The Inherited Folder Permissions Problem
Google Docs is built entirely around seamless collaboration. The platform makes it incredibly easy to share a single document with multiple people simultaneously. However, a common point of confusion—and a significant security risk—occurs when users realize that a document they just created is automatically being shared with people they never explicitly invited. This happens because of “Inherited Permissions.”
Google Drive utilizes a hierarchical folder structure. If you create a new Google Doc *inside* a folder that is already shared with your team, that new document automatically inherits the sharing permissions of its parent folder. The moment you click “New -> Google Doc” inside a shared folder, everyone who has access to that folder instantly gets access to your blank document, even before you’ve typed a single word. If you are drafting a sensitive performance review or a confidential financial plan, creating the document in the wrong folder can lead to immediate, disastrous data leaks. You must understand how to isolate your new documents from automatic sharing rules.
How to Stop Automatic Document Sharing
To prevent a document from automatically sharing itself with collaborators, you must either create it in an isolated location or explicitly break the inheritance rules.
- Create outside shared folders: The easiest way to stop automatic sharing is to always create new, sensitive documents in your root My Drive folder, or a specifically designated private folder. Once the draft is finished and safe to share, you can then manually drag it into the shared team folder.
- If you must create it in a shared folder: If you accidentally created it in a shared space, immediately open the document.
- Click the large blue Share button in the top right corner.
- In the sharing dialog box, look at the list of “People with access.”
- You will see the users who inherited access from the parent folder. Click the dropdown menu next to their names (which likely says “Editor” or “Viewer”) and select Remove access.
- Click Save.
By manually removing the inherited users, you sever the link between the document and the parent folder’s sharing rules, returning the document to a private state where only you can view it.