You sent a file to the wrong person: what can be undone and what cannot
The first minute is worth more than everything after it. Before reading further: if the file is on a share link you control, revoke the link now, then come back.
The window, by channel
| Channel | Can you pull it back? |
|---|---|
| Gmail | "Undo send" only, within 5–30 seconds, and only if you enabled the longer window in Settings |
| Outlook / Microsoft 365 | Recall works only inside the same organisation, only if the message is still unread, and frequently fails silently |
| Any other email | No. Once it has left your server it is gone |
| WhatsApp / Telegram / Signal | "Delete for everyone" within a limited window — recently a couple of days on WhatsApp; the recipient may already have the file saved |
| Slack / Teams | You can delete your own file, and it disappears for everyone who has not downloaded it |
| Cloud drive link (Drive, OneDrive, Dropbox) | Revoking sharing works — completely, if nobody has downloaded it yet |
| Transfer service with a link or code | Depends on the service: some let you delete the transfer, all of them expire it eventually |
The pattern: anything that leaves a copy on your infrastructure can be revoked; anything that pushed a copy to theirs cannot. An email attachment is a copy that has already arrived. A share link is a pointer you still hold, which is exactly why revoking it works — and why a link's lifetime matters so much in the first place.
What to do, in order
- Revoke or delete first, read the room second. Every minute reduces the chance the file is still only on your side. Do not compose an apology before you have pulled the link.
- Find out whether it was opened. Cloud drives show access; some transfer services show whether a download happened. This single fact decides whether the rest is cleanup or a real incident.
- If the file contained credentials, rotate them now. API keys, passwords, tokens, a database dump with hashes. Assume compromise; rotation costs an hour, the alternative does not have a fixed price.
- Tell the recipient plainly and ask them to delete it. This is not a legal remedy and does not bind anyone, but most misdeliveries go to a colleague or a neighbouring address, and most people simply delete it when asked. Ask them to empty the trash too.
- If the file held other people's personal data, escalate rather than handle it quietly. Under GDPR a personal-data breach is notifiable to the supervisory authority within 72 hours; Türkiye's KVKK has an equivalent 72-hour expectation. That clock starts when you become aware, not when someone decides how serious it is — and quietly deleting a link is not a defence.
What cannot be undone, no matter what the button says
- Anything already downloaded. The copy is on their disk and there is no reach into it.
- Anything already forwarded. You are now one hop back from a chain you cannot see.
- Screenshots, and previews cached by the mail client or chat app.
- Anything in a backup — theirs, their employer's, or the platform's. Backups are the reason "delete for everyone" is a courtesy rather than an erasure.
- Anything a mail server has already archived for compliance, which in regulated industries is everything.
Making the next one cheaper
The structural fix is not to be more careful — everyone is already trying to be careful. It is to send files in a form where a mistake stays revocable.
- Prefer a code or link over an attachment. An attachment is an irrevocable copy the moment you press send. A pointer stays yours a while longer.
- Keep expiry short. A mistake you discover on Thursday is already fixed if the link died on Wednesday — see how long a shared file should stay downloadable.
- Check the recipient before the file, not after. Autocomplete picking the wrong same-named contact is the single most common cause, and it happens in the field you filled in first and looked at least.
- Send the identifier and the secret on different channels. If the code goes to the wrong person but the second factor does not, the mistake is inert.
More guides
Six ways to get a file from your phone to a computer — and where each one breaks
Cable, cloud drive, email, messaging apps, local network and transfer services compared: size ceilings, what each one costs you in privacy, and the specific situation where each method falls apart.
Email attachment size limits — and why your file is bigger than you think
The attachment ceiling for Gmail, Outlook, Yahoo, iCloud, Proton and Zoho, why encoding makes your file about 33% larger in transit, and the four ways past the limit.
What end-to-end encryption actually protects — and what it does not
The difference between HTTPS, encryption at rest and true end-to-end encryption, why the key matters more than the cipher, and the four things E2EE will never save you from.
Try SendMyFile
Encrypt a file in your browser and hand it over with a 9-digit code. No account, and it deletes itself.
Try SendMyFile