Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
Windows 11, version 26H2 is the next annual feature update for Windows 11. It builds on the same servicing foundation as Windows 11, versions 25H2 and 24H2, helping organizations adopt the latest release with minimal disruption. Devices running eligible versions of Windows 11 can move to version 26H2 through a small enablement package rather than a full operating system upgrade.
Because Windows 11, versions 26H2, 25H2, and 24H2 share a common servicing branch, many new features and improvements have already been delivered through monthly servicing updates. Version 26H2 enables selected features and resets the support lifecycle for the new release.
Servicing and deployment
Windows 11, version 26H2 provides a familiar update experience:
- Delivered as an enablement package for eligible devices running Windows 11, versions 25H2 and 24H2.
- Fast installation with a single restart in most scenarios.
- Reduced validation effort because supported versions share the same underlying platform.
- Consistent management, security, and update experiences across supported releases.
Features enabled by default in version 26H2
For commercial organizations, Windows 11, version 26H2 enables capabilities that were introduced previously but controlled through temporary commercial controls.
Windows settings backup
Windows settings backup is now enabled by default for eligible commercial devices. This helps organizations preserve supported Windows settings and Microsoft Store app lists for recovery and device replacement scenarios. Existing administrator-configured policies continue to be honored.
App-specific actions from the taskbar
Windows 11, version 26H2 enables app-specific taskbar actions by default for commercial devices. Users can thus access common actions directly from taskbar experiences.
File Explorer enhancements
Several File Explorer improvements that were previously under temporary commercial controls are enabled by default in Windows 11, version 26H2. These enhancements focus on improving navigation and usability within File Explorer.
Features added to Windows 11 since version 25H2
Windows continues to use continuous innovation. That is, throughout the year, monthly quality updates deliver new experiences, security improvements, and management capabilities. Some features that organizations associate with Windows 11, version 26H2 might already be present on devices before the feature update is installed. Windows 11, version 26H2 activates and consolidates those improvements into the latest annual release.
For more information about continuous innovation, see Update release cycle for Windows clients.
Security and sign-in
Administrator protection helps protect administrators. It enables administrative tasks using just-in-time privileges rather than free-floating administrator rights. Administrator protection introduces profile separation to help harden Windows against elevation-of-privilege attacks. The feature is off by default. You can enable it using Microsoft Intune or Group Policy.
System Monitor (Sysmon) is now built into Windows. Sysmon captures system events that you can use for threat detection. It supports custom configuration files to filter the events you want to monitor. Captured events appear in Windows Event Log, allowing security tools and other applications to use them. Built-in Sysmon is off by default. Enable it to use it.
You can turn Smart App Control (SAC) on or off without requiring a clean installation of Windows. When turned on, Smart App Control helps block untrusted or potentially harmful apps.
Windows supports plugin credential managers for passkeys. After installing a credential manager application that supports integration, users can use existing passkeys stored in the credential manager or save new passkeys to it. Windows also supports setting up a PIN for security keys during authentication when required.
Windows Hello Enhanced Sign-in Security (ESS) supports compatible peripheral fingerprint sensors. This capability extends Enhanced Sign-in Security beyond devices with built-in fingerprint sensors to desktops and other Windows 11 PCs, including Copilot+ PCs.
Windows driver security has evolved. Windows changes how the Windows kernel trusts third-party drivers. Default trust for cross-signed drivers is removed. What remains allowed are drivers from the Windows Hardware Compatibility Program (WHCP) and an allow list of trusted legacy drivers. Windows audits driver compatibility for at least 100 hours and three restarts before enabling enforcement.
Windows adds API support for NIST post-quantum cryptography algorithms ML-KEM and ML-DSA in accordance with FIPS 203 and FIPS 204. You can use these algorithms for key exchange, signing, and decryption through Cryptography. You can also use Next Generation (CNG) and .NET. ML-KEM as a standalone algorithm for TLS key exchange.
Device management, deployment, and recovery
Device association for Windows Autopilot device preparation helps organizations identify trusted devices before enrollment. Device association enables device-targeted policies, automatic corporate device enrollment, and additional setup customization during the out-of-box experience (OOBE).
The first sign-in restore experience in Windows settings backup and restore supports Microsoft Entra hybrid joined devices, Cloud PCs, and multi-user environments. You can restore user settings and Microsoft Store app list automatically at first sign-in. This helps provide a consistent experience during device refreshes, upgrades, and migrations. You can also now manage Enterprise State Roaming through Windows settings backup policies.
Point-in-time restore for Windows provides a recovery option that can roll back a PC, including apps, settings, and personal files, to a recent automatic restore point. This capability can help reduce downtime and simplify troubleshooting when issues occur.
Quick machine recovery can perform a one-time scan for remediation when quick machine recovery and automatically check for solutions are both turned on. If a solution isn't immediately available, quick machine recovery directs users to other recovery options. For domain-joined or enterprise-managed devices, the feature remains off unless you enable it.
With policy-based removal of preinstalled Microsoft apps, you can specify additional MSIX or APPX packaged apps for removal. Use their app package family names through Group Policy.
User experience
File Explorer includes several productivity and performance improvements:
- AI actions in File Explorer enable users to edit supported images or summarize documents. The Summarize action in Copilot can summarize files stored in OneDrive and SharePoint without opening the files. This action requires an active Microsoft 365 subscription and Copilot license.
- Users signed in with a work or school account can access quick actions such as Open file location and Ask Copilot when they hover over files in File Explorer Home.
- File Explorer supports additional archive formats, including
uu,cpio,xar, and NuGet Packages (nupkg). - View and Sort preferences are preserved in folders such as Downloads and Documents when apps launch File Explorer directly to those locations.
- Use voice typing when renaming a file.
- File Explorer Home launches faster and is more responsive.
Windows Search offers improvements that make search results easier to find and understand:
- Preview search results without opening the item.
- App search better handles typos and partial app names when finding installed apps.
- Search results provide clearer information about whether a result is an app, setting, file, web result, or Microsoft Store suggestion.
- Windows can automatically index frequently used folders to help files in those locations appear in subsequent search results. Manage this setting in Settings > Privacy & security > Search.
The redesigned Start menu includes a scrollable All section, as well as category and grid views for finding apps. Its responsive layout adapts to the display size. Users can choose a Start menu size and independently show or hide the Pinned, Recent, and All sections.
The taskbar provides additional customization options. Users can position the taskbar at the bottom, top, left, or right side of the screen. A smaller taskbar option is also available to reduce taskbar icon size and taskbar height. Windows also provides a way to monitor supported AI agents from the taskbar. Researcher in Microsoft Copilot is the first supported experience. Users can view progress from the taskbar and receive a notification when work is complete.
Multi-App Camera allows multiple applications to access the camera stream at the same time. Basic Camera mode provides simplified camera functionality that you can use for troubleshooting or improving stability. Configure Multi-App Camera and Basic Camera modes through Group Policy.
Windows includes improvements to Bluetooth reliability and performance. These include improvements for Bluetooth LE Audio, voice calls, microphone mute synchronization, and reconnection after hibernation. USB improvements increase reliability for displays connected through USB4 docks and hubs, particularly when devices resume from standby.
Windows Update reduces the number of restarts required to keep devices up to date. It now installs eligible updates together with the monthly security update when possible. Individual updates remain available under Settings > Windows Update > Available updates. Expedited or critical updates might continue to be installed separately. Windows Update also improves restart behavior for devices that you manually put to sleep. After completing an update, the device returns to sleep even when you set automatic sleep to Never.
Accessibility
Magnifier provides clearer and more consistent announcements when used with a screen reader. Users can also enter a specific zoom percentage, adjust zoom increments from the Magnifier window, and apply a full-screen color tint to help reduce eye strain and improve readability.
Narrator includes Braille Viewer, which displays on-screen text and its Braille equivalent on a refreshable Braille display. Narrator provides additional improvements for reading and navigating Microsoft Word. Users also have more control over which details about on-screen controls are announced and the order in which they're announced.
Voice access supports natural language commands on supported Copilot+ PCs. There’s now more flexibility to use filler words and synonyms instead of predefined commands. Voice access also adds French, German, Spanish, and Korean language support. Additionally, Voice Isolation helps reduce interference from other speakers and background noise.
IT administration
Task Manager provides admins and end users with additional visibility into NPU usage on PCs with an NPU. Optional NPU and NPU Engine columns are available on the Processes, Users, and Details pages. Optional NPU Dedicated Memory and NPU Shared Memory columns are available on the Details page. Neural engines that are part of a GPU also appear on the Performance page. An optional Isolation column on the Processes and Details pages shows which applications are running in an AppContainer.
Administrators and Application Control for Business policy authors have additional control over how Windows processes batch files and Command Prompt scripts. You can administratively enable a more secure processing mode that prevents batch files from changing during execution.
Features removed in Windows 11, version 26H2
The following deprecated features are removed in Windows 11, version 26H2:
- Windows Management Instrumentation Command-line (WMIC) has been removed from Windows 11, version 24H2 and above. WMIC is no longer available as a Feature on Demand (FoD) on these versions.