Deleted files are often recoverable, but the safest path depends on where the file was stored, how it was deleted, and whether the account is personal or managed by an organization. This checklist explains how to recover cloud files from Google Drive, Dropbox, and OneDrive, when to use version history or administrator tools, and what to do before a file becomes permanently unavailable.
Overview
When a document, folder, or shared file disappears, avoid making changes until you establish what happened. A file may have been moved, renamed, removed from a shared folder, overwritten, or placed in a provider’s trash or recycle area. Sync software can also replicate deletions across devices, making it important to pause unnecessary activity while you investigate.
Start by recording the file name, approximate last-seen date, original location, owner, and the people or applications that had access. Search by file type, keywords, and likely alternate names. Check the web interface as well as the desktop or mobile app; the browser version may expose recovery controls that are not available in a synced folder.
The general recovery order is:
- Search the account and confirm the correct account or workspace.
- Check Trash, Recycle Bin, Recently Deleted, or the provider’s equivalent.
- Review activity logs, sharing locations, and ownership details.
- Use version history if the file exists but its contents were changed or overwritten.
- Ask a workspace administrator about restore options and retention rules.
- Check independent backups, exports, or local copies if the provider’s recovery path is exhausted.
Provider interfaces and retention rules can change, so treat the labels and availability described below as a practical route rather than a guarantee. For a broader platform checklist, see How to Recover Deleted Cloud Files: A Platform-by-Platform Recovery Checklist.
Checklist by scenario
Google Drive: recover deleted files
In Google Drive, first confirm that you are signed into the account that owned or accessed the file. Use Drive search, including filters for file type, owner, location, and modification date. If the item was deleted, open the Trash area and look for the file or folder. Select it and use the restore control if it is available.
If the file is missing from Trash, check whether it belonged to a shared drive or another user. A shared-drive item may be controlled by organizational permissions rather than your personal Drive. Ask the file owner or Google Workspace administrator to investigate. Administrators may have an organization-level restore path, but eligibility and time limits depend on the workspace configuration and current provider policy.
If the file is present but damaged or overwritten, open its version history when supported. Save or copy the correct version before making further edits. For managed accounts, the Google Workspace admin recovery guide provides a separate path for user files and shared-drive content.
Dropbox: recover deleted files
For Dropbox, search the web account rather than relying only on the local Dropbox folder. Check deleted files and confirm whether the missing item was a file, folder, or shared-folder member. If the item was shared, another person may have moved, renamed, or removed it without deleting the underlying content.
Use version history when the file still exists but an earlier revision is needed. If a folder or large set of files disappeared, avoid immediately reorganizing the account; preserve the current state and contact the account owner or administrator. Team and business environments can have additional recovery controls, while personal accounts may have different availability. Review the provider’s current help documentation before assuming a deleted item can be restored.
Also check whether a local device contains an unsynced copy. Do not reconnect or resynchronize an uncertain device until you know whether it will propagate deletions. If the issue followed a suspicious message or login, secure the account before restoring files. Our guide to revoking cloud sessions, app access, and shared links covers that response.
OneDrive: recover deleted files
In OneDrive, open the web interface and check the Recycle Bin. Personal OneDrive and work or school accounts may present different recovery paths. For business accounts, the file may also be associated with SharePoint, a team site, or a Microsoft 365 group rather than an individual OneDrive location.
Restore the item only after confirming its name, location, and ownership. If a file exists but contains unwanted changes, use version history to identify a known-good revision. If many files were deleted, renamed, or encrypted, stop editing and contact the Microsoft 365 administrator. The administrator may be able to use additional recycle-bin or restore features, subject to the organization’s settings and applicable retention limits.
For a deeper administrator workflow, use the Microsoft 365 file recovery guide. It is particularly useful when the missing content is in SharePoint or a team workspace rather than a personal folder.
When the file is permanently deleted
If the item is absent from search, Trash, Recycle Bin, and version history, recovery may require an administrator, a separate backup, or a local export. Do not upload sensitive documents to an unfamiliar “recovery” website simply because it promises instant results. A recovery tool may require broad access to your account or copies of confidential files. Use the guidance in Safe File Recovery Tools before installing software or submitting data.
What to double-check
- Account: Confirm the exact personal, work, school, or organization account in use.
- Location: Search My Drive, shared drives, shared folders, SharePoint sites, and locally synchronized folders as appropriate.
- Ownership: A shortcut or shared link is not necessarily the original file. The owner may be someone else.
- Time: Recovery availability can depend on when deletion occurred and on provider or administrator retention settings.
- Scope: Determine whether one file, a folder, or many files were affected.
- Security: If the deletion may be connected to phishing, ransomware, or an account takeover, preserve evidence and secure access before restoring.
- Integrity: Open the restored copy, verify its contents, and compare it with a trusted local copy or backup when possible.
Restoring a file does not automatically resolve an account compromise. Change credentials through the legitimate provider site, enable multifactor authentication where available, review active sessions and connected applications, and remove unexpected sharing links. For additional controls, consult the cloud storage security checklist for shared files and external links.
Common mistakes
The most common error is waiting while assuming the file will remain recoverable indefinitely. Another is searching only the synchronized desktop folder, where a deletion may already have been mirrored. Users also frequently restore the wrong item because similar filenames, shortcuts, and duplicate folders are easy to confuse.
Avoid permanently emptying Trash or Recycle Bin during an investigation. Do not overwrite a recovered file with a newer local copy until you have preserved both versions. Do not grant an unknown recovery service access to your entire cloud account. Finally, do not treat sync as a complete backup: synchronization can reproduce accidental deletion or unwanted changes. A separate, tested backup gives you another recovery route.
When to revisit
Revisit this checklist whenever your organization changes storage platforms, adds a new shared workspace, changes retention settings, or replaces sync and backup tools. It is also worth reviewing before seasonal planning cycles, major migrations, device replacements, and periods when large numbers of files are reorganized.
Make the next recovery easier by documenting file owners, critical locations, administrator contacts, and backup destinations. Test a small restore from each important backup rather than assuming it works. Keep a current inventory of connected applications and shared links, and explain to users how to recognize a fake Google Drive email, Dropbox phishing link, OneDrive phishing message, or file-sharing scam.
If a file is missing now, follow this order: pause risky sync activity, identify the account and owner, search the correct web interface, check the trash or recycle area, inspect version history, contact the relevant administrator, and then consult independent backups. Record what you tried and when. That simple record prevents repeated changes and gives support staff the details needed to choose the safest recovery path.