GiliSoft USB Encryption

Create Private and Public Space on One USB Drive

Password-protect confidential files in an encrypted private area while keeping selected files available in ordinary public storage.

USB flash drive with separate encrypted private storage and public sharing areas

Password Protect and Lock Folders on a Flash Drive

By GiliSoft • removable-drive encryption and sharing workflow

Keep selected folders behind password-controlled access while leaving only deliberately shared files in public storage. USB security works best when the protection design matches how the drive will be carried, shared, opened, backed up, and recovered.

Quick answer

Keep selected folders behind password-controlled access while leaving only deliberately shared files in public storage. Back up the drive first, test the password on a second supported Windows PC, and never store the only recovery information on the encrypted device.

Choose the Right USB Protection Model

NeedBest-fit approachTradeoff to verify
Share some files openly and keep others privateEncrypted private area plus public areaPublic files remain readable without a password
Encrypt every file on the removable driveWhole-drive removable-media encryptionCompatibility, Windows edition, and recovery-key handling
Send a few protected files independentlyEncrypted file or packageRecipient software and password-delivery method
Block USB devices on managed computersUSB device-control policyThis controls device use, not the data already stored on it
Public/private boundary: GiliSoft USB Encryption protects the secure area. Files left in the public area are intentionally accessible without its password.

Prepare the USB Drive Safely

  1. Identify the correct device.

    Confirm the model, capacity, drive letter, and contents so another removable disk is not changed by mistake.

  2. Make a separate backup.

    Copy all important files to protected storage and open representative files from that backup.

  3. Remove unnecessary data.

    Do not carry old exports, temporary copies, passwords, or unrelated personal and work files.

  4. Plan public and private capacity.

    Estimate future growth instead of allocating only enough encrypted space for today.

  5. Choose a recoverable password process.

    Use a unique passphrase and store the recovery record somewhere separate from the USB drive.

Separate shareable and private files with GiliSoft USB Encryption

The screenshot below is the real product interface for this workflow. Use a noncritical USB drive or a complete backup while evaluating the settings.

GiliSoft USB Encryption secure-area setup for public and private USB storage
The space not assigned to the secure area remains public, making the intended delivery set accessible without exposing encrypted private files.
  1. Inventory the drive first.

    List which files may be shared and which must remain private; do not decide only by folder name.

  2. Create or resize the secure area.

    Back up the device, then allocate encrypted space for private content.

  3. Move confidential files into the mounted private area.

    Confirm the transfer and open sample files from the encrypted virtual drive.

  4. Leave only approved files in public storage.

    Remove old exports, temporary copies, hidden duplicates, and unrelated personal data.

  5. Close and retest.

    Close the secure area, reconnect the USB drive, and inspect what another person can see without the password.

Apply the Workflow to This Situation

Keep selected folders behind password-controlled access while leaving only deliberately shared files in public storage.

Before handing over or travelling with the device, close the secure area and reconnect the USB drive. Inspect the public area as though you were the recipient. If the intended file is missing or a private file is visible, correct the layout before the drive leaves your control.

Verify Before You Rely on the Drive

  1. Close the private area.

    Close open files and applications, then close the mounted encrypted drive.

  2. Safely remove and reconnect.

    Use Windows safe removal, reconnect the device, and confirm only intended public files are visible.

  3. Open the private area again.

    Enter the password and mount it to an available virtual drive letter.

  4. Check representative files.

    Open files from the beginning, middle, and end of the protected set and confirm recent changes were saved.

  5. Test another supported PC.

    Verify the opener and access workflow on a second Windows computer before travel or delivery.

Understand Encryption, Recovery, and Device Risk

Removable-drive encryption protects data at rest, but it does not prevent physical loss, media failure, malicious USB firmware, malware on a host computer, or copying after the encrypted area is opened. Keep Windows and security software current, avoid unknown computers, and scan transferred files according to your organization’s policy.

Microsoft describes BitLocker To Go as whole-drive encryption for removable data drives. GiliSoft USB Encryption instead emphasizes a password-protected private area alongside public storage. Choose between them according to whether public files must remain accessible and how recovery will be managed.

Password Protect and Lock Folders on a Flash Drive FAQ

Can one USB drive contain both public and private files?

Yes. GiliSoft USB Encryption creates a password-protected private area while the remaining public area can hold ordinary files. Plan the capacity before creating the secure area.

Does encryption protect files after the private area is opened?

Encryption protects data at rest. After the password is entered and the area is mounted, files can be read by the current computer and may be exposed to malware, monitoring, copying, or accidental changes.

What happens if the USB drive is lost?

Files in the closed encrypted area should remain unavailable without the password, while anything left in public storage remains readable. Physical loss can still destroy access to your only copy, so maintain a separate backup.

Is USB Encryption the same as USB Lock?

No. USB Encryption protects a private storage area on a removable drive. USB Lock controls whether selected USB devices or USB network adapters may be used on a Windows PC.

Can I unplug the drive while the private area is open?

Close documents, close the mounted secure area, and use Windows safe removal first. Disconnecting during writes can corrupt files or the storage device.

Where should I keep the password or recovery information?

Keep it in a separate trusted password or recovery system, never as a plaintext note on the same USB drive.

Try GiliSoft USB Encryption

Back up the USB drive, create a secure private area, and test the complete open-and-close workflow before moving important files.