en-US

Enable Application Bound Encryption

Supported on: Microsoft Edge version 127, Windows 7 or later

Registry

HKLM Software\Policies\Microsoft\Edge
HKCU Software\Policies\Microsoft\Edge

Value name: ApplicationBoundEncryptionEnabled

Enabled: ApplicationBoundEncryptionEnabled = 1

Disabled: ApplicationBoundEncryptionEnabled = 0

Description

Enabling this policy or leaving it unset binds the encryption keys used for local data storage to Microsoft Edge whenever possible. Disabling this policy has a detrimental effect on Microsoft Edge's security because unknown and potentially hostile apps can retrieve the encryption keys used to secure data. Only turn off this policy if there are compatibility issues, such as scenarios where other applications need legitimate access to Microsoft Edge's data. Encrypted user data is expected to be fully portable between different computers or the integrity and location of Microsoft Edge's executable files isn’t consistent.