The fastest way to check BitLocker status

Open the Settings app, go to System > About, scroll down to Device encryption, and look at the status next to it. If it says "On", BitLocker is active. If it says "Off" or the section does not appear, BitLocker is not enabled on your device.

This method works on most Windows 11 machines and takes about 30 seconds. If you do not see a Device encryption section at all, your computer may not support BitLocker — this happens on some budget laptops or older hardware.

For a more detailed view that shows encryption progress or recovery key information, use the BitLocker control panel instead. This is useful if you need to back up your recovery key or troubleshoot encryption problems.

Key Takeaways

  • Settings > System > About shows Device encryption status in one step on most Windows 11 machines.
  • The BitLocker control panel (search "Manage BitLocker") gives you recovery key options and encryption progress details.
  • Command Prompt and PowerShell can show BitLocker status if you prefer the command line, using manage-bde -status.
  • If Device encryption does not appear in Settings, your hardware may not support BitLocker or it is not installed.

Using the BitLocker control panel for more details

Search for "Manage BitLocker" in the Windows search box and open the control panel. You will see each drive on your computer listed with its encryption status — either "BitLocker on" or "BitLocker off".

This view also shows you whether encryption is in progress (and what percentage is complete), and it gives you access to your recovery key. The recovery key is a 48-digit code you need if you forget your password or your computer will not start — back this up to a Microsoft account or USB drive if you have not already.

If you see "BitLocker off" for your main drive but you thought it was on, this panel will also show you options to turn it on or troubleshoot why it stopped.

Checking BitLocker status from Command Prompt

Open Command Prompt as administrator (search for "cmd", right-click it, and choose "Run as administrator"). Type manage-bde -status and press Enter.

The output will show each drive and its protection status. Look for the line that says "Protection Status" — it will read "Protection On" if BitLocker is active, or "Protection Off" if it is not. You will also see the encryption percentage if encryption is currently running.

This method is useful if the Settings app is not responding or if you need to check BitLocker status on a computer you are troubleshooting remotely. The command works the same way on all Windows 11 machines that have BitLocker installed.

Checking BitLocker with PowerShell

Open PowerShell as administrator (search for "PowerShell", right-click it, and choose "Run as administrator"). Type Get-BitLockerVolume and press Enter.

PowerShell will display a table showing each drive, its encryption status, and protection status. The "EncryptionPercentage" column shows how much of the drive has been encrypted if encryption is in progress. The "ProtectionStatus" column will show "On" or "Off".

PowerShell output is more detailed than Command Prompt and easier to read if you need to check multiple drives or save the information to a file for later reference.

What to do if BitLocker is not showing up

If you do not see BitLocker options in Settings or the control panel, your computer may not support it. BitLocker is available on Windows 11 Pro, Enterprise, and Education editions — it is not included in Windows 11 Home.

Check which edition you have by going to Settings > System > About and looking at the "Edition" line. If it says "Home", BitLocker is not available on your machine. You can still use other encryption methods like Windows Defender Device Encryption (which appears in the same Settings location) or third-party tools.

If you have Pro or Enterprise edition but still do not see BitLocker, it may not be installed. Search for "Turn Windows features on or off" in Settings, look for "BitLocker Drive Encryption" in the list, check the box, and restart your computer.

Understanding the difference between Device Encryption and BitLocker

Windows 11 Home uses Device Encryption, which is a simpler version of BitLocker that encrypts your drive automatically. Windows 11 Pro, Enterprise, and Education use full BitLocker, which gives you more control over encryption settings and recovery keys.

Both protect your data if your computer is lost or stolen, but BitLocker lets you manage encryption policies, create recovery keys, and encrypt external drives. Device Encryption is automatic and requires less setup, but offers fewer options.

If you see "Device encryption" in Settings but not "BitLocker", you are using Windows 11 Home. The status check works the same way — "On" means your drive is encrypted, "Off" means it is not.

Backing up your BitLocker recovery key

Your recovery key is a 48-digit code that unlocks your drive if you forget your password or your computer will not start. If you lose this key and forget your password, your data becomes inaccessible.

To back up your key, open "Manage BitLocker" and click "Back up your recovery key" next to your drive. You can save it to your Microsoft account, print it, or save it to a USB drive. Storing it in your Microsoft account is usually the easiest option because you can retrieve it from any computer.

If you have already encrypted your drive and never backed up the key, open Manage BitLocker now and do this before you forget your password or your computer fails to start.

Frequently Asked Questions

Can I turn BitLocker on or off from the status screen?

No, the status screens only show whether BitLocker is on or off. To turn it on or off, open "Manage BitLocker" and click "Turn off BitLocker" or "Turn on BitLocker" next to your drive. Turning it off takes time because Windows has to decrypt your entire drive.

What does "Encryption in progress" mean?

It means BitLocker is actively encrypting your drive in the background. This can take hours on a large drive, but your computer remains usable during this time. You can check the percentage complete in Manage BitLocker or by running manage-bde -status in Command Prompt.

Why does Device Encryption show "Off" even though I thought I turned it on?

Device Encryption turns off automatically if you sign in with a local account instead of a Microsoft account, or if your computer does not meet hardware requirements like a TPM chip. Check that you are using a Microsoft account and that your device has TPM 2.0 by going to Settings > System > About and looking for "TPM version".

Do I need my recovery key to use my computer normally?

No. You only need the recovery key if you forget your password, your computer will not start, or you move the encrypted drive to a different computer. For everyday use, you just sign in with your normal password.

Can I check BitLocker status on an external drive?

Yes. Plug in the external drive, open Manage BitLocker, and you will see it listed with its own encryption status. You can turn BitLocker on or off for external drives the same way you do for your main drive, though this requires the Pro edition or higher.