Microsoft's 'Recall' Feature Will No Longer Be a Default Setting Due to Security Concerns

Microsoft's controversial new AI Recall feature will no longer be activated by default for Windows users, the company announced.

Recall, which was unveiled in May and is currently in preview, records every action taken by a user to help create more personalized queries in its AI-powered Copilot. While the new feature has been designed to improve the Copilot experience, some in the security community began to express possible concerns.

In an article posted to Medium (soft paywalled), security expert Kevin Beaumont broke down how, with just a few lines of code, Microsoft's newest Copilot feature could allow attackers to steal a user's entire PC usage history.  In his analysis, he said that, while the new feature would be useful to many, Microsoft's security track record would make this feature too risky for public use.

"I think it's an interesting entirely, really optional feature with a niche initial user base that would require incredibly careful communication, cybersecurity, engineering and implementation. Copilot+ Recall doesn’t have these," Wrote Beaumont. "The work hasn’t been done properly to package it together, clearly."

Responding to feedback from Beaumont and others, along with disabling the feature by default, Microsoft said it is adding an additional "enrollment" level to use the service and enhancing Recall's security with "just in time" decryption, which uses Windows Hello Sign-In Security (ESS).  

It also laid out the current security settings for the Copilot feature. Recall, locally stores and processes snapshots without relying on Internet or cloud connections. These snapshots are never shared with Microsoft or other entities, and per-user encryption ensures privacy even on shared devices.

According to Microsoft, users will be clearly notified when Recall is saving snapshots, with icons visible on the taskbar and system tray. Digital rights managed content and InPrivate browsing data are excluded from snapshots.

Finally, users can manage their snapshots with options to pause, filter or delete them at any time, maintaining control over what is saved. For enterprise users, IT administrators can disable the snapshot-saving feature, but cannot enable it on behalf of users.

Microsoft also said the line of Copilot+ PCs, also announced last month, will come with additional security features, including hardware-level baked-in security, Microsoft Pluton security processor and Windows Hello ESS turned on by default.

"We are on a journey to build products and experiences that live up to our company mission to empower people and organizations to achieve more, and are driven by the critical importance of maintaining our customers’ privacy, security and trust. As we always do, we will continue to listen to and learn from our customers, including consumers, developers and enterprises, to evolve our experiences in ways that are meaningful to them," wrote Pavan Davuluri, corporate vice president, Windows + Devices. 

About the Author

Chris Paoli (@ChrisPaoli5) is the associate editor for Converge360.

Featured

  • glowing padlock shape integrated into a network of interconnected neon-blue lines and digital nodes, set against a soft, blurred geometric background

    3 in 4 Administrators Expect a Security Incident to Impact Their School This Year

    In an annual survey from education identity platform Clever, 74% of administrators admitted that they believe a security incident is likely to impact their school system in the coming year. That's up from 71% who said the same last year.

  • glowing digital payment icon hovers above an abstract school environment

    New ParentSquare Feature Streamlines School Payments

    Digital engagement company ParentSquare has introduced ParentSquare Pay, a school payments solution for its flagship communication platform.

  • Google Classroom tools

    Google Announces Classroom Updates, New Tools for Chromebooks

    Google has introduced a variety of features across its products for education, announced recently at the 2025 BETT ed tech event in London. Among the additions are enhancements to Google Classroom and new tools for Chromebooks, "designed to help address the diverse needs of students around the world," Google said in a blog post.

  • The AI Show

    Register for Free to Attend the World's Greatest Show for All Things AI in EDU

    The AI Show @ ASU+GSV, held April 5–7, 2025, at the San Diego Convention Center, is a free event designed to help educators, students, and parents navigate AI's role in education. Featuring hands-on workshops, AI-powered networking, live demos from 125+ EdTech exhibitors, and keynote speakers like Colin Kaepernick and Stevie Van Zandt, the event offers practical insights into AI-driven teaching, learning, and career opportunities. Attendees will gain actionable strategies to integrate AI into classrooms while exploring innovations that promote equity, accessibility, and student success.