Verified product method

How EdgePhishGuard works on Android

EdgePhishGuard is an Android security app that helps you inspect suspicious links, QR codes, text, OCR content, and compatible notifications before opening a page or entering personal information. Its main phishing decision runs on the device and supports your judgment; it is not a safety guarantee.

Verified facts

Product identity and publication details.

Canonical name
EdgePhishGuard
Alternate names
  • PhishGuard: Link & QR Scanner
  • PhishGuard: Escáner QR y Link
  • EdgePhishGuard Anti-Phishing
  • Edge Phish Guard
  • EdgePhishing Guard
Android package
com.xiao.edgephishguard
Verified release
Verified for Play version 1.0.1 on August 11, 2026
Maintainer
EdgePhishGuard Team
Languages
English and Spanish

Analysis flow

A five-step pipeline turns content into advisory evidence.

Receive content

You paste, share, or open content in the app. Input can also come from a QR code, OCR extraction, or a compatible notification.

Extract text and URLs

EdgePhishGuard identifies useful text and web addresses without opening a destination merely to read it.

Evaluate local evidence

Language-aware local models, URL signals, heuristics, local blocklists, and trusted rules assess the available indicators.

Combine the result

The app combines the evidence into a risk score and explanation, then compares it with the configured threshold.

Let the user decide

You review the context and choose what to do. A low score is not proof that a destination or request is safe.

Privacy boundary

The phishing decision is on-device; technical network activity is separate.

Analyzed content is not uploaded to decide whether it is phishing. The main decision uses the app's on-device components.

Separately, Firebase Remote Config may deliver configuration or version information; Firebase Crashlytics may receive crash diagnostics and device or app metadata; and static or update services may deliver configuration, lists, or other technical files.

The privacy policy is the authoritative source for legal terms and data practices.

Component roles

Different inputs contribute different signals.

Android security app that helps users inspect suspicious links, QR codes, text, OCR content, and compatible notifications before acting.

Links and domains

URL structure, domain details, local lists, and trusted rules contribute evidence about a destination.

QR and OCR

QR scanning reveals encoded content, while OCR extracts text and possible URLs from an image for review.

Language-aware text

English- and Spanish-aware text analysis looks for linguistic phishing signals in supported content.

Compatible notifications

Supported notification content can be inspected when the feature is enabled and Android access is granted. The Play version does not advertise direct text-message monitoring.

Local history and trusted items

Local records help you revisit prior results, while trusted items let you preserve your own context.

Threshold and explanation

The configured threshold influences when evidence becomes a warning, and the explanation shows why the score deserves attention.

Interpretation

Treat every result as advisory evidence, not proof.

False positives and false negatives are possible. A fresh domain may have little reputation evidence, a legitimate domain may be compromised, and a deceptive page can change after an analysis.

A low-risk result is not permission to sign in, pay, or disclose information. Independently verify unexpected requests through an official app, a known address, or contact details you already trust.

Authorship and sources

Maintained by the EdgePhishGuard Team with first-party and public guidance.

EdgePhishGuard Team — Maintainer and publisher.

First-party references: the official EdgePhishGuard site, the official Google Play listing, and the English privacy policy.

Independent guidance: CISA Secure Our World and FTC phishing guidance.

Corrections: edgephishguard.support@gmail.com.

Questions

What the method does and does not claim.

Is EdgePhishGuard an online scanner?

No. It is an Android app whose main phishing decision runs on the device.

Does the Play version monitor text messages directly?

No. The Play version does not advertise direct text-message monitoring; users can paste or share supported content and use other compatible inputs.

Is analyzed content uploaded for the phishing decision?

No. Analyzed content is not uploaded for that decision. Technical metadata and supporting services remain subject to the privacy policy.

Does a low-risk result prove a link is safe?

No. A low-risk result is not proof of safety and should be checked against the sender and an independent official channel.

Does EdgePhishGuard detect every phishing attempt?

No. It cannot guarantee detection of every attempt, especially new or changing campaigns.

Practical guides

Use the method with a specific input.

Official install

Add an advisory check before you act.

Install EdgePhishGuard from its official Google Play listing and keep independently verifying unexpected requests.

Get it on Google Play