Microsoft Defender Application Guard for Office was retired in April 2024 and is now being removed from Office. This change aligns with the end of support for Windows 11 version 23H2 and helps streamline the security experience for users. Documents that previously opened in Application Guard will now open in Protected View, maintaining strong protection against threats.
When this will happen:Phase 1: Removal begins with Office version 2602
- Current Channel: early February 2026
- Monthly Enterprise Channel: April 2026
- Semi-Annual Enterprise Channel: July 2026
Phase 2: Full removal with Office version 2612
- Current Channel: early December 2026
- Monthly Enterprise Channel: February 2027
- Semi-Annual Enterprise Channel: July 2027
Who is affected: All Win32 users who previously used Microsoft Defender Application Guard for Office.
What will happen:
- Files that previously opened in Application Guard will now open in Protected View.
- Application Guard for Office will be disabled in Phase 1; support exceptions may be available until Phase 2.
- Application Guard for Office will be fully removed in Phase 2 with no workaround.
- Admins are encouraged to enable Microsoft Defender for Endpoint Attack Surface Reduction (ASR) rules and Windows Defender Application Control (WDAC).
No admin action is required for the removal itself. However, to maintain strong protection, we recommend:
- Enable Microsoft Defender for Endpoint ASR rules to block risky behaviors in Office files.
- Enable Windows Defender Application Control (WDAC) to ensure only trusted, signed code runs on devices.
- Review internal documentation and helpdesk guidance if your organization previously relied on Application Guard for Office.
For instructions on verifying if users are using Application Guard for Office, refer to Confirm that Application Guard for Office is enabled and working – Application Guard for Office for admins | Microsoft Learn.
Compliance considerations:No compliance considerations identified, review as appropriate for your organization.
Source: Microsoft
Latest Posts
- (Updated) Outlook: Delimiter setting admin policy [MC1239176]
![(Updated) Outlook: Delimiter setting admin policy [MC1239176] 2 pexels scottwebb 139205](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Amazon Redshift supports federated permissions with IAM Identity Center in multiple AWS Regions

- Cloudflare Tunnel, Cloudflare Tunnel for SASE – Stream logs from multiple replicas of Cloudflare Tunnel simultaneously

- Microsoft Teams: Recently used emojis sync across devices [MC1256307]
![Microsoft Teams: Recently used emojis sync across devices [MC1256307] 5 pexels brett sayles 2881229](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
![Microsoft Defender: Application Guard for Office is being removed [MC1182696] 1 Microsoft Defender: Application Guard for Office is being removed [MC1182696]](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-pok-rie-33563-1726310-1024x683.webp)
![(Updated) Outlook: Delimiter setting admin policy [MC1239176] 2 pexels scottwebb 139205](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-scottwebb-139205-150x150.webp)


![Microsoft Teams: Recently used emojis sync across devices [MC1256307] 5 pexels brett sayles 2881229](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-brett-sayles-2881229-150x150.webp)