Unable to remove secure key

D 0 Reputation points
2026-06-06T02:49:31.85+00:00

Secure key is enabled, somehow, possibly by someone trying to compromise account. Unable to disable, and unable to reach microsoft support to have it removed.

Windows for home | Windows 10 | Windows Hello, lock screen and sign-in
0 comments No comments

2 answers

Sort by: Most helpful
  1. CrazyKats 16,650 Reputation points Volunteer Moderator
    2026-06-06T17:15:41.1466667+00:00

    @Rayyan Fawad Moderator advice.

    Please stop copy & pasting replies as

    it is causing you to double post the same

    info in the same answer. I have edited it

    out.

    Was this answer helpful?

    0 comments No comments

  2. Rayyan Fawad 1,075 Reputation points
    2026-06-06T07:44:33.7966667+00:00

    Take a deep breath, @D —your account is very likely completely secure, and you haven't been hacked. What you are running into is a notoriously stubborn Windows 10 credential glitch where a FIDO2 security key or a Windows Hello PIN biometric registration gets "ghost locked" in a local hardware loop. When this happens, Windows grays out the remove button in your standard settings panel, making it look like someone else is gatekeeping your account.

    Since the standard settings UI is deadlocked, you can completely bypass it and force-delete the stuck key by clearing out the physical hardware container on your motherboard:

    Method 1: Clear the Hardware Key Container via File Explorer

    Windows stores your encrypted Windows Hello and security key data inside a highly protected system folder. Purging it forces Windows to drop the lock:

    Open File Explorer and navigate straight to this path: C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft

    Look for a folder named Ngc.

    If Windows blocks you from opening or deleting it, right-click the Ngc folder, go to Properties > Security > Advanced, change the Owner at the top to your current Windows username, check the box for "Replace owner on subcontainers and objects", and hit Apply.

    Once you have access, delete everything inside the Ngc folder and restart your PC. Your ghost key will be entirely stripped away, allowing you to set up your sign-in options completely fresh!

    Method 2: Reset the TPM (Trusted Platform Module)

    If the key is physically bound to your motherboard's security chip and refuses to drop via File Explorer, resetting your security processor will flush it clean:

    Press the Windows Key + R, type tpm.msc into the box, and press Enter.

    When the Trusted Platform Module management console loads, look at the Actions panel on the right side.

    Click Clear TPM... and follow the prompts to restart your computer.

    • _Note: This will safely wipe all cached hardware-bound PINs and keys from your device without touching any of your personal files, photos, or data, letting you regain absolute control over your sign-in preferences instantly!_Take a deep breath, D—your account is very likely completely secure, and you haven't been hacked. What you are running into is a notoriously stubborn Windows 10 credential glitch where a FIDO2 security key or a Windows Hello PIN biometric registration gets "ghost locked" in a local hardware loop. When this happens, Windows grays out the remove button in your standard settings panel, making it look like someone else is gatekeeping your account. Since the standard settings UI is deadlocked, you can completely bypass it and force-delete the stuck key by clearing out the physical hardware container on your motherboard:

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.