Define applications and processes that can access the Clipboard without prompting
Verified with Windows 11 25H2 — updated on July 23, 2026
Supported on: At least Internet Explorer 7.0
Path in the GPO console
Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Application Compatibility\Clipboard access User Configuration\Administrative Templates\Windows Components\Internet Explorer\Application Compatibility\Clipboard access Description
This policy setting allows you to define applications and processes that can access the Clipboard without prompting the user. Note: Do not enter the Internet Explorer processes in this list. To enable or disable Internet Explorer processes, use the "Bypass prompting for Clipboard access for scripts running in the Internet Explorer process" policy. If the "Bypass prompting for Clipboard access for scripts running in any process" policy setting is enabled, the processes configured in this policy setting take precedence over that policy setting. If you enable this policy setting and enter a value of 1, prompts are bypassed. If you enter a value of 0, prompts are not bypassed. Value Name is the name of the executable file. If Value Name is empty or the value is not 0 or 1, the policy setting is ignored. If you enable this policy setting for an application or process in the list, a script can perform a Clipboard operation without prompting the user. This means that if the zone behavior is currently set to prompt, it will be bypassed and enabled. If you disable this policy setting for an application or process in the list, a script that is running in the application or process cannot bypass the prompt for delete, copy, or paste operations from the Clipboard. If you do not configure this policy setting, current values of the URL action for an application or process in the list prevail.
Registry
Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl Value name: ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt
Enabled: ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt = 1
Disabled: ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt = 0
Export Builder
BETAConfigure the state, scope and options, then generate .reg, PowerShell, Intune and SCCM outputs — or add the setting to a multi-setting collection.
These exports write the registry — this is not a managed GPO. ⓘ
Applying both scopes creates an ambiguous configuration (computer takes precedence over user). Only do this intentionally.
.reg file
Windows Registry Editor Version 5.00
; Exported from gporais.com
; Policy: Define applications and processes that can access the Clipboard without prompting
; State: Enabled
; Scope: Computer (HKLM)
; Supported on: At least Internet Explorer 7.0
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl]
"ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt"=dword:00000001
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Script_Paste_URLAction_If_Prompt]
; List values: enter one value per line in the builder UI. More formats (PowerShell, Intune, SCCM)
PowerShell
# Exported from gporais.com
# Policy: Define applications and processes that can access the Clipboard without prompting
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 7.0
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt' -Value 1 -Type DWord
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Script_Paste_URLAction_If_Prompt'
New-Item -Path $path -Force | Out-Null
# List values: enter one value per line in the builder UI. Intune XML
No direct Policy CSP / OMA-URI mapping for this policy. Use the Intune Remediation tab, or ingest the ADMX in Intune. Intune Remediation
# === Detection script ===
# Exported from gporais.com
# Policy: Define applications and processes that can access the Clipboard without prompting
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 7.0
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
# HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Script_Paste_URLAction_If_Prompt: List values: enter one value per line in the builder UI.
$checks = @(
(Test-RegistryValue -Path 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl' -Name 'ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Define applications and processes that can access the Clipboard without prompting
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 7.0
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt' -Value 1 -Type DWord
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Script_Paste_URLAction_If_Prompt'
New-Item -Path $path -Force | Out-Null
# List values: enter one value per line in the builder UI. SCCM scripts
# Exported from gporais.com
# Policy: Define applications and processes that can access the Clipboard without prompting
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 7.0
# SCCM Configuration Item guidance:
# Create a Configuration Item of type "Setting: Script".
# Discovery script: use the Detection script below.
# Remediation script: use the Remediation script below.
# Compliance rule: the Discovery script output equals 'Compliant'.
# === Detection script ===
# Exported from gporais.com
# Policy: Define applications and processes that can access the Clipboard without prompting
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 7.0
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
# HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Script_Paste_URLAction_If_Prompt: List values: enter one value per line in the builder UI.
$checks = @(
(Test-RegistryValue -Path 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl' -Name 'ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Define applications and processes that can access the Clipboard without prompting
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 7.0
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ListBox_Support_Feature_Enable_Script_Paste_URLAction_If_Prompt' -Value 1 -Type DWord
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\Feature_Enable_Script_Paste_URLAction_If_Prompt'
New-Item -Path $path -Force | Out-Null
# List values: enter one value per line in the builder UI. Building a multi-setting collection? Add this setting and generate combined .reg / PowerShell / GPO scripts.