Can You Disable a Preservation Lock in Microsoft 365?
Question details
The user wants to know if it is possible to disable, delete, or reduce the restrictions of a preservation lock on a Microsoft 365 retention policy.

- Product
- Microsoft 365
- Device & OS
- not provided
- Scenario
- An administrator is attempting to modify, disable, or delete a retention policy that has been secured with a preservation lock.
- Observed behavior
- The system prevents all users, including global administrators, from turning off the preservation lock or making the retention policy less restrictive, even when using PowerShell.
Verify your administrative privileges (Global Administrator or Compliance Administrator) in the Microsoft Purview compliance portal before attempting to review or adjust policy settings.
Understand Preservation Lock Limitations and Permitted Actions
A preservation lock is designed to be permanent, but you can still make specific, permitted adjustments to increase the policy's restrictiveness.
A preservation lock is designed to meet strict regulatory compliance requirements (like SEC Rule 17a-4). Once applied to a retention policy, no one—including Global Administrators—can turn it off, delete the policy, or make it less restrictive.
Even administrative tools like PowerShell cannot bypass this security measure. However, Microsoft allows you to modify the policy in ways that strictly increase restrictions or expand the scope of the protected data.
Log in to the Microsoft Purview compliance portal and navigate to Data lifecycle management > Microsoft 365 > Retention policies.
Click on the retention policy that has the preservation lock enabled to view its current details and restrictions.
Click 'Edit' on the locations section. You are permitted to add new protected locations, such as additional SharePoint sites, OneDrive accounts, or Exchange mailboxes.
Modify the retention settings to extend the duration of the policy. Note that you can only increase the time period; attempting to shorten it will be blocked by the lock.

Contact Microsoft Support for Escalation
If the lock was enabled incorrectly or severely blocks a critical tenant migration, reaching out to Microsoft Support is the only potential escalation path.
Manage Your Documents Easily with WPS Office
While Microsoft 365 handles complex enterprise compliance like preservation locks, WPS Office provides a highly compatible, lightweight, and free alternative for your everyday document creation, editing, and sharing needs. Enjoy a familiar interface without the heavy administrative overhead.
- 1. Download the software: Visit the official WPS Office website and download the free installation package for your operating system.
- 2. Install the suite: Run the downloaded executable file and follow the on-screen instructions to complete the fast, lightweight installation.
- 3. Open existing files: Launch WPS Office and instantly open your existing Microsoft Office files without losing any formatting or data.

Frequently Asked Questions
Does PowerShell allow global admins to bypass a preservation lock?
No, even global administrators cannot use PowerShell to disable or bypass a preservation lock once it has been successfully enabled on a Microsoft 365 retention policy.
What changes can I make to a locked retention policy?
You can only make the policy more restrictive. Allowed actions include adding new protected locations (such as more SharePoint sites), extending the retention period, and adding labels. You cannot reduce the retention time or remove previously added locations.
Why does Microsoft 365 enforce such strict preservation locks?
The preservation lock feature is built to help organizations meet strict regulatory guidelines, such as SEC Rule 17a-4, which require business records to be kept immutably to prevent accidental or malicious deletion.
Can a locked retention policy ever be deleted?
A locked policy can only be deleted naturally after the configured retention period has fully expired. If the policy is set to retain data indefinitely (forever), it cannot be deleted.




