How to Delete Microsoft Copilot Chat History - Yes, you can!
Yesterday, when i was working late a friend messaged me in a panic: "I just asked Copilot a bunch of personal questions… and now I’m worried it’s all saved somewhere!" (I shouldn't say this, but in case if you are curious what it was, as per his discussion looks like he asked relationship advice 😂) To his surprise, when he dug a little deeper, he also found every single search he’d done since March sitting there. The best — and worst — part? He’s actually privacy‑savvy. He never even signed in to Copilot.microsoft.com, yet the chats and searches were still saved offline on his PC.
Let's go back to our Jake example, who typed a customer's full name, phone number and complaint into Copilot to help him draft a polite reply. Then he sat there wondering where, exactly, that had just gone.
If you were signed in: go to
copilot.microsoft.com, open the chat sidebar, and delete conversations — or clear
everything at account.microsoft.com/privacy.
If you weren't signed in: the conversation lived in your
browser session, so clearing that site's browser data removes the local copy.
That's the two-minute answer. The rest of this page is the part almost nobody tells you: there are four separate Copilots that each store history independently, and deleting your history does not delete Microsoft's copy.
Back to Jake, because his situation is probably yours.
He runs a small mobile phone shop. A customer had sent an angry message about a repair that took three days longer than promised, and Jake — who is good with phones and bad with words — pasted the whole thing into Copilot and asked it to help him write something calm and professional.
It did. The reply was excellent. The customer was satisfied.
Two days later Jake was reading about a company that had been fined over how it handled customer data, and a thought arrived with the particular chill of a thought that arrives too late:
"I put a customer's name, number and complaint into a website. Where did that go? Can I take it back?"
He called Ethan, who has spent years explaining this kind of thing to people who are not technical and should not have to be.
"Right," Ethan said. "The good news is you can clear it, and it's genuinely quick. The bad news is that 'clear it' means less than you think it does, and every guide you'll find online stops before the part that matters."
How this guide was checked — and what we can't verify
Steps were walked through on Windows 11 24H2 and Windows 10 22H2, using a personal Microsoft account and a signed-out browser session, in Edge and Chrome.
What we cannot verify, and neither can anyone else: what Microsoft retains on its servers after you press delete. Nobody outside Microsoft can test that. Where this guide describes server-side retention, it reflects Microsoft's own published privacy documentation — not something we observed.
Also worth saying plainly: Microsoft redesigns
Copilot's interface frequently. If a menu below has moved, the reliable fallback is always
account.microsoft.com/privacy, which changes far less often.
First: There Are Four Copilots, Not One
This is where most people go wrong, and it's the reason someone clears their history, checks again a week later, and finds it still there.
Microsoft has attached the name "Copilot" to several different products. They look similar. They are not the same thing, and they store your conversations separately.
| Which one | Where you meet it | Who controls the history |
|---|---|---|
| Copilot on the web | copilot.microsoft.com in any browser |
You — if signed in, it's on your Microsoft account |
| Copilot in Windows | The taskbar button or app on Windows 11 / 10 | You — same account, but check it separately |
| Copilot in Edge | The sidebar in Microsoft Edge | You — plus Edge's own browsing data |
| Microsoft 365 Copilot | Word, Excel, Outlook, Teams — on a work or school account | Your employer's IT department. Not you. |
♂️ Jake's Reality Check
"Four? I genuinely thought it was one thing with different buttons. How am I supposed to know which one I used?"
Ask where you were when you typed it. In a browser tab on the Copilot website? That's the web one. Clicked something on the Windows taskbar? Windows. In Edge's sidebar while reading a page? Edge. Inside Word or Outlook with your work email signed in? That's Microsoft 365 Copilot, and that one is a different conversation entirely — see the section below before you do anything else.
What Copilot Actually Stores
"Before you delete anything," Ethan said, "understand what you're deleting. Otherwise you'll clear one thing, feel relieved, and leave three others sitting there."
There are three layers, and they are not the same:
Layer 1 — the conversations you can see
The chat list in the sidebar. Your questions, Copilot's answers, any files or images you uploaded. This is what people mean by "history", and it's the layer you have full control over.
Layer 2 — your Microsoft account activity
Separately from the chat list, your Microsoft account keeps an activity record — searches,
browsing if you use Edge signed in, app usage, sometimes location. Copilot use can appear here even
after the chat itself is gone. This lives at account.microsoft.com/privacy, and most
guides never mention it.
Layer 3 — what Microsoft keeps regardless
This is the honest bit. Microsoft's published privacy documentation describes retaining some interaction data separately for abuse monitoring and safety review — checking that the service isn't being used to generate harmful content. That retention is not governed by your delete button.
It's time-limited and access-restricted, and it is not somebody idly reading your chats. But it exists, and you cannot clear it.
⚠️ The sentence every other guide leaves out
Deleting your Copilot history removes your record. It does not remove Microsoft's. That distinction matters enormously if you're deleting because you typed in something you shouldn't have — a customer's details, a password, a medical question, a bank account number. Clearing history is good hygiene. It is not an undo button, and treating it as one is how people talk themselves into typing the next thing.
If You Were Signed In (Personal Account)
This is most people. If you saw your name or a profile picture in the corner, you were signed in.
Step 1 — clear the conversations
- Go to
copilot.microsoft.comand make sure you're signed in with the same account you used. (If you have both a personal and a work account, this trips people constantly — check which one is showing.) - Open the chat history sidebar. It's usually a menu or list icon in the top corner; on a phone it's behind the hamburger menu.
- Each conversation has a menu — usually three dots — with Delete.
- Work down the list. Some versions offer a "clear all" option in settings; if yours does, use it, but scroll the whole list afterwards to confirm. A partial clear that looks complete is worse than no clear at all.
Step 2 — clear the account activity (the step everyone skips)
- Go to
account.microsoft.com/privacyand sign in. - You'll see categories — browsing history, search history, location activity, app and service activity.
- Open each one that's relevant and use the option to clear it.
Do this even if the chat list is already empty. It's a different store, and it's the one that persists after the conversations are gone.
Worth knowing regardless of Copilot: this dashboard is where Microsoft shows you everything tied to your account. Most people have never opened it, and most people are mildly startled the first time they do.
Step 3 — check the other Copilots you've used
Windows Copilot and Edge's Copilot sidebar keep their own view of things. If you've used either, open each and check its history separately. Clearing the website does not clear them.
If You Weren't Signed In
Good news and a correction, in that order.
The good news: without an account, there's no account history to purge. Nothing is sitting in a Microsoft account list with your name on it. The conversation was tied to your browser session, and clearing that removes the local copy:
- In your browser, open Settings → Privacy → Cookies and site data.
- Find
copilot.microsoft.com(andbing.comif you used Copilot through Bing). - Remove that site's data. Or clear your browsing data for the relevant time range, if you'd rather not hunt.
⚠️ The correction — what "not signed in" doesn't mean
"Not signed in" means not attached to your account. It does not mean the conversation stayed on your computer. Copilot has no offline mode — every question you typed was sent to Microsoft's servers to be answered, because that's the only place the answer could come from. Signing out reduces what's linked to you. It doesn't make the conversation private.
People genuinely believe otherwise, and it's an easy belief to arrive at. It's also the belief that leads to typing something into a signed-out window that you'd never type into a signed-in one.
Work or School Accounts: Read This Before You Try
If you used Copilot inside Word, Excel, Outlook or Teams while signed in with a work or school email, this section is the one that matters, and the answer is uncomfortable.
You probably cannot delete it, and you should assume your employer can read it.
Microsoft 365 Copilot interactions on an organisational account are stored within your employer's tenant — their instance of Microsoft 365. They're governed by the organisation's retention policy, which your IT administrator sets. Many organisations retain this for compliance reasons and specifically prevent users from clearing it.
What this means in practice:
- There may be no delete button for you at all.
- If there is one, it may hide the item from your view while retaining it in the tenant.
- Your administrator can generally retrieve it.
- Deleting from the Copilot interface does not override a retention policy.
The practical rule Ethan gave Jake, which applies to every employee everywhere:
Treat a work Copilot exactly as you'd treat a work email. Because in terms of who can read it later, it is one.
If you've typed something into a work Copilot that you're worried about, the honest move is to speak to your IT or HR team rather than hunting for a delete button that isn't there. That's an unglamorous answer, and it's the right one.
How to Stop It Being Saved in the First Place
Deleting afterwards is cleanup. This is the actual fix.
Turn off history where the option exists
Copilot's settings include privacy controls, and depending on your version and region these may include switching off conversation history or model training contributions. Open Copilot's settings and read every toggle. They move between updates, which is why we're describing what to look for rather than promising a menu path that may have changed by the time you read this.
Use it signed out for anything sensitive
It won't be attached to your account. Remember it's still leaving your machine — but for "what does this error message mean", signed-out is a sensible default.
Build the substitution habit
This is the one that actually protects you, and it costs nothing.
Jake didn't need to paste the customer's real name and number. He could have written "a customer is angry that a repair took three days longer than promised, help me write a calm reply." Identical answer. Nothing identifying.
Ethan's rule: describe the situation, not the people. Names, phone numbers, addresses, order numbers, account numbers, medical details — strip them out. The AI does not need them to be useful, and once they're typed you cannot fully retrieve them.
And never paste a password into any AI assistant
It sounds obvious. It happens constantly — usually inside a longer block of text someone pasted without reading, like a config file or an error log.
If you've done it, change that password now rather than deleting the chat. Deletion doesn't un-send it. This is also the argument for a password manager: when passwords live in a vault instead of a text file you copy from, they don't end up pasted into places by accident.
If You Run a Business, This Is Bigger Than Your History
This is where Jake's stomach dropped, and it's worth being direct about.
He hadn't typed his data into Copilot. He'd typed his customer's data. And in most countries, customer data isn't his to hand around — India's DPDP Act, the UK and EU's GDPR, and similar laws elsewhere all place obligations on whoever holds personal information, including small businesses that have never thought of themselves as data controllers.
None of this makes using AI at work wrong. It makes how you use it matter:
- Anonymise before you paste. The substitution habit above, applied consistently.
- Decide what's off-limits — and if you have staff, tell them. Most small-business data incidents are ordinary people being helpful, not attacks.
- Use business-tier AI tools for business data. Microsoft 365 Copilot's commercial terms state that business data isn't used to train its foundation models. Consumer Copilot terms are different, and they change. Which tier you're on genuinely matters.
- Secure the machine itself. A shop PC holding customer records and payment details deserves proper endpoint protection — the cost of one breach notification exceeds years of licensing.
If you're on public Wi-Fi when you use any of this, a VPN protects the connection — though be clear on what it does: it secures the link between you and the service. It does nothing about what the service stores once your words arrive. Those are two different problems, and VPN marketing tends to blur them.
What Jake Actually Did
He deleted the conversation from copilot.microsoft.com. Took about forty seconds.
Then he opened account.microsoft.com/privacy for the first time in his life, spent a
startled ten minutes reading what was in there, and cleared the categories he didn't want kept.
He checked Windows Copilot too, and found two more conversations he'd entirely forgotten about — one of which also had a customer's phone number in it. That's the part he found most sobering: not the chat he remembered, but the two he didn't.
And then he changed how he uses it. Now he types "a customer is unhappy about a delayed repair, help me write a calm reply" and gets exactly the same quality of answer with nobody's details in it.
"That's the whole fix, isn't it," he said. "I didn't need to stop using it. I needed to stop putting other people's names in it."
"That's the whole fix," Ethan agreed.
Questions You're Probably About to Ask
How do I delete my Microsoft Copilot chat history?
Signed in with a personal account: copilot.microsoft.com → chat sidebar →
delete each conversation, then clear activity at account.microsoft.com/privacy. Not
signed in: clear your browser's cookies and site data for that site.
Does deleting Copilot history actually remove everything?
No. It removes conversations from your view and your account activity. Microsoft's published privacy documentation describes retaining some interaction data separately for abuse monitoring and safety review, and your delete button doesn't reach that. Treat deletion as removing your record, not Microsoft's.
Can I delete Copilot history on a work or school account?
Usually not. Microsoft 365 Copilot interactions live in your organisation's tenant under its retention policy, controlled by IT. Assume anything typed into a work Copilot is visible to your employer, and if you're worried about something specific, talk to IT rather than hunting for a button.
What does using Copilot without signing in actually mean?
It means the conversation isn't attached to a Microsoft account. It does not mean it stayed on your computer — your questions still went to Microsoft's servers, because that's where the answers come from.
Is there more than one Copilot history to delete?
Yes — and this is the most common mistake. Copilot on the web, in Windows, in Edge, and Microsoft 365 Copilot all store separately. Clearing one doesn't clear the others.
How do I stop Copilot saving my history in the first place?
Use it signed out, and turn off history in Copilot's privacy settings if your version offers it. The habit that actually protects you: describe the situation, not the people. For anything genuinely confidential, don't type it into any AI assistant — you can't verify what's retained server-side.
Does deleting remove my data from AI training?
Not retroactively. If data was used for model improvement before deletion, deleting doesn't reverse it. Microsoft states Microsoft 365 Copilot business data isn't used to train its foundation models; consumer terms differ and change. Check your current settings rather than trusting any article's summary — including this one.
Where can I see everything Microsoft has stored about me?
account.microsoft.com/privacy — browsing, search, location and app activity,
each clearable. It's the most reliable place to check because it changes far less often than
Copilot's own interface.
I typed a password into Copilot. What now?
Change that password immediately. Don't start by deleting the chat — deletion doesn't un-send it. Change the password, then enable two-factor authentication on that account, then clear the history. In that order.
Can I remove Copilot from Windows entirely?
Yes — you can stop it launching at startup and remove it from the taskbar. We've written a full walkthrough: disabling Copilot and Microsoft 365 Copilot from startup on Windows.
Does this apply to Windows 10 as well as Windows 11?
Yes. The steps are the same on both, because the history lives in your Microsoft account and in the browser, not in Windows itself. One thing worth knowing if you're still on Windows 10: it reached end of support on 14 October 2025, so it no longer receives free security updates — which matters on a machine you use for anything sensitive.
Coming Up Next
Jake's next question was whether he could just get rid of Copilot altogether — which turns out to have a better answer than "uninstall it". That's covered in our guide to disabling Copilot from Windows startup.
If you'd rather run an AI assistant that never sends anything anywhere, we've also written up running an AI model locally on your own PC — genuinely private, because nothing leaves the machine.
Originally published August 2025. Rewritten and re-checked in 2026. Where this guide describes what Microsoft retains on its own servers, that reflects Microsoft's published privacy documentation rather than anything we could independently test — and we've said so in the text rather than implying certainty we don't have.