What TPM is and why you might need to check it

TPM stands for Trusted Platform Module — it's a small chip on your motherboard that stores encryption keys and security information. Windows uses it to protect your files, especially if you use BitLocker (Windows's built-in encryption tool) or Windows Hello (facial recognition or fingerprint login). If you're setting up a new computer, troubleshooting a security feature, or checking whether your machine meets requirements for a specific program, you'll need to know whether TPM is present and what version it is.

Not every Windows computer has TPM, and older machines often don't. Windows 11 requires TPM 2.0, which is why some people upgrading from Windows 10 discovered their computer couldn't make the jump. If you're unsure whether yours has it, there are several quick ways to find out without opening your computer or calling support.

Key Takeaways

  • You can check for TPM using the Windows Security app, Device Manager, or PowerShell — all built into Windows and take less than a minute.
  • Windows 11 requires TPM 2.0, while Windows 10 works without it but benefits from having it.
  • If TPM is present but disabled in BIOS, you'll need to restart your computer and turn it on in the firmware settings.
  • Some computers have TPM but it's not visible in Windows until you enable it in BIOS or update chipset drivers.

Check TPM using Windows Security

The easiest method for most people is through the Windows Security app, which comes built into Windows 10 and Windows 11. Open Windows Security by typing "Windows Security" into the search box at the bottom left of your screen and clicking the app when it appears.

Once it opens, click Device security in the left menu. Look for the section labeled Security processor — if you see "Security processor details" with information listed, your computer has TPM. The details will show you the version number (usually 2.0 or 1.2) and the manufacturer. If you see "Not found" or nothing appears in that section, your computer either doesn't have TPM or it's disabled in BIOS.

Check TPM using Device Manager

Device Manager is another built-in Windows tool that lists all the hardware connected to your computer. Right-click the Start button (the Windows logo at the bottom left) and select Device Manager from the menu that appears.

Once Device Manager opens, look for a category called Security devices and click the arrow next to it to expand the list. If TPM is present and enabled, you'll see an entry that says something like "Trusted Platform Module 2.0" or "TPM" with the manufacturer name. If you don't see a Security devices category at all, TPM is either not installed or disabled in BIOS.

Check TPM using PowerShell

If you prefer using the command line, PowerShell can show you TPM information quickly. Right-click the Start button and select Windows PowerShell (Admin) or Terminal (Admin) — you'll need administrator access for this to work.

Type or paste this command and press Enter: Get-WmiObject -Namespace "root\cimv2\security\microsofttpm" -Class Win32_Tpm. If TPM is present and enabled, you'll see information including the version number and manufacturer. If the command returns nothing or an error, TPM is not enabled or not installed.

What to do if TPM is not showing up

If none of these methods show TPM, the first thing to check is whether it's disabled in your computer's BIOS (the firmware that runs before Windows starts). Restart your computer and watch for a message during startup that says something like "Press F2 to enter Setup" or "Press Del for BIOS" — the key varies by manufacturer. Press that key repeatedly as the computer boots.

Once you're in BIOS, look for a setting related to TPM, Security Chip, or PTT (Platform Trust Technology — Intel's name for TPM). The exact location and name depend on your computer's manufacturer. Enable the setting, save your changes, and restart. After Windows boots back up, check again using one of the methods above.

If TPM still doesn't appear after enabling it in BIOS, your computer may need a chipset driver update. Visit your computer manufacturer's support website, find your model number, and download the latest chipset drivers. Install them and restart, then check again.

Understanding TPM versions and what they mean

TPM comes in two main versions: 1.2 and 2.0. TPM 2.0 is newer, more secure, and required for Windows 11. TPM 1.2 is older and works with Windows 10, but Windows 11 will not install on a computer with only TPM 1.2. If you're planning to upgrade to Windows 11 and your computer shows TPM 1.2, you'll need to replace the TPM chip or buy a new computer — there's no software workaround.

If your computer has no TPM at all, Windows 10 will still run normally, but you won't be able to use BitLocker encryption or some security features. Windows 11 cannot be installed without TPM 2.0, though some people have found workarounds by modifying installation files — this is not recommended because it leaves your system without the security protections Windows 11 expects.

Why TPM matters for your security

TPM protects your computer by keeping encryption keys separate from the main processor. If someone steals your hard drive and puts it in another computer, the files stay encrypted because the keys are locked in the TPM chip and won't work elsewhere. It also enables Windows Hello, which lets you log in with your face or fingerprint instead of a password, and it helps protect against certain types of malware that try to modify Windows system files.

If you use BitLocker or Windows Hello, having TPM enabled is important. If you don't use either of those features, TPM still provides a layer of protection, but its absence won't break your computer or leave you immediately vulnerable. The main reason to check is to know whether your system meets requirements for software you want to run or to understand what security features are available to you.

Frequently Asked Questions

Can I add TPM to my computer if it doesn't have one?

Some older computers have an empty TPM slot on the motherboard and can accept a TPM chip, but this requires opening your computer and is not practical for most people. Laptops rarely have this option. For most users, if TPM is not present, upgrading the motherboard or buying a new computer is the only real path forward.

Does disabling TPM in BIOS make my computer faster?

No. TPM has almost no impact on everyday performance. Disabling it won't speed up your computer noticeably, and it removes security protections you may be relying on. Leave it enabled unless a specific program tells you to disable it.

What if TPM shows up in Device Manager but not in Windows Security?

This usually means TPM is present but not fully initialized. Restart your computer and check Windows Security again. If it still doesn't appear, try updating your chipset drivers from your computer manufacturer's website and restart again.

Is TPM required for Windows 10?

No. Windows 10 runs fine without TPM, though having it available is beneficial for security. Windows 11 requires TPM 2.0 and will not install without it.

Can I upgrade from TPM 1.2 to TPM 2.0?

Not through software. TPM is a hardware chip, and upgrading requires replacing the physical component, which is impractical for most computers. If you need TPM 2.0 for Windows 11, you'll likely need a new computer or motherboard.