Is this Excel file safe to open?
This tool tells you whether macros and embedded code are present — drop your file in below and get the answer, no reading required. Don't click Enable Content or unblock anything until you know what's inside.
What to do before you open it
Don't click Enable Content or unblock anything yet. Upload the file to the box at the top of this page first. The tool reads the file's internal structure — the same way a ZIP archive can be inspected without running the programs inside it — and tells you:
- Whether the file contains any VBA (Visual Basic for Applications) macros at all
- What kind of macros are present (auto-run vs. button-triggered)
- Whether there are any external links or connections embedded in the file
None of the code in the file runs during this check. Nothing is executed. The tool just looks at the structure and reports what it finds — so you can decide with the facts in hand.
What the results mean
No macros found: The file is a standard spreadsheet. The risk profile is low. You can open it normally — though if something else felt suspicious about how you received it, it's still worth being cautious about what the file is asking you to do once it's open.
Macros found: The file contains code that will run if you allow it. That's not automatically bad — many legitimate business tools are macro-enabled. But now you know. You can ask the sender to confirm what the macros do before you enable them, or you can open the file in Protected View (which keeps macros blocked) just to look at the data.
Why Excel files can be risky
A spreadsheet with only data — numbers, text, formulas — is about as dangerous as a Word document full of sentences. But Excel files can also contain macros: small programs written in a language called VBA (Visual Basic for Applications) that run inside Excel and can interact with your computer. Legitimate macros are used all the time for automation, calculations, and custom tools. But the same capability is also how attackers deliver malware through email.
The scenarios that should make you pause: an invoice you weren't expecting, a spreadsheet from a recruiter for a job you didn't apply to, a "payment confirmation" from a company you don't recognize, or a file from a sender whose email address looks slightly off. These are common delivery methods for malicious macros.
What this tool does not do
This tool tells you whether macros and embedded code are present — it doesn't tell you whether a specific macro is malicious. We report what's there; we don't execute it or run virus signatures against it. For a deeper analysis, a dedicated antivirus tool that can scan Office files is the right next step. But knowing whether macros exist at all is the first question, and you can answer it with the box at the top of this page without opening the file.