GiliSoft File Lock Pro

Lock selected files on Windows without packing them into an archive or encrypting the entire drive.

  • Password lock files, folders, and drives
  • Hide private items from normal browsing
  • Protect local, USB, external, and shared storage
GiliSoft File Lock Pro protects private files on Windows
Windows 11/10 File Locking Guide

How to Lock Files on Windows 11/10

"Lock a file" can mean several different things: require a password before opening it, deny another Windows account, encrypt its contents, prevent changes, or protect the entire drive that stores it. This guide separates those jobs so you can choose the right method instead of applying the wrong kind of protection.

Individual filesPassword accessWindows permissionsEFS and BitLocker
Quick answer

Use GiliSoft File Lock Pro when you want one password-oriented workflow for mixed file types on local, USB, external, or shared storage. Use NTFS permissions when access should follow Windows accounts, EFS when a supported Windows edition should encrypt selected files for the current account, and BitLocker when the complete drive needs protection.

First Decide What "Lock" Should Do

No single Windows setting performs every kind of file protection. Before changing permissions or encryption, identify the result you actually need.

Require a password

The file stays where it is but should not open through its normal application until the correct password is supplied.

Separate Windows users

Each person has an account, and only selected accounts should read or modify the file.

Encrypt file contents

The data should remain unreadable if someone bypasses normal File Explorer access.

Protect a lost drive

The main risk is theft or removal of the PC, external drive, or USB storage rather than one selected file.

Compare Five Practical File-Locking Methods

MethodProtection targetHow access worksBest fit
File Lock Pro RecommendedSelected files, folders, and drivesFile Lock Pro master password and local rulesMixed file types and direct day-to-day locking
NTFS permissionsFiles and folders on NTFSWindows accounts and access-control listsShared PCs with separate user accounts
EFSSelected files and foldersWindows account certificatePer-user encryption on supported Windows editions
Document password or encrypted archiveSupported Office files or a packaged copyFile or archive passwordSending a protected document or bundle
BitLockerEntire supported volumeDevice authentication or recovery keyLost, stolen, or removed drives
1

Lock Selected Files with File Lock Pro

Choose this method when ordinary files of different types should remain in their current folders but should not open normally without the File Lock Pro password.

Open GiliSoft File Lock Pro and enter the master password.

Select Local Disk > Locking File. For removable storage, use the corresponding External Disk section.

Select Lock Files/Folders, add the target file, folder, or drive, and apply the lock.

Test the protected item from Windows File Explorer. Also test from the standard user account that needs to be restricted.

Lock selected files and folders in GiliSoft File Lock Pro
The Locking File workspace accepts selected files, folders, and drives. Select the screenshot to view it full size.
Choose the correct File Lock Pro mode: use Locking File for password-controlled opening, Hiding File when the item should disappear from normal browsing, and Protecting File when it should remain visible but unwanted reading, writing, renaming, moving, or deletion should be restricted.
2

Restrict a File with Windows NTFS Permissions

Windows permissions are useful when each person signs in with a separate account. They are account-based access control, not a separate password attached to the file.

Right-click the file, choose Properties, then open the Security tab.

Select Advanced and review the current owner, inherited entries, and the users or groups that already have access.

Add or edit the intended Windows account, then assign only the read, modify, or full-control rights it actually needs.

Test from that account. Remember that administrators may be able to take ownership or change the access-control list.

Microsoft documents files as securable Windows objects whose access is evaluated from the file security descriptor and the signed-in user's access token. Permissions therefore work best in an account-managed environment, especially on NTFS storage.

3

Encrypt a File with Windows EFS

EFS encrypts selected files or folders for the current Windows user account. It does not normally display a separate file-password prompt when that user is already signed in.

Right-click the file and select Properties.

On the General tab, select Advanced.

Enable Encrypt contents to secure data, select OK, then apply the change.

Back up the EFS certificate and private key to a separate safe location before relying on the encrypted file.

Encrypt contents to secure data option in Windows file properties
EFS is configured from the Advanced Attributes dialog on supported Windows editions and locations.
Microsoft states that built-in file encryption is not available in Windows Home. If the checkbox is unavailable, confirm the Windows edition, storage format, file location, and organization policy before changing services or registry values.
4

Use a Document Password or Encrypted Archive

This is practical when the protected file will be sent to someone else or when the application already supports file-level passwords.

For Word, Excel, or PowerPoint files

In the desktop Office application, open File > Info, choose the relevant Protect command, then select Encrypt with Password. Save the document and reopen it to verify the password. Microsoft warns that forgotten file passwords may not be recoverable, so store the password securely.

For other file types

Create a password-protected archive with a trusted archive utility. This produces a new protected package rather than locking the original file in place. Verify the archive, then decide how the unprotected source copy should be handled.

Do not confuse read-only with password protection. Read-only and "Mark as Final" can reduce accidental editing, but an authorized user can often remove those settings. They are not substitutes for encryption or access control.
5

Protect the Whole Drive with BitLocker

Use BitLocker when the main risk is loss, theft, or physical removal of the complete drive. It protects an entire supported volume rather than one selected file.

Microsoft describes BitLocker as volume encryption designed to reduce unauthorized access to data on lost, stolen, or decommissioned devices. That makes it a strong device-level layer, but it does not replace a file-specific password once the volume is unlocked for the signed-in user.

Turn on BitLocker for a Windows drive
BitLocker is enabled for a supported drive or volume, not for one individual file.

Common File-Locking Mistakes

Relying only on Hidden or Read-only

Both attributes can be useful for organization or accident prevention, but neither provides strong password-based access control.

Leaving an unprotected original

An encrypted archive does little if the original file remains accessible in Downloads, Recent Files, backups, or a shared folder.

Losing recovery material

Back up EFS certificates and BitLocker recovery keys separately from the protected data before making the only copy inaccessible.

Testing only as administrator

Permissions and policy results vary by account. Verify the real experience from the standard account that will use the PC.

Which Method Should You Choose?

  • One or several mixed files on a shared Windows PC: use File Lock Pro.
  • Different people have separate Windows accounts: use carefully managed NTFS permissions.
  • Selected files need account-bound encryption: use EFS on a supported edition and preserve the certificate.
  • A Word, Excel, or PowerPoint file needs a portable password: use the application's file-level password.
  • Several files must be sent as one protected package: use an encrypted archive.
  • A laptop or complete drive may be lost or stolen: use BitLocker or supported device encryption.

File Locking FAQ

Can Windows put a password on any file?

No universal Windows command works for every file type. Office passwords, EFS, NTFS permissions, archives, and BitLocker each protect data differently. File Lock Pro provides one consistent workflow for selected files and folders.

Is EFS the same as a file password?

No. EFS is tied to a Windows account certificate. The authorized user normally opens the file without a second password prompt after signing in.

Can BitLocker lock one file?

No. BitLocker encrypts an entire supported drive or volume. Use file-level protection when only selected items need control.

Can File Lock Pro lock files on USB storage?

Yes. It supports selected files and folders on local disks, USB storage, external drives, and LAN shared folders.

Technical references: Microsoft file security and access rights | Microsoft file and folder encryption | Microsoft BitLocker overview | Microsoft Word password protection

Lock the Files That Need Direct Control

Use File Lock Pro when selected files should stay in place but should not open normally without your File Lock Pro password.

Download TrialVersion: 13.5Buy File Lock Pro$39.95