What's on a W-2 (and why it matters)
A single exposed W-2 gives a bad actor enough information to file a fraudulent tax return, open credit accounts, and steal an identity. Here's what's on the form:
Social Security Number
Can be used to open credit accounts, file fraudulent tax returns, or steal an identity outright
Employer Identification Number (EIN)
Enables fraudulent business filings and payroll fraud schemes
Wages & compensation
Reveals exact income, used to craft convincing phishing and social engineering attacks
Home address
Combined with SSN, completes the profile needed for full identity theft
Federal & state tax withholdings
Allows a bad actor to file a fraudulent return calibrated to the real numbers, making it harder to detect
The bottom line: A W-2 is one of the most sensitive documents in tax preparation. It's not just wages. It's a complete identity profile. Any delivery method needs to account for this.
Why email isn't safe for W-2s
Email was designed for convenience, not security. It's the most common way W-2s are shared, and the least appropriate.
SSNs visible in plaintext attachments
A standard PDF or Excel W-2 attachment is not encrypted. Anyone with access to the email, including IT administrators, compromised accounts, or a forwarded thread, can open it and read every SSN.
Email is stored on multiple servers indefinitely
Your email server, their email server, any backup or archive system on either side. That W-2 now exists in at least 4-6 places you don't control, with no expiration date.
No way to revoke access after sending
Once an email is sent, it's gone. If you send a W-2 to the wrong address, or a client's email is compromised next month, there's nothing you can do. The document is permanently out of your control.
No audit trail of who opened it
Standard email gives you no confirmation that the right person, and only the right person, accessed the document. Read receipts are unreliable and easily disabled. If a W-2 is leaked, you have no way to trace how.
5 ways to send W-2s securely
Ranked from strongest digital security to most physically secure. The best option depends on your practice size, budget, and how your clients prefer to receive documents.
Encrypted file transfer with auto-destruction
DeadVault
Best for practices that want zero data retention after delivery
Advantages
- AES-256-GCM encryption, SSNs are never stored in plaintext
- Files self-destruct after the deadline via cryptographic erasure
- No client accounts needed, just a secure link
- Audit trail of access without persistent data storage
Limitations
- Files aren't available indefinitely, clients must download before the deadline
- Requires a paid subscription (though typically $15-25/month)
- Not a full document management system: designed for delivery, not storage
Secure client portal
ShareFile, SmartVault, Canopy
Best for firms that need ongoing document management alongside delivery
Advantages
- Persistent document storage: clients can access files anytime
- Often includes e-signatures, workflow tools, and CRM integrations
- Established compliance certifications (SOC 2, etc.)
- Good for firms already using these platforms for other workflows
Limitations
- Per-user pricing adds up quickly ($30-100+/month)
- Clients must create accounts and remember passwords
- Documents persist indefinitely unless manually cleaned up: more data liability
- Setup complexity: onboarding, permissions, folder structures
Password-protected PDF via separate channel
Free, using any PDF tool
Best for occasional use when budget is zero
Advantages
- Free: no subscription or software required
- Better than unprotected email attachments
- Client doesn't need special software to open
Limitations
- You need to communicate the password through a separate channel (phone, text)
- Most people use weak passwords or reuse passwords across clients
- PDF password protection is not true encryption. It can be cracked
- No audit trail, no auto-destruction, no revocation
- Doesn't scale well past 10-20 clients
Encrypted email service
ProtonMail, Virtru, Zix
Best for firms already using encrypted email for other communications
Advantages
- End-to-end encryption when both parties use the same provider
- Virtru and Zix work as plugins with existing email workflows
- Some offer message expiration and access revocation
Limitations
- Encryption often breaks when the recipient uses a different email provider
- No auto-destruction of attachments in most cases
- Clients may need to create accounts or click through extra steps
- Cost varies: free (ProtonMail basic) to $5-10/user/month (Virtru, Zix)
Secure physical delivery
Hand delivery, USPS Certified Mail, FedEx
Best for high-value situations or clients who distrust digital tools
Advantages
- No digital exposure: the document never touches a server
- USPS Certified Mail provides a delivery confirmation
- Some clients genuinely prefer paper
Limitations
- Not scalable for dozens or hundreds of clients
- Physical mail can be lost, stolen, or delivered to the wrong address
- Slow: days versus seconds
- No encryption, no access control once the envelope is opened
- Printing W-2s creates another copy that needs to be secured or destroyed
Using DeadVault for W-2 delivery
If you want encrypted delivery with automatic destruction, no persistent data, no manual cleanup, here's the specific workflow.
Create a drop for the client
Set a deadline (e.g., 14 days) and optionally attach a payment gate if you're collecting a prep fee before the client can download.
Upload the W-2
The file is encrypted with AES-256-GCM using a unique per-file key. The original filename is never stored on disk, only a UUID-based reference.
Share the secure link
Send the link via email, text, or your client communication tool. The client clicks it: no account creation, no password, no app install.
Client downloads the W-2
If you set a payment gate, the client pays first. The download is logged so you have an audit trail of who accessed the document and when.
Auto-destruction after deadline
When the deadline passes, the encryption keys are destroyed. The W-2 becomes mathematically unrecoverable, no manual cleanup, no lingering copies.
For tax season bulk delivery: Create one drop per client with the W-2 (and any other return documents). If you're collecting prep fees, enable the payment gate so clients pay before downloading. Each W-2 gets its own encryption key, so a compromise of one client's link doesn't affect any other client's documents.
Frequently asked questions
What accountants and payroll providers actually ask about secure W-2 delivery.