Password protection

Password protection restricts who can see your site or parts of it. It is a Pro plan feature. It is useful for sharing work in progress with a client, gating a private gallery, or publishing internal documentation that should not be public.

There are three levels.

Protect the whole site

In the site settings, a site can be:

  • Public: anyone can view it. This is the default.
  • Password protected: visitors must enter a password you set before viewing any page. All media on the site is protected too.
  • Workspace protected: only signed-in members of your workspace can view the site. There is no shared password to distribute, and access follows your team.

Protect a single page

On a public site, you can set a password on an individual page. Visitors see a password prompt instead of the content, and any media embedded in the page is protected along with it. The rest of the site stays public, so you can mix public and protected content freely.

If the whole site is workspace-protected, per-page passwords are unnecessary and unavailable, since every page is already behind sign-in.

Media follows its page

There is no separate password on an individual file. A media file is protected because the page it belongs to is protected, or because the site is. To share a protected file, protect the page that contains it.

Sharing a password

Anyone with the password can view the protected content, so treat it like a shared link: pick a password you are comfortable distributing and share it through a channel you trust. For a known team, workspace protection avoids sharing a password at all. For content that should be private to you alone, keep it as a draft instead of deploying it.