How to send a confidential PDF more safely

There is no single delivery method for every level of sensitivity. The right choice depends on the information, recipient, likelihood of misdelivery and need for access records or revocation.

Choose the delivery control

For ordinary confidential attachments, a strongly protected PDF with a separately communicated password may be proportionate. Use an authenticated portal where policy requires identity checks, download records, expiry or revocation.

Reduce misdelivery risk

  1. Verify the recipient from a trusted record.
  2. Use a clear final filename without sensitive password data.
  3. Protect and test the PDF.
  4. Attach the protected copy only.
  5. Recheck the address before sending.

Autocomplete mistakes are a common reason for accidental disclosure, so the final address check matters.

Communicate access separately

Share the password through a different channel and verify that channel belongs to the intended recipient. Do not rely on a password hint included beside the attachment.