net/) for malware scanning.

</details>

<details>

<summary>Is there a file size limit?</summary>

Yes. Malware Scanning is limited to files that are **1 GB or smaller**.

</details>

<details>

<summary>Can administrators modify the scanning behavior?</summary>

No. Malware scanning behavior cannot be customized by administrators.

</details>

<details>

<summary>Where can I find Malware Scanning events?</summary>

Malware scanning failures appear in the reporting section of the Admin Portal as `malware_scan_failed` events.

</details>

<details>

<summary>Which storage platforms support Malware Scanning?</summary>

Malware Scanning can be enabled for folders backed by any storage platform that can be connected to Couchdrop.

After connecting the storage platform, enable Malware Scanning on the folder where scanning is required.

</details>

<br>
