Microsoft delays roll-out of Windows Recall feature after pressure from security community
Microsoft admits it needs more time to iron out security wrinkles in its much-maligned Windows Recall capability
Windows Recall feature will no longer be part of the official launch of its new Copilot + PC range after security concerns forced Microsoft to hold the feature back for further testing.
On 20 May 2024, Microsoft sparked uproar among security and privacy experts after it announced the AI-powered feature that would continually record users’ devices, including sensitive information, to allow users to search back through their activities.
In an update to a company blog post initially announcing changes to the feature, Pavan Davuluri, VP for Windows and devices, said the wider release of Recall will be pushed back as it conducts further security testing.
The initial changes to the roll out of Recall gave users a clearer opt-in choice, meaning the capability will be turned off by default on Copilot + PCs, as well as adding additional security layers.
The additional security layers included extra data protection features such as ‘just in time’ decryption protected by Windows Hello Enhanced Sign-in Security (ESS), meaning images captured by Recall are only decrypted and accessible after authentication by the user.
Windows Recall to undergo further testing
The latest update pushing Recall back stated that “following feedback on Recall”, the feature will undergo further testing in its open software testing program before it is made generally available.
“We are adjusting the release model for Recall to leverage the expertise of the Windows Insider community to ensure the experience meets our high standards for quality and security”, wrote Davuluri.
Sign up today and you will receive a free copy of our Future Focus 2026 report - the leading resource for IT decision-maker insight on priorities and investment areas in AI, security and more.
“This decision is rooted in our commitment to providing a trusted, secure and robust experience for all customers and to seek additional feedback prior to making the feature available to all Copilot + PC users.”
RELATED WHITEPAPER
This update shows Microsoft feels it needs more time to get on top of Recall’s security issues before the wider release of its Copilot + hardware devices. This means Recall will not be available to the public, but will be made available to test in the Windows Insider Program “in the coming weeks”.
“When Recall (preview) becomes available in the Windows Insider Program, we will publish a blog post with details on how to get the preview.”

Solomon Klappholz is a former staff writer for ITPro and ChannelPro. He has experience writing about the technologies that facilitate industrial manufacturing, which led to him developing a particular interest in cybersecurity, IT regulation, industrial infrastructure applications, and machine learning.
-
Why security teams need to start operating like engineersNews As AI-powered coding accelerates, security teams need to start operating like developers
-
The key to a successful IT strategyPodcast Exploring how IT leaders can implement change, lead by example, and deliver successful transformation projects
-
Microsoft forks out record-breaking sums with expanded bug bounty programNews Hundreds of security researchers won a share of $20 million after the tech giant expanded its bug hunting scheme
-
'It delivers world-class performance at 50 percent of the cost of leading models': Microsoft unveils cut-price AI for security with latest in-house model launchNews Pairing the MAI security model with GPT-5.4 gives benchmark leading results at half the cost, according to the tech giant
-
Why Microsoft paused Patch Tuesday updates for some Dell devicesNews Select devices running Intel Innovation Platform Framework drivers encountered “poor performance”
-
Passkeys will soon be the default authentication method in Microsoft Entra ID – here's what it means for users and when the changes come into effectNews The shift to passkeys for Microsoft Entra ID comes amidst growing concerns over AI-powered phishing and identity theft
-
Hackers are capitalizing on AI hype to ramp up social engineering attacks – and they're using big brands like Anthropic, OpenAI, and DeepSeek as ‘bait’ to lure victimsNews Microsoft says cyber criminals are impersonating popular AI platforms to deliver malware
-
Beware of emails threatening a code of conduct reviewNews A widespread phishing campaign has targeted tens of thousands of employees
-
Is your new hire an AI clone? Microsoft says North Korean hackers are using AI to impersonate job seekers and steal company secretsNews The groups are increasingly using face-changing or voice-changing software to make their fake identities more plausible
-
Microsoft patches six zero-days targeting Windows, Word, and more – here’s what you need to knowNews Patch Tuesday update targets large number of vulnerabilities already being used by attackers