{
  "$type": "site.standard.document",
  "bskyPostRef": {
    "cid": "bafyreigxyb5n6znr47xdfvtf32nsd6qozi6gxuhtlor5rguobg6f4xf6iq",
    "uri": "at://did:plc:haakkg7y3xdghcdmprxeexso/app.bsky.feed.post/3mqgj5ogkmpt2"
  },
  "path": "/t/encrypting-windows-11-home-ssd-local-account-device-encryption-ms-account-privacy-or-linux-dual-boot/39108#post_2",
  "publishedAt": "2026-07-12T05:33:00.000Z",
  "site": "https://discuss.privacyguides.net",
  "textContent": "newuser1:\n\n>   1. Is it actually possible to enable Windows “Device Encryption” on Windows 11 Home while strictly using a Local Account?\n>\n\n\nNo, it requires a MS account.\n\nnewuser1:\n\n>   2. what is the best way to create and maintain this account to minimize tracking and telemetry?\n>\n\n\nThere is no way you can control telemetry and tracking with a linked MS account.\n\nnewuser1:\n\n>   3. is there a reliable way to encrypt the entire drive (including the Windows partition) from the Linux sideso that both OSes are protected if the SSD or PC gets stolen\n>\n\n\nI don’t think so, encrypting the Windows partition with Linux would break the boot.\n\nI see two other options:\n\n  * You could switch Windows edition to Pro with MAS gravel and use bitlocker, if you’re comfortable with that.\n\n  * You can use Veracrypt knowing that in the past it had problems to boot especially after some update. You could avoid that just encrypting a data partition and leaving the system boot one alone.\n\n\n",
  "title": "Encrypting Windows 11 Home SSD: Local Account Device Encryption, MS Account Privacy, or Linux Dual-Boot?"
}