How to Password Protect a Document Properly
Short answer
Use File → Info → Protect Document → Encrypt with Password in Word, Excel or PowerPoint. That applies AES encryption to the whole file and is genuinely strong — strong enough that a forgotten password means the document is gone. Avoid "read-only recommended", sheet protection and legacy ZIP passwords, none of which stop anyone who wants in.
On this page
Office offers about six things that sound like password protection. Two of them are real cryptography. The rest are conventions that any mildly motivated person ignores in under a minute, and the interface does very little to tell you which you have picked.
This matters because a document you believe is protected and is not is worse than one you know is open. People attach genuinely confidential files to emails on the strength of a setting that was never designed to stop anyone.
What actually protects, and what does not
| Option | Real protection? | What it actually does |
|---|---|---|
| Encrypt with Password (Office) | Yes | AES-encrypts the file contents |
| PDF open password (AES) | Yes | Encrypts the document, needs the password to read |
| Mark as Final | No | Sets a flag. One click to dismiss |
| Read-only recommended | No | A suggestion in a dialog box |
| Password to modify | No | File is unencrypted; the restriction is advisory |
| Sheet/workbook protection (Excel) | No | Stops accidents, removed in seconds |
| Restrict Editing (Word) | No | Same category |
| PDF permissions password | No | A flag asking viewers to behave |
| Legacy ZIP encryption | Effectively no | Broken by design, tools are freely available |
| ZIP with AES-256 (7-Zip) | Yes | Strong, if the password is |
The pattern is consistent. If the file’s bytes are encrypted, it is protection. If the file is readable and merely carries a flag asking software to restrict what you do, it is not — and ignoring that flag requires no skill at all.
The one you want: Encrypt with Password
In Word, Excel or PowerPoint:
- File → Info.
- Protect Document (or Protect Workbook / Protect Presentation).
- Encrypt with Password.
- Enter the password twice, and save the file.
Modern Office uses AES encryption with a key derived from your password. The document’s contents are genuinely unreadable without it. There is no recovery mechanism, no Microsoft support route, and no back door.
That last point is the whole value proposition, and it is also the risk. If you forget this password the document is permanently gone. Put it in a password manager as you set it.
On macOS the path is Review → Protect → Protect Document, which offers the same encryption with a different label.
Old files are a genuine exception
Office 2003 and earlier used much weaker encryption, and files in those formats
are recoverable with tools anyone can download. If you have a .doc or .xls
that has been carrying a password since the 2000s, that password is not
protecting it.
Open it, save it as .docx or .xlsx, and apply encryption again. The modern
format is where the strong encryption lives.
What makes the password strong
AES is not the weak link; the password is. A short or guessable password is tested against the file at enormous speed by software designed for exactly that.
A passphrase of four or five unrelated words is both stronger and easier to
remember than a short string of symbols. correct-battery-plinth-marrow beats
P@ssw0rd! comfortably, and you can actually type it.
Never reuse a password you use for an account. The failure modes are different: an account password is protected by a service that can lock out attackers after a few attempts, whilst a document password can be attacked offline, forever, at whatever speed the attacker’s hardware allows.
The ones that do not protect anything
Worth naming explicitly, because the interface presents them alongside real encryption.
Mark as Final. Sets a read-only flag and shows a banner. The banner has an Edit Anyway button. That is the entire mechanism.
Read-only recommended and Password to modify, both under File → Save As → Tools → General Options. The file is not encrypted. Anyone can open it read-only without a password, and the content is fully readable — which for confidential material is the only thing that matters. The modify password is also stored in a way that is straightforwardly removed.
Excel sheet and workbook protection. Genuinely useful for stopping a
colleague from overwriting a formula by accident, which is what it is for. It
is not security. The protection is a flag inside the .xlsx package, and
removing it is a matter of editing the XML or running one of the many tools
built for the purpose. Treat it as a guard rail.
Restrict Editing in Word. Same category. Fine for controlling a review process, useless against anyone who does not want to cooperate.
PDFs
Adobe’s dialog offers two password types and the distinction is the same one.
- Document Open password — required to open the file. On a modern PDF using AES this is real encryption and genuinely strong.
- Permissions password — allows opening but restricts printing, copying or editing. This is a flag. Compliant readers honour it; plenty of software does not, and removal tools are a search away.
If you want a PDF that only the intended recipient can read, set an open password. The permissions password protects against nothing and is routinely mistaken for protection because it sits in the same dialog with similar wording.
Free PDF tools vary in which they offer, and some only offer permissions. Check what you have actually applied by opening the file in a different PDF reader and seeing whether it asks for anything.
Archives
7-Zip and WinRAR both offer AES-256, which is strong. The default in some tools, and in Windows’ built-in ZIP handling, is the legacy ZipCrypto method, which is not — it has known weaknesses and recovery tools for it are freely available.
In 7-Zip, when creating an archive, set Encryption method to AES-256 and tick Encrypt file names. Without that tick, anyone can see the full list of filenames inside the archive without the password, which frequently gives away more than you would like.
Note that encrypting an archive to send by email is the pattern most associated with malware delivery, so your recipient’s mail system may reject it outright.
How you send it matters more than you think
Strong encryption applied correctly and then undone by the delivery is the usual real-world failure.
- Never send the password in the same email, or in a follow-up to the same address. Anyone with access to that mailbox has both halves.
- Use a different channel. Phone, text message, a messaging app. The point is that compromising one does not give you the other.
- Consider whether a share link is better. A OneDrive or Google Drive link scoped to specific people, with an expiry date, is both easier and more revocable than an encrypted attachment. You can withdraw access later, which you cannot do once a file has been sent.
- Know what you are protecting against. Encryption protects a file in transit and at rest. It does nothing once the recipient has opened it and saved an unprotected copy.
What to expect, honestly
Encrypt with Password on a modern Office file, with a strong passphrase, is genuinely good protection. It is not a token measure, and the absence of any recovery route is the proof — Microsoft would provide one if they could.
Everything else in the Protect menu is a usability feature wearing security clothing. That is not a criticism of the features, which are useful for what they do. It is a criticism of a menu that puts AES encryption and a dismissible banner under the same heading.
The one limitation worth stating plainly: a password on a file does not control what happens after it is opened. The recipient can save an unencrypted copy, screenshot it, or forward the whole thing with the password attached. If that is the risk you care about, no document password solves it, and the honest answer is to reconsider whether the file should be sent at all.