How to Restrict Read Access to Windows Folders for Specific Applications or How to Whitelist Apps for Read Access to Folders

Have you ever run into a situation where you want to protect your privacy from suspicious or unwanted apps? Do you want to control which applications can read the contents of a specific folder in Windows? If yes, then this article is for you.

In this article, Bardimin will explain how to restrict read access to Windows folders for specific applications or how to whitelist applications for read access to folders. This article will discuss two main methods you can use to achieve that goal, namely:

How to Restrict Read Access to Windows Folders

Bardimin will also provide some tips and tricks to increase your safety and comfort when using these methods. Let’s get started!

Using Windows Security to Change Folder Permissions

One way to restrict read access to Windows folders for specific applications is to use the Windows Security feature that is already available in Windows operating systems. This feature allows you to change folder permissions, which are permissions granted to users, groups, or other objects to perform certain actions on folders.

To use this method, you need to perform the following steps:

  1. Right-click on the folder you want to restrict read access to, and then select Properties.
  2. In the Properties window, select the Security tab.
  3. On the Security tab, click the Edit button to change folder permissions.
  4. In the Permissions for Folder window, you’ll see a list of users, groups, or objects that have permissions to the folder. You can add, remove, or change permissions for each entry by clicking the Add, Remove, or Change Permissions button.
  5. To restrict read access to a folder for a specific application, you need to add a new entry for that application. To do this, click the Add button.
  6. In the Select Users or Groups window, click the Advanced button to search for the app you want to add.
  7. In the Select User or Group window, click the Find Now button to display all available objects. Find the app you want to add, then double-click on its name. You can also manually type the app name in the Enter the object name to select field.
  8. Once you’ve selected the app you want to add, click the OK button to return to the Select Users or Groups window. Make sure the app name appears in the Enter the object names to select field, then click the OK button again to return to the Permissions for Folder window.
  9. Now, you will see a new entry for the app you added to the folder’s permission list. To restrict read access to a folder for that app, you need to change its permissions. To do so, click on the entry, then uncheck the boxes Read & execute, List folder contents, and Read under the Allow column. You can also add a check to the Deny box to explicitly deny the permission.
  10. After you change the permissions for the app you added, click the OK button to save the changes. You also need to click the OK button on the Properties window to close it.

By performing the above steps, you have successfully restricted read access to the Windows folder for specific applications. Now, if you try to run those apps and access those folders, you’ll get an error message saying that you don’t have permission to do so.

However, this method has several disadvantages, namely:

  • You need to repeat the steps above for each folder that you want to restrict read access to.
  • You need to know the name of the app you want to restrict read access to, which may not always be easy to find.
  • You need to be careful when changing folder permissions, as you may accidentally delete or change permissions for users, groups, or other objects that are important to your system.

Therefore, if you are looking for an easier and safer way to restrict read access to Windows folders to specific applications, you may want to try the next method.

Using Windows Sandbox to Run Applications in an Isolated Environment

Another method you can use to restrict read access to Windows folders for specific apps is to use the newly introduced Windows Sandbox feature in Windows 10 version 1903 or later.

This feature allows you to run applications in an isolated environment separate from your primary system. That way, you can prevent those apps from accessing any folders or files outside of that environment.

To use this method, you need to perform the following steps:

  1. Make sure you have Windows 10 version 1903 or later, and that the Windows Sandbox feature is enabled on your system. If you haven’t already, you can enable it by following the instructions here.
  2. Open Windows Sandbox by typing Windows Sandbox in the Windows search box, and then click on the result.
  3. Wait until Windows Sandbox opens and displays a clean and fresh Windows desktop. This is an isolated environment that you can use to run applications that you want to restrict read access to.
  4. Copy or move the app you want to restrict read access to the Windows Sandbox environment. You can do this by dragging and dropping those apps from your main system into the Windows Sandbox window, or by using the Copy and Paste feature.
  5. Run the application you copied or moved to the Windows Sandbox environment. You can do this by double-clicking on the app’s icon, or by right-clicking on the app and selecting Run as administrator if needed.
  6. Now, you can use those apps in the Windows Sandbox environment without worrying about them being able to read the contents of any folder on your main system. This is because the Windows Sandbox environment only has access to folders and files that are in it, and cannot access folders and files that exist outside that environment.

By performing the above steps, you have successfully restricted read access to the Windows folder for a specific application by using Windows Sandbox. Now, you can run those apps safely and comfortably without compromising your privacy.

However, this method also has some disadvantages, namely:

  • You need to have Windows 10 version 1903 or later, and the Windows Sandbox feature must be enabled on your system.
  • You need to copy or move the application that you want to restrict read access to the environment Windows Sandbox every time you want to run it.
  • You need to close Windows Sandbox after you finish using the application because all the data and changes you made in that environment will be lost when you close it.

Therefore, you need to weigh the advantages and disadvantages of each method before you choose the best one for you.

Tips and Tricks to Restrict Read Access to Windows Folders for Specific Applications

In addition to using the two methods Bardimin as described above, you can also follow some of the following tips and tricks to restrict read access to Windows folders for specific applications:

  • Use a reliable antivirus or anti-malware to protect your system from malicious or potentially unwanted applications. You can scan the apps you want to run before you open them or set your antivirus or anti-malware to scan apps automatically when you run them.
  • Use passwords or encryption to protect folders that contain your sensitive or personal data. You can use the BitLocker feature already available in Windows, or use a third-party application that can encrypt your folders. That way, you can prevent any application that doesn’t have a password or encryption key from accessing the folder.
  • Use a firewall to control the network traffic going in and out of your system. You can use the Windows Firewall feature already available in Windows, or use third-party applications that can provide more advanced firewall protection. That way, you can prevent suspicious or unwanted apps from sending or receiving data from the internet without your permission.
  • Use a sandbox or other virtual machine to run apps you don’t trust or that you rarely use. You can use the Windows Sandbox feature that Bardimin described earlier, or use a third-party application that can create a sandbox or virtual machine separate from your main system. That way, you can run those applications in an isolated and secure environment, without affecting your main system.

By following the tips and tricks above, you can increase your security and convenience while restricting read access to Windows folders for specific applications. You can also avoid risks that may arise from unwanted applications, such as data theft, virus infection, or system damage.

Latest Articles