You can delay or pause Windows updates, but you cannot permanently block them on most versions
Windows updates install automatically by default, and Microsoft does not offer a permanent "never update" setting for home users. What you can do depends on which version of Windows you have. On Windows 10 and 11 Home, you can pause updates for up to 35 days at a time, then pause again when that period ends. On Windows 10 and 11 Pro, you can delay updates for months using Group Policy. On Windows 11 Home, you can also set your connection as metered, which slows automatic downloads. None of these methods stop updates forever — they buy you time to test them on your own schedule or wait for others to report problems.
The reason Microsoft does not allow permanent blocking is security. Updates patch vulnerabilities that hackers actively exploit. A computer that never updates becomes increasingly vulnerable over time. If you are considering blocking updates because a recent one broke something, there are better options: rolling back the update, using a different pause method, or contacting Microsoft support about the specific problem.
Key Takeaways
- Windows 10 and 11 Home users can pause updates for up to 35 days using Settings, then pause again when the period ends.
- Windows 10 and 11 Pro users can delay updates for several months using Group Policy Editor, which Home versions do not have access to.
- Setting your internet connection as metered in Windows 11 Home slows automatic updates but does not stop them entirely.
- If an update caused a problem, you can roll back to the previous version within 10 days on most systems.
- Permanently blocking updates leaves your computer vulnerable to security exploits that hackers use actively.
Pausing updates for 35 days on Windows 10 or 11 Home
Open Settings by pressing the Windows key and typing "settings", then select the Settings app. Go to System (or Update & Security on Windows 10), then Windows Update. Click Pause updates for 7 days. You can click this button up to five times, pausing for a total of 35 days. After 35 days, the pause expires and updates resume automatically.
When the 35-day pause is about to end, Windows will notify you. At that point, you can pause again for another 35 days if you want to continue delaying. This method works if you need time to test an update on a secondary computer first, or if you want to wait a few weeks for other users to report whether a new update causes problems.
The pause only affects feature updates (major version changes) and quality updates (monthly patches). It does not stop security updates from installing when ready in some cases, particularly if a critical vulnerability is discovered.
Using Group Policy to delay updates on Windows Pro versions
Windows 10 Pro and Windows 11 Pro include Group Policy Editor, which lets you delay updates for longer periods. Press the Windows key and type "gpedit.msc", then press Enter. Navigate to Computer Configuration > Administrative Templates > Windows Components > Windows Update.
Look for the policy called Defer Feature Updates by (days) and set it to a number between 0 and 365. You can also set Defer Quality Updates by (days) separately. Setting both to 30 days, for example, delays all updates by one month. This gives you more control than the 35-day pause on Home versions, but updates will still install eventually.
Group Policy changes take effect after your computer restarts or after Windows Update checks for new updates (which happens automatically). If you are not comfortable editing Group Policy, the 35-day pause method on Home versions is simpler and achieves similar results.
Setting your connection as metered to slow downloads
On Windows 11 Home, you can mark your internet connection as metered, which tells Windows to read updates more slowly and only when you are not actively using the connection. Open Settings, go to Network & Internet, then WiFi (or Ethernet if you use a wired connection). Click your current network and toggle Metered connection to On.
This method does not pause or block updates — it only changes when and how fast they read. Updates may still install during off-hours or when your computer is idle. Metered connection is most useful if you have a limited data plan and want to avoid large downloads during peak hours, rather than as a way to prevent updates entirely.
Windows 10 Home also has a metered connection option in Settings under Update & Security > Windows Update > Advanced options. The effect is the same: slower, less frequent downloads rather than a block.
Rolling back an update that caused problems
If a recent update broke something on your computer, you can undo it within 10 days. Open Settings, go to System (or Update & Security on Windows 10), then Recovery. Under Go back, click the button to return to the previous version of Windows. Your files and most programs will remain, but some settings may reset.
Before rolling back, write down any settings you have customized recently — passwords, display preferences, printer connections — so you can restore them afterward. The rollback process takes 20 to 30 minutes and requires a restart.
If the rollback option is grayed out or not available, more than 10 days have passed since the update installed. In that case, contact Microsoft Support with details about what the update broke. They can sometimes provide a workaround or a fix in the next update cycle.
Why permanent blocking is not an option and what the risks are
Microsoft does not allow permanent update blocking on Home versions because security updates patch vulnerabilities that hackers exploit within days or weeks of public disclosure. A computer running an old version of Windows becomes a target for ransomware, data theft, and botnet recruitment. If you block updates indefinitely, you are accepting the risk that your computer will be compromised.
Enterprise environments (large organizations) can block updates for longer periods because they have dedicated security teams, isolated networks, and the resources to test updates thoroughly before deployment. Home users do not have those protections, which is why Microsoft enforces automatic updates.
If you are blocking updates because you distrust Microsoft, or because you want to avoid telemetry, there are better approaches: using a privacy-focused operating system like Linux, disabling specific telemetry settings within Windows (which is possible), or using a firewall to control what data Windows sends. Blocking updates entirely is not a privacy solution — it is a security liability.
Frequently Asked Questions
Can I disable Windows Update service permanently?
You can disable the Windows Update service in Services.msc, but Windows will re-enable it automatically after a few days or after a restart. Microsoft designed it this way to prevent users from accidentally leaving their computers unpatched. Disabling the service is not a reliable block and may cause other system functions to fail.
What happens if I ignore update notifications?
Windows will keep notifying you and will eventually force a restart to install updates. If you ignore notifications for weeks, your computer will restart on its own, usually during off-hours. Using the pause feature is more reliable than ignoring notifications because it gives you a specific end date and prevents surprise restarts.
Do I need to update if I do not use my computer for online banking or shopping?
Yes. Even if you only use your computer for email or browsing, hackers can use security vulnerabilities to steal files, install malware, or use your computer to attack other systems. Updates protect against these threats regardless of what you use the computer for.
Can I block updates on Windows 11 Home without using metered connection?
The 35-day pause is the only built-in blocking method on Windows 11 Home. If you need longer delays, you would need to upgrade to Windows 11 Pro to access Group Policy. Some third-party tools claim to block updates, but they are unreliable and may conflict with Windows security features.
What if an update keeps failing to install?
A stuck update usually means a file is corrupted or a driver is incompatible. Try restarting your computer and checking for updates again. If it fails repeatedly, go to Settings > System > Troubleshoot > Other troubleshooters and run the Windows Update troubleshooter. If that does not work, contact Microsoft Support with the error code from the failed update.