Windows 11 does not have a built-in setting that adds a separate password to an ordinary folder. To protect a copy of a folder with its own password, put it in an encrypted 7z archive using 7-Zip. This works on Windows 11 Home and Pro, but it protects the archive, not the original folder.
If you want files to remain in a normal working folder, Windows file encryption is a different option on supported editions. It uses your Windows account and encryption key rather than asking for a new folder password each time.
Before You Start
Back up important files first and choose a long, unique password you can keep in a password manager. Losing an archive password can mean losing access to its contents. Leave your original files in place until you have verified the protected copy.
Download the current Windows installer from the official 7-Zip download page. Choose the installer for your computer’s architecture; most Windows PCs use x64, while some use ARM64. On a managed work or school computer, follow your organization’s software and data-handling rules. If you are not sure which installer fits, see how to tell whether your Windows 11 PC is x64 or ARM64.
Create a Password-Protected Copy with 7-Zip
- Open 7-Zip File Manager from Start. Browse to the folder’s parent location and select the folder itself.
- Click Add to open Add to Archive.
- Set Archive format to 7z. Use the Archive field or browse button to choose a new filename and save location outside the source folder.
- Under Encryption, enter and reenter your password. Check that the method is AES-256, then select Encrypt file names.
- Leave Delete files after compression unchecked. Click OK and wait for completion without errors.

The result is a file ending in .7z that contains a copy of your folder. 7-Zip documents AES-256 encryption for the 7z format. Encrypting file names also protects the names inside the archive; the archive’s own filename is still visible, so avoid a revealing name.
Verify the Archive Before Removing Originals
Close the 7-Zip windows, reopen 7-Zip File Manager, and open the newly created archive. With file-name encryption enabled, it should request the password before showing the internal file list. If you can browse it immediately, confirm that you opened the new archive and that no other open 7-Zip window already has the password.
Select the archive in its parent directory and use Test. Enter the password when requested. If the test reports errors, keep the originals and make a fresh archive after resolving the error.
Next, use Extract to a separate, empty folder. Check that the expected subfolders and files are present and open several important documents. This checks that you can actually recover usable files, rather than relying on the archive’s existence alone.
The extracted files are ordinary, unprotected copies. Creating the archive also leaves the original folder unchanged. For example, a protected archive on a USB drive does not protect the source documents still sitting on your Desktop.
After checking your backup and archive, decide which unprotected copies you still need. Review the original folder, test extraction folder, cloud storage, shared locations, and backups. Deleting a local copy does not necessarily remove synced versions or securely erase recoverable data. Follow the storage service’s retention rules or your organization’s policy for sensitive files.
Use 7-Zip or another application that supports encrypted 7z archives to extract the files. Microsoft explains that Windows’ built-in archive tools do not support encrypted archives in Windows 11 version 24H2, even though they support several unencrypted formats.
When sharing, send the encrypted archive and give the password through a separate channel. The recipient needs a compatible extractor. Avoid putting the password in the same message as the attachment.
The archive is a saved copy, not a folder that automatically tracks later edits. If you change the original documents, make and verify a new encrypted archive with a distinct filename. Keep the previous verified copy until you have checked the replacement. To remove password protection, extract the files with the correct password and store that unprotected copy in an appropriate location.
What About Windows’ Encrypt Contents Setting?
The Encrypting File System (EFS) can protect files on an NTFS drive on supported Windows editions. Microsoft states that file encryption is unavailable in Windows Home. The documented route is Properties > Advanced > Encrypt contents to secure data, followed by OK and Apply.
EFS uses an encryption certificate and private key associated with your account. An authorized signed-in user can open the files without a separate folder-password prompt. It is therefore a different choice from a portable password-protected archive.
Before relying on EFS, back up its certificate and private key to a secure location separate from the PC. Microsoft’s cipher documentation describes the certificate/key backup option. Ask your IT administrator for the organization’s recovery process on managed computers. Do not assume a Windows account reset or reinstall will preserve access.
Common Problems and Questions
I Cannot Find the 7-Zip Right-Click Menu
Open 7-Zip File Manager from Start and use its Add button instead. The procedure above does not depend on File Explorer showing a particular context menu.
There Is No Encrypt File Names Option
Check that Archive format is 7z in the Add to Archive dialog. Creating an ordinary ZIP through Windows’ Compress or Send to commands does not add a password. Our Windows ZIP and extraction guide covers that separate task.
Can Properties > Security or BitLocker Add a Folder Password?
File permissions control access by Windows users and groups; they do not create an independent folder password. BitLocker protects a drive or volume rather than adding a password prompt to one ordinary folder. Avoid changing permissions blindly, since you can interfere with your own or an application’s access.
Can I Use a Folder-Hiding Batch Script?
Renaming or hiding a folder is not encryption. A script that stores a readable password is a poor choice for protecting private documents. Use a documented encryption method and verify the recoverable copy instead.
What If the Password Does Not Work?
Confirm the exact archive, keyboard layout, and password capitalization. Try your saved password carefully. If it still fails, use your verified backup or original files; do not delete them or assume there is a password-removal option that can recover encrypted contents.
Finish by checking the correct password opens your archive, the recovered files work, and any remaining unprotected copies are stored where you intend.

Matthew Burleigh has been writing tech tutorials since 2008. His writing has appeared on dozens of different websites and been read hundreds of millions of times.
After receiving his Bachelor’s and Master’s degrees in Computer Science he spent several years working in IT management for small businesses. However, he now works full time writing content online and creating websites.
His main writing topics include iPhones, Microsoft Office, Google Apps, Android, and Photoshop, but he has also written about many other tech topics as well.