Microsoft Recall Wants to Remember Everything. Should You Let It?

Woman working in a home office using multiple computer monitors, focused on cybersecurity-related tasks in a comfortable workspace.

Your computer already knows a lot about you. Microsoft Recall wants to make sure it never forgets any of it. 

Recall is an AI-powered feature built into Windows 11 that takes periodic screenshots of everything you do on your PC: every app, document, website, and message. It stores that history locally so you can search it in plain language. Microsoft calls it a productivity tool. Security researchers had other words for it.

What Is Microsoft Recall? 

Microsoft Recall is a feature built into Windows 11 that takes periodic screenshots of your screen and stores them locally on your device. Using a built-in AI model, it indexes everything it captures so you can search your own history in plain language. Ask it to find a document you were reading last week, and it pulls up the moment you were looking at it. 

Recall is exclusive to Copilot+ PCs, a category of Windows 11 devices built with specialized neural processing units designed to handle AI-heavy tasks. The feature requires at least 16GB of RAM and 256GB of storage. It does not record audio, continuous video, or gameplay footage. 

It was supposed to launch in June 2024. But the backlash was intense enough that Microsoft pushed it back nearly a year.

How Does Microsoft Recall Work? 

Recall saves screenshots to a database stored locally on your device. An AI model indexes those snapshots so you can search your activity history the way you would search the web: in plain language, without needing to remember exactly where something was or what it was called. 

The feature works offline and does not require a Microsoft account. Microsoft states that your snapshots are never shared with Microsoft or any third party, and that no other user on the same device can access your data

A few built-in filters are on by default. Private and incognito browsing windows are excluded across major browsers including Chrome, Firefox, and Edge. Sensitive information filtering is also enabled by default, designed to keep passwords, credit card numbers, and national ID numbers out of stored snapshots. Users can also manually exclude specific apps or websites at any time. 

Worth noting: Recall’s filters do not prevent your internet service provider, the websites you visit, or other third parties from tracking your online activity. 

Microsoft Recall Security Risks

Recall’s privacy protections look solid on paper. They looked less solid once researchers started poking at them.

When Recall was first announced, the data it collected was stored in an unencrypted database on the device. Alexander Hagenah, a cybersecurity researcher who specializes in finding vulnerabilities in consumer software, built a tool called TotalRecall that could extract the entire contents of that database in minutes, exposing a detailed record of everything the user had done on their PC.

Microsoft went back to the drawing board. 

The redesigned version added encryption, biometric authentication via Windows Hello, and a secure processing environment. Microsoft said the new architecture would prevent malware from accessing Recall data even if it attempted to exploit the authentication process.

Hagenah wasn’t convinced. He built a follow-up tool called TotalRecall Reloaded to test Microsoft’s claims directly. It triggers a Windows Hello authentication prompt and, once the user confirms their identity, extracts all stored Recall data. His argument: malware can hitch a ride on a legitimate login and get everything it needs. Microsoft disputes this, saying the behavior falls within its intended security design. The back-and-forth remains unresolved.

Two other risks are worth flagging. First, because Recall relies on a large language model to process queries, it is potentially vulnerable to prompt injection attacks, where a bad actor manipulates the AI into revealing sensitive stored information. Second, Recall cannot be fully uninstalled. Even when disabled, it remains on the device, which means a misconfiguration or piece of malware could potentially reactivate it.

Laptop screen displaying a lock and security icon, symbolizing data protection and digital security.

What Microsoft Says About Privacy and Security

Microsoft’s position is that Recall was built with privacy as a foundation, not an afterthought

According to Microsoft’s documentation, all snapshots and associated data are encrypted on the device. Encryption keys are protected by the Trusted Platform Module (TPM) chip tied to your Windows Hello identity, and all processing happens inside a Virtualization-Based Security Enclave. In plain terms: the data is locked to you and your device. 

Recall is opt-in only. It is off by default for every user, and each person on a shared device has to enable it separately. Microsoft cannot view your snapshots, and the data is never sent to Microsoft’s servers or shared with third parties.

Copilot+ PCs also ship with additional hardware-level protections, including Secured-core PC certification and the Microsoft Pluton security processor, both designed to make the device itself harder to compromise.

Users stay in control of their data throughout. You can delete individual snapshots, wipe everything at once, set a storage limit, or remove the feature entirely through Windows settings.

Microsoft’s security architecture is more robust than Recall’s early critics anticipated. Whether it is robust enough is where some people still disagree.

The Microsoft Recall Privacy Controversy

The security vulnerabilities got the headlines, but the privacy concerns run deeper than what any researcher’s tool could demonstrate.

Recall’s core function is continuous surveillance of your own device. For most people, that framing alone is problematic. The feature captures everything on screen: personal messages, medical information, financial documents, and browsing habits. Even with filters in place, independent testing found that sensitive data, including credit card numbers and passwords still appeared in stored snapshots.

The implications get more complicated at work. Employees using company-owned Copilot+ PCs may have Recall running without fully understanding what it captures. That data is subject to eDiscovery and public records requests, meaning a continuous screenshot archive of everything an employee did on their PC could surface in legal proceedings. For organizations handling protected information under HIPAA or FERPA, that is not a minor compliance footnote. It is a liability.

Regulators took note. Privacy watchdogs in the UK and across the EU raised pointed questions about whether Recall could be made compliant with data protection frameworks like GDPR, which place strict requirements on how personal data is collected, stored, and processed. Those questions remain open.

The broadest concern is one no security update can fully address. A feature that remembers everything creates a record. Records can be subpoenaed, stolen, or misused. The more complete the record, the more valuable it is to anyone who shouldn’t have it.

Should You Use Microsoft Recall?

The honest answer depends on what you do on your computer and how much you trust the security architecture holding your data together.

For a narrow group of users, Recall is genuinely useful. Researchers, writers, and anyone juggling large volumes of documents and references might find real value in being able to search their own history. If your work doesn’t involve sensitive personal or financial information and you are the only person using your device, the risk profile looks different than it does for most people.

For everyone else, the tradeoff is harder to justify. Recall creates a detailed, searchable record of everything you have done on your PC. That record is only as safe as the security protecting it, and independent researchers have demonstrated that protection has gaps that haven’t been fully closed.

If you use a shared computer, a work-issued device, or regularly handle sensitive information, turn it off. If you are also thinking about what else is trackable beyond your own device, your IP address is a good place to start

Microsoft Recall logo displayed alongside a “Disable” button, illustrating settings to turn off the Recall feature in Windows.

How to Disable Microsoft Recall

If you’ve decided Recall isn’t for you, turning it off is straightforward.

Go to Settings > Privacy & Security > Recall & Snapshots and toggle off Save Snapshots. If Recall was already running, you can delete everything it stored from the same page by selecting Delete All Snapshots.

To remove the feature from your device entirely, go to Turn Windows Features On or Off and uncheck Recall from the list.

For IT administrators managing a fleet of devices, Group Policy and registry-based methods are available to disable Recall across multiple machines at once and prevent users from re-enabling it. Microsoft’s official documentation covers both options in detail.

Recall is a clever idea that showed up before the security questions around it were answered. 

Microsoft has made real improvements since the feature’s rocky debut, and the current architecture is meaningfully stronger than what researchers first tore apart. But independent researchers keep finding gaps, and the fundamental tension has not gone away: a feature that remembers everything is only as trustworthy as the system protecting it.

For most users, the calculus is simple. The convenience is real but modest. The exposure is real and potentially significant. Turn it off, delete the snapshots, and check back in when the dust has settled a little more.