Help guide
Set and share a link password safely
Add password access to a share, choose a stronger value, deliver it separately, and understand the control's limits.
Maintained by FileShareFast · Updated
Password access adds a gate in front of a share. It is useful when a URL could be forwarded or appear in message history, but it works best as one part of a careful sharing process.
Add a password
- Open the upload page and add the intended files.
- Under Access level, select Password.
- Enter a password of at least six characters. The minimum only allows submission; a longer, unique passphrase is safer.
- Complete the upload and wait for the finished share link.
- Test the link in a private browser window to confirm that the password prompt appears.
Deliver the password separately
Do not put the password in the same email or chat message as the link when the files are sensitive. For example, send the URL through the project workspace and provide the password in a call or a separate direct message.
Avoid reusing an account password. A share recipient may need to store or forward the value, so generate a unique passphrase for the transfer.
Know the boundary
The application stores a password hash and checks submitted passwords before authorizing the protected share. The password is not a client-held encryption key, does not make FileShareFast zero-knowledge, and cannot stop someone with authorized access from keeping a downloaded copy.
If the URL or password reaches the wrong person, remove the share and create a new one. Merely sending a corrected message does not revoke the original credentials.
Common questions
What is the minimum password length?
The current share form requires at least six characters. Prefer a substantially longer, unique passphrase rather than relying on the minimum.
Can support recover my share password?
The application stores a password hash, not a readable password. Create a new share if the password cannot be recovered through your own records.
Should I password-protect every public file?
Choose access based on the audience and risk. A password adds friction and a useful gate, but it does not replace recipient verification, expiry, or removal of obsolete shares.