Skip to content
Follow
Windows

How to Enable or Disable Windows Hello Biometrics

Richard
Written by
Richard
Feb 10, 2026 Updated Oct 5, 2026 4 min read
How to Enable or Disable Windows Hello Biometrics
How to Enable or Disable Windows Hello Biometrics

Windows Hello lets you sign in to Windows 11 with your face or fingerprint instead of a password. You can also use a PIN, which is a Windows Hello sign-in method but not a biometric. Most modern PCs support it, as long as they have a compatible camera or fingerprint reader.

Advertisement

You might turn biometrics off to get around a camera or scanner that keeps throwing errors. You might also do it on a shared PC where you don’t want anyone’s face or fingerprint used to sign in. This guide covers two ways to switch biometrics on or off for the whole computer: Local Group Policy Editor and Registry Editor. Both need an administrator account. If you only want to remove your own fingerprint or face data, use Settings Accounts Sign-in options instead.

⚡ Quick Answer

Open Local Group Policy Editor by pressing Win+R, typing gpedit.msc, and pressing Enter. Navigate to Computer Configuration Administrative Templates Windows Components Biometrics, double-click “Allow the use of biometrics”, and set it to Disabled to turn off Windows Hello biometrics or Enabled to turn it on. Restart your computer for the change to take effect.

Advertisement

Turn Windows Hello Biometrics On or Off Using Local Group Policy Editor

📝Good to KnowLocal Group Policy Editor is a Microsoft management console for system policies.

It ships with Windows 11 Pro, Enterprise, and Education. It is not included in Windows 11 Home, so if you run Home, skip to the registry method further down.

The policy you need is “Allow the use of biometrics”. It controls fingerprint and face sign-in for every user on the PC. Setting it to Disabled stops biometric sign-in, but your PIN and password keep working.

  1. Open Local Group Policy Editor. Press the Win+R to open the Run box, type gpedit.msc, and press Enter. The Local Group Policy Editor window opens. If Windows says it can’t find the file, you are on Home edition. Use the registry method instead.
  2. Expand the folders on the left side. Go to Computer Configuration Administrative Templates Windows Components Biometrics. Click the small arrow next to each folder to open it.
  3. Click the Biometrics folder. The policies for it appear in the right pane.
  4. Double-click “Allow the use of biometrics”. A settings window opens for that policy.
  5. Choose one option:
    • Not Configured — Biometrics is allowed. This is the default.
    • Enabled — Biometrics is allowed and turned on.
    • Disabled — Biometrics is turned off and can’t be used.
  6. Click OK to save. The window closes and the policy’s state is updated in the list.
  7. Restart your computer so the change takes effect.
Windows allow the use of biometrics
Windows allow the use of biometrics

After the restart, open Settings Accounts Sign-in options If you disabled biometrics, the fingerprint and face options should no longer be usable. To undo the change, open the same policy again and set it back to Not Configured (the default), then restart.

Turn Windows Hello Biometrics On or Off Using Windows Registry Editor

Registry Editor is a tool for editing low-level Windows settings directly. Use this method on Windows 11 Home, or on any edition where you can’t open Group Policy. It creates the same policy value that Group Policy would set, so you get the same result.

Advertisement
⚠️WarningBe careful here. A wrong change in the registry can cause problems.

Before you start, click File Export in Registry Editor to save a backup. Or create a restore point first.

  1. Open Registry Editor. Press the Windows key + R, type regedit, and press Enter. If User Account Control asks for permission, click Yes. ⚠️ Admin privileges required.
  2. Go to this key. Paste or browse to HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft. You can paste the path into the address bar at the top of the window, then press Enter. Otherwise, expand the folders in the left pane one at a time.
  3. If there is no Biometrics key inside Microsoft, create one.
    • Right-click Microsoft, choose New Key, and name it Biometrics. The new key appears in the left pane.
  4. Click the Biometrics key to select it.
  5. In the right pane, right-click an empty area and choose New DWORD (32-bit) Value. A new value appears with its name highlighted.
  6. Name the new value Enabled and press Enter.
  7. Double-click Enabled and set:
    • Base: Decimal
    • Value data:
      • 1 to turn biometrics ON
      • 0 to turn biometrics OFF
  8. Click OK, then close Registry Editor.
  9. Restart your computer to apply the change.
Windows Registry Editor showing Biometrics key
Windows allow the use of biometrics windows registry

To undo the change, open the same key, set Enabled back to 1, or right-click the value and choose Delete. Restart afterward. If something goes wrong, double-click the .reg file you exported earlier to restore the backup.

Summary

Windows Hello gives you quick sign-in with your face or fingerprint, plus a PIN as a fallback. You can switch the biometric part on or off at any time with either the Local Group Policy Editor or the Registry Editor. Use Group Policy on Pro, Enterprise, and Education. Use the registry on Home.

Both methods change the same system-wide setting, and both need a restart to take effect. Disabling biometrics doesn't remove your PIN or password, so you can still sign in.

Advertisement

Think about where the PC is used before you decide. Biometrics are fast and secure, but poor lighting, a dirty camera, or a worn fingerprint reader can cause repeated failures. If that is your problem, try cleaning the hardware or re-enrolling first. Disable biometrics if the errors persist or if the PC is shared.

Questions and feedback are always welcome in the comments section below.

Was this guide helpful?

Tags: #Windows 11
Was this helpful?
Richard

About the Author

Richard

Tech Writer, IT Professional

Richard is a writer at Geek Rewind who turns complex IT tasks into clear, step-by-step guides. He draws on years of hands-on experience in system administration and enterprise IT operations, focusing on Windows, Linux and WordPress: the problems people actually run into, and the fixes that work. His server and WordPress guides come from systems he runs himself. Richard builds and maintains the platform behind Geek Rewind, from its Ubuntu servers and Nginx configuration to its custom WordPress plugins. Many new tutorials start with readers' questions, and he's always glad to answer them in the comments.

Advertisement

📚 Related Tutorials

How to Reset Group Policy Windows 11 to Default
Windows How to Reset Group Policy Windows 11 to Default
How to Enable Windows Hello Sign-In for Microsoft Accounts in Windows 11
Windows How to Enable Windows Hello Sign-In for Microsoft Accounts in Windows 11
How to Allow Windows Hello Secure Sign-in to Windows 11 Using a Fingerprint
Windows How to Allow Windows Hello Secure Sign-in to Windows 11 Using a Fingerprint
How to View Local Group Policies That Are Configured in Windows 11
Windows How to View Local Group Policies That Are Configured in Windows 11

No comments yet — be the first to share your thoughts!

Leave a Comment

Your email address will not be published. Required fields are marked *