Local Tech Fix (626) 655-0020
All articles

Windows 11 Won't Let You Skip the Microsoft Account. Here's How to Use a Local One — and What It Costs You

August 10, 2026

The setup screen gives you no visible way out, and every "trick" you find online is one Windows update away from vanishing. There is a stable, supported route to a local account — and a short list of things it quietly turns off that nobody mentions.

windows wallpaper with floating 3d shapes
Photo by Philip Oroni on Unsplash

This is now one of the most common questions we get on a new-computer setup. You unbox a Windows 11 laptop, start it up, and the setup wizard asks for Wi-Fi and then for a Microsoft account — with no "skip" button, no "create a local account instead," and no obvious way forward unless you sign in or create one. People reasonably assume they are being forced into something, and they want to know whether they have a choice.

You do have a choice, but it is not the one most of the internet is offering you. Nearly every article on this subject is a list of command-line tricks to run at the setup screen, and those tricks are the least reliable part of the whole story. There is a supported, documented route to a local account that works the same way on every Windows 11 machine — and there is a real, specific cost to taking it that almost nobody spells out. Here is both halves.

Two different questions, and only one has a stable answer

It helps to separate what people are actually asking. The first question is "can I get through the setup screens without ever touching a Microsoft account?" The second is "can this computer end up running on a local account?" They sound the same and they are not, and the answers are very different in quality.

The first question has an answer that changes every few months. The second has an answer that has been documented by Microsoft for years and works on every edition of Windows 11 we have seen. If your goal is a local account — and for most people it is, the setup screens are just the obstacle — then aim at the second question and ignore the first.

Why the setup-screen tricks keep dying

The workarounds you will find online are commands typed into a hidden command prompt during setup, and Microsoft has been actively removing them. When it pulled the best-known one, Microsoft said so plainly on its own Windows Insider blog: "We're removing the bypassnro.cmd script from the build to enhance security and user experience of Windows 11. This change ensures that all users exit setup with internet connectivity and a Microsoft Account."

That is about as clear a statement of direction as you get. Successor tricks have appeared and been closed off in turn, and which ones survive depends on exactly which build your particular machine shipped with — which is why two people with the same model of laptop can follow the same guide and get different results. We are deliberately not printing a command here, because any command we print has a decent chance of being wrong for your machine by the time you read this, and a half-finished setup is a much worse place to be than a finished one.

The practical advice: do not plan your new computer around a trick. If you happen to be offered a "limited setup" or offline option on your machine, fine, take it. If you are not, just finish setup normally and switch afterwards. It takes about two minutes and it cannot leave you stranded.

The supported way: finish setup, then switch

Sign in or create a Microsoft account, let setup complete, and get to the desktop. Then go to Settings, then Accounts, then Your info, and choose "Sign in with a local account instead." Windows asks you to pick a username, a password and a password hint, then signs you out so you can sign back in on the new local account. That path is on Microsoft's own support pages, not a forum post, which is exactly why it is the one to use.

One thing that confuses people: the "Sign in with a local account instead" link only appears if you are currently signed in with a Microsoft account. If you cannot find it, you are almost certainly already on a local account.

You are converting the account, not making a new one, so your desktop, your files, your installed programs and your settings all come with you. Nothing is wiped. And it is reversible in the same place if you change your mind later.

It is only fair to note that Microsoft does not recommend this. Its own page says, in as many words, that Microsoft recommends using a Microsoft account rather than a local account when signing in to Windows. That is not purely self-interest, either — as the next few sections explain, some of the reasons are genuinely about protecting you.

What you give up, part 1: your encryption stops being real

This is the big one, it is the reason we are careful about recommending local accounts on laptops, and it is missing from essentially every guide on this topic.

Modern Windows 11 machines switch on device encryption by themselves — you did not turn it on and Windows did not ask. But that encryption is not finished the moment it starts. Windows first encrypts the drive using what it calls a clear key, which is roughly what it sounds like: the data is scrambled, but the key to unscramble it is sitting right there on the machine. The encryption only becomes real protection once Windows can hand the recovery key somewhere safe and replace that clear key with one locked to the TPM chip.

On a home computer, "somewhere safe" means your Microsoft account. Microsoft's own documentation describes the sequence: a Microsoft account with administrative privileges on the device is required, and when that administrator signs in, the clear key is removed, a recovery key is uploaded to the online Microsoft account, and a TPM protector is created. And then it states the consequence outright: if a device uses only local accounts, then it remains unprotected even though the data is encrypted.

Read that last line twice, because it is the whole point. A local-account machine can look encrypted, report itself as encrypted, and still hand its contents over to anyone who walks off with it. If the laptop leaves your house, that matters a great deal.

There is a flip side, and it is a genuine benefit: if the encryption never fully arms, it also cannot ambush you with a demand for a 48-digit recovery key you have never seen — which is one of the most miserable situations we get called about. So it is a trade, not a trap. You are choosing "cannot be locked out, not really protected" over "protected, but you had better know where the key lives."

If you go local and you do want real encryption, you have to do the escrow yourself: turn BitLocker on deliberately, then save the recovery key somewhere that is not the computer — printed, or in a password manager, or on a USB stick in a drawer. Nobody is holding a spare copy for you anymore. That is the part people forget, and it is unforgiving.

What you give up, part 2: the easy way back in

With a Microsoft account, a forgotten Windows password is an inconvenience: you reset it from your phone or another computer, and you are back in. With a local account, the password lives only on that machine, and there is no online reset.

Microsoft flags this on the same page that tells you how to switch, and the warning is blunt — it advises creating a password reset disk, and notes that if you do not, and you then forget your password, you will not be able to recover it. That is worth taking literally. A local account with no reset disk and a forgotten password is one of the harder situations to get out of, and on an encrypted drive it can be genuinely unrecoverable.

So if you switch, make the reset disk the same afternoon. It is a USB stick and about a minute of work, and it is the single cheapest insurance policy in this entire article.

What you give up, part 3: finding a stolen laptop

Windows has a built-in Find my device feature that can locate and lock a missing PC. It requires signing in with a Microsoft personal account, and an account type of Administrator — a local account cannot use it at all.

For a desktop tower that never moves, this is irrelevant. For a laptop that goes to cafes, offices, airports and the back seat of a car, it is one of the few things that can actually help after the worst has happened. Combine it with the encryption point above and you get our honest position: a travelling laptop is the case where the Microsoft account genuinely earns its keep.

What you give up, part 4: the small conveniences

The rest is smaller and mostly a matter of taste. Settings, themes and preferences no longer follow you to another PC. OneDrive, the Microsoft Store and anything else tied to your account will each ask you to sign in individually rather than being signed in already. Browser bookmarks and saved passwords stop syncing through Edge unless you sign into Edge separately.

Worth being clear about what does not change, because people worry about this: a local account is a completely normal Windows account. Windows Update still works. You can still install and run whatever software you like. Your antivirus, your printer, your email program and your files all behave exactly the same. You are changing how you sign in to the computer, not what the computer can do.

A note for small businesses

If you run a small business, there is a third option that is neither of these, and it is usually the right one: a work account through Microsoft 365, which gives you central control over who can sign into what, the ability to cut off a departing employee's access in one place, and — relevant to everything above — recovery keys escrowed to the business rather than to one person's personal account.

The failure mode we see repeatedly is a business machine set up on an employee's personal Microsoft account. When that person leaves, the company owns the laptop but not the account holding its encryption key, its licences and sometimes its files. If that describes any machine in your office, it is worth sorting out before it becomes urgent rather than after.

So which should you pick?

Our rule of thumb, and we give this advice on setups every week. If it is a laptop that leaves the house, use the Microsoft account. The encryption escrow and Find my device are real protections against a real risk, and the sign-in convenience is a bonus rather than the point.

If it is a desktop that never moves, a shared family machine in the kitchen, or a spare PC, a local account is perfectly reasonable and we will happily set one up. Just do the two compensating steps: make a password reset disk, and if you enable encryption, save the recovery key somewhere off the machine.

And if the reason you want a local account is privacy rather than convenience, that is a legitimate reason and we are not going to talk you out of it. Just go in knowing that you are taking over two jobs Microsoft was quietly doing for you — holding your encryption key and holding your password reset — and that both of them only matter on the day something goes wrong.

How we can help

We set up new Windows computers across Southern California and the Coachella Valley, in person or by remote support, and this decision comes up on nearly every one. We will talk you through which account type actually suits how you use the machine, do the switch properly if a local account is the right call, and — the part that matters most — make sure the recovery key and password reset are genuinely saved somewhere you can reach them, instead of assuming somebody else is holding a copy.

We also untangle the aftermath when the assumption turns out to be wrong: a local-account PC with a forgotten password, a business laptop locked to a former employee's personal account, or a drive that turns out to have been encrypted with a key nobody ever wrote down. Those are all much easier to prevent than to fix, so if you are setting up a new machine, this is a good five-minute conversation to have first.

Keep reading

Free calculators

Service areas we cover

Want a second opinion before you buy?

We don't sell hardware or warranties — call and we'll tell you what's worth buying and upgrading.

Call (626) 655-0020

Gear we recommend

All gear →