Policy
Turn off shell protocol protected mode
Windows 11 25H2
Policy overview
Key metadata and intent for this policy.
Supported OS tags: Windows10, Windows10RT, Windows11, Windows7, Windows8, Windows81, WindowsRT, WindowsRT81, WindowsServer2008, WindowsServer2012, WindowsServer2012R2, WindowsServer2016, WindowsVista, WindowsXP
This policy setting allows you to configure the amount of functionality that the shell protocol can have. When using the full functionality of this protocol, applications can open folders and launch files. The protected mode reduces the functionality of this protocol allowing applications to only open a limited set of folders. Applications are not able to open files with this protocol when it is in the protected mode. It is recommended to leave this protocol in the protected mode to increase the security of Windows. If you enable this policy setting the protocol is fully enabled, allowing the opening of folders and files. If you disable this policy setting the protocol is in the protected mode, allowing applications to only open a limited set of folders. If you do not configure this policy setting the protocol is in the protected mode, allowing applications to only open a limited set of folders.
Registry values
How enabled and disabled states update the registry.
| Registry location | Type | Enabled value | Disabled value |
|---|---|---|---|
| HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\PreXPSP2ShellProtocolBehavior | REG_DWORD | 1 | 0 |
Policy elements
Inputs and configuration options exposed by this policy.
This policy has no additional user input fields.
Other policies in this category
Explore related policies at the same level.
- UserAllow only per user or approved shell extensionsAt least Windows 2000
- ComputerAllow the use of remote paths in file shortcut iconsAt least Windows Server 2012, Windows 8 or Windows RT
- ComputerConfigure Windows Defender SmartScreenAt least Windows Server 2012, Windows 8 or Windows RT
- ComputerDisable binding directly to IPropertySetStorage without intermediate layers.At least Windows Vista
- UserDisable binding directly to IPropertySetStorage without intermediate layers.At least Windows Vista
- UserDisable Known FoldersAt least Windows Server 2008 R2 or Windows 7
- UserDisplay confirmation dialog when deleting filesAt least Windows Server 2003 operating systems or Windows XP Professional
- UserDisplay the menu bar in File ExplorerAt least Windows Vista
- UserDo not allow Folder Options to be opened from the Options button on the View tab of the ribbonAt least Windows 2000
- ComputerDo not apply the Mark of the Web tag to files copied from insecure sourcesAt least Windows Server 2012, Windows 8 or Windows RT
- UserDo not display the Welcome Center at user logonWindows Vista only
- UserDo not move deleted files to the Recycle BinAt least Windows Server 2003 operating systems or Windows XP Professional