System Enable or Disable Experimental Agentic Features in Windows 11

  • Thread starter Thread starter Brink
  • Start date Published: Start date Updated Updated:

Agentic_header.webp

This tutorial will show you how to enable or disable experimental agentic features for all users in Windows 11.

Starting with Windows 11 build 26220.7262 (Dev and Beta), Microsoft has added a new Experimental agentic features toggle in the Settings app that allows agents to use new Windows agentic features.

AI-powered apps help you automate everyday tasks—like organizing files, scheduling meetings, or sending emails—so you can spend less time on busy work and more time on what matters most. One powerful way apps are implementing AI today is by interacting with your apps and your files, using vision and advanced reasoning to click, type and scroll like a human would. One such experience is an experimental feature called Copilot Actions available to Windows insiders in Copilot Labs . With Copilot Actions you have an active digital collaborator that can carry out complex tasks for you to enhance efficiency and productivity.

Windows is committed to making agentic experiences with apps more productive and secure for individuals and enterprises. As part of this vision, Windows is introducing a new experimental feature — agent workspace — available in a private developer preview for Windows Insiders in a release coming soon. This early preview reflects our phased approach to delivering agentic capabilities, starting with limited access to gather feedback and strengthen foundational security. Agent workspaces represent a key step in enabling intelligent, agent-powered computing. Security in this context is not a one-time feature — it’s a continuous commitment. As agentic features evolve, so will our security controls, adapting to each phase of rollout from preview to broad availability.

An agent workspace is a separate, contained space in Windows where you can grant agents access to your apps and files so they can complete tasks for you in the background while you continue to use your device. Each agent operates using its own account, distinct from your personal user account. This dedicated agent account establishes clear boundaries between agent activity and your own, enabling scoped authorization and runtime isolation. As a result, you can delegate tasks to agents while retaining full control, visibility into agent actions, and the ability to manage access at any time.

Agents typically get access to known folders or specific shared folders, and you can see this reflected in the folder’s access control settings. Each agent has its own workspace and its own permissions—what one agent can access doesn’t automatically apply to others. These workspaces are designed to be lightweight and secure, with memory and CPU usage scaling based on activity. Windows will be adding different kinds of workspaces with different capabilities over time. For this initial preview release, agent workspace runs in a separate Windows session, allowing agents to interact with apps in parallel to your own session. For common operations, this setup is more efficient than a full virtual machine such as Windows Sandbox, while still providing security isolation, support for parallel execution, and keeping the user in control. The overall experience and security model are actively being refined to support key principles of transparency, safety, and user control.

Agent workspace is only enabled when you toggle on the experimental agentic feature setting. The feature is off by default.

We recommend that you only enable this feature if you understand the security implications outlined on this page. This setting can only be enabled by an administrator user of the device and once enabled, it’s enabled for all users on the device including other administrators and standard users.

The experimental agentic feature setting enables:
  • The creation of agent accounts that provide agents with their own separate account on your device when acting on your behalf. Windows is using a phased approach to add stricter rules for agent accounts in upcoming releases.
  • The creation of the agent workspace where agents can work in parallel with a human user, enabling runtime isolation and scoped authorization. This provides the agent with capabilities like its own desktop while limiting the visibility and accessing the agent has to the user’s desktop activity.
  • Agentic apps like Copilot can request and get access to these six commonly used folders in your user profile directory while running in the agent workspace: Documents, Downloads, Desktop, Music, Pictures, and Videos.
When running in the agent workspace, the agentic app has access to the apps that are available to all users by default. To limit access, you can install apps for specific users or specifically for your agents.

Agentic accounts have limited access to your user profile directory (C:\Users\<username>\) while operating in the agent workspace. If an agent needs access to files in that directory, Windows grants read and write access to the following known folders: Documents, Downloads, Desktop, Videos, Pictures, Music when the setting is enabled. You may have these folders in the standard location, or you may have redirected them elsewhere on the filesystem.

To limit access to these folders, turn the experimental agentic feature setting off.

Agent accounts have access to any folders that all authenticated users have access to, e.g. public user profiles.

Experimental agentic features are still being tested and may impact the performance or security of your device.


References:

You must be signed in as an administrator to enable or disable experimental agentic features.




Contents

  • Option One: Turn On or Off Experimental Agentic Features in Settings
  • Option Two: Turn On or Off Experimental Agentic Features using REG file




Option One

Turn On or Off Experimental Agentic Features in Settings


1 Open Settings (Win+I).

2 Click/tap on System on the left side, and click/tap on AI components on the right side. (see screenshot below)


Experimental_agentic_features_Settings-1.webp

3 Under Agent settings, turn on or off (default) Experimental agentic features for what you want. (see screenshot below)

Experimental_agentic_features_Settings-2.webp

4 If you turned on Experimental agentic features, click/tap on Turn on to confirm. (see screenshot below)

Experimental_agentic_features_Settings-3.webp

5 You can now close Settings if you like.




Option Two

Turn On or Off Experimental Agentic Features using REG file


1 Do step 2 (on) or step 3 (off) below for what you would like to do.

2 Turn On Experimental Agentic Features

A) Click/tap on the Download button below to download the file below, and go to step 4 below.​

Turn_ON_Experimental_agentic_features.reg


(Contents of REG file for reference)
Code:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IsoEnvBroker]
"Enabled"=dword:00000001

3 Turn Off Experimental Agentic Features

This is the default setting.


A) Click/tap on the Download button below to download the file below, and go to step 4 below.​

Turn_OFF_Experimental_agentic_features.reg


(Contents of REG file for reference)
Code:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IsoEnvBroker]
"Enabled"=dword:00000000

4 Save the .reg file to your desktop.

5 If you have Smart App Control turned on, you will need to unblock the downloaded REG file.

6 Double click/tap on the downloaded .reg file to merge it.

7 When prompted, click/tap on Run, Yes (UAC), Yes, and OK to approve the merge.

8 You can now delete the downloaded .reg file if you like.


That's it,
Shawn Brink


 

Attachments

Last edited:
Thankfully not there yet but nice to know for when it hits the public release. I'm one of the old curmudgeons who's not a big fan of all the invasive AI making its way into just about everything we do.
 

My Computer

System One

  • OS
    11 Pro 25H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI
    CPU
    i7-10750H
    Motherboard
    MSI MS-17F5
    Memory
    16GB Samsung DDR4 3200
    Graphics Card(s)
    Intel + Nvidia RTX3060 Laptop
    Sound Card
    Realtek
    Monitor(s) Displays
    Samsung 24" Curved (HDMI)
    Screen Resolution
    1920x1080
    Hard Drives
    Sabrent Rocket Gen3 1Tb Smasung EVO 870 1TB
    Antivirus
    Bitdefender
Thankfully not there yet but nice to know for when it hits the public release. I'm one of the old curmudgeons who's not a big fan of all the invasive AI making its way into just about everything we do.
I agree totally. Check out "Remove Windows AI" on GitHub GitHub - zoicware/RemoveWindowsAI: Force Remove Copilot, Recall and More in Windows 11
I've added it to a Scheduled Task that runs after each Windows Update on all my computers, to fix the things that Micro$$$haft breaks with each update.
 

My Computer

System One

  • OS
    Win 10 pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    several (Dell, HP, custom build, Lenovo, ASUS, etc.)
    CPU
    several
    Motherboard
    several
    Browser
    Firefox
    Other Info
    I have many computers, mostly Dell and HP.
I wonder what agent & agentic mean. MS does not seem to define these terms.


Denis
 

My Computer

System One

  • OS
    Windows 11 Home x64 Version 25H2 Build 26200.8037
 

My Computer

System One

  • OS
    Home26H2Can
    Computer type
    PC/Desktop
    CPU
    AMD Ryzen 5 8600G (07/24)
    Motherboard
    ASROCK B650M-HDV/M.2 (07/24) BIOS 4.21 AGESA ComboAM5 1.3.0.1 (04/26)
    Memory
    2x32GB Kingston FURY DDR5 5600 MHz CL36 @5200 CL36 (07/24)
    Graphics Card(s)
    ASROCK Radeon RX 6600 Challenger D 8G @48FPS (08/24)
    Sound Card
    Creative Sound BlasterX AE-5 Plus (05/24)
    Monitor(s) Displays
    24" Philips 24M1N3200ZS/00 (05/24)
    Screen Resolution
    1920×1080@165Hz via DP1.4
    Hard Drives
    Kingston KC3000 NVMe 2TB (05/24)
    ADATA XPG GAMMIX S11 Pro 512GB (07/19)
    PSU
    Seasonic Core GM 550 Gold (04/24)
    Case
    Fractal Design Define 7 Mini with 3x Noctua NF-P14s/12@555rpm (04/24)
    Cooling
    Noctua NH-U12S with Noctua NF-P12 (04/24)
    Keyboard
    HP Pavilion Wired Keyboard 300 (07/24) + Rabalux 76017 Parker (01/24)
    Mouse
    Logitech M330 Silent Plus (01/26)
    Internet Speed
    500/100 Mbps via RouterOS (05/21) & TCP Optimizer
    Browser
    Edge, Brave for YouTube, LibreWolf for FB
    Antivirus
    NextDNS blocking 1/3 Traffic
    Other Info
    Phone: Motorola Moto G86 (02/26)
    Backup: Hasleo Backup Suite (PreOS)
    Headphones: Sennheiser RS170 (09/10)
    Chair: Huzaro Force 4.4 Grey Mesh (05/24)
    Notifier: Xiaomi Mi Band 9 Milanese (10/24)
    FlexCore USB-C 3.2 Gen 1 (M) to LAN (F) (08/25)
I find, more and more, MS uses evasive language that sounds important but probably leaves the average user thinking "WTF is that!!!"
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    ASUS ROG Strix
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    ASUS VivoBook
I wonder what agent & agentic mean. MS does not seem to define these terms.


Denis

wow. they've not only given a link when you go to opt-in but it's been discussed for like a year.



Securing AI agents on Windows

Enable Experimental Agentic Features​

The experimental agentic features setting is off by default. This feature has no AI capabilities on its own, it is a security feature for agents like Copilot Actions. Enabling this toggle allows the creation of a separate agent account and workspace on the device, providing a contained space to keep agent activity separate from the user.
 

My Computer

System One

  • OS
    Windows 11
Back
Top Bottom