How to Completely Disable ‘FileVault’ (Disk Encryption) on a Mac

Modern MacBooks ship with a highly secure, hardware-accelerated full-disk encryption system known as FileVault. When enabled, every single file on your internal SSD is cryptographically scrambled using XTS-AES-128 encryption. If a thief steals your laptop, they cannot simply remove the hard drive and plug it into another computer to read your files; without your login password or recovery key, the drive is mathematically unreadable.

While FileVault is an essential security requirement for laptops that travel outside the house, it can present a catastrophic data recovery risk for older desktop Macs (like an iMac or Mac mini) that never leave a secure office. If the logic board on an older encrypted Mac fails, or if you lose both your login password and your cryptographic recovery key, the data on the drive is permanently destroyed. Data recovery specialists cannot bypass FileVault. If you prioritize absolute ease of data recovery in the event of a catastrophic hardware failure over physical theft protection, you must completely disable FileVault encryption.

Disabling FileVault via Privacy & Security Settings

You can instruct macOS to decrypt the drive and return it to a raw, unencrypted state directly from the system settings.

  1. Click the Apple Logo in the top-left corner of your Mac’s screen and select System Settings… (or “System Preferences” on older versions of macOS).
  2. Scroll down the left-hand navigation sidebar and click on Privacy & Security (or click the “Security & Privacy” icon and select the “FileVault” tab).
  3. In the main panel, scroll down until you locate the FileVault section.
  4. You will see a status indicator showing that FileVault is currently turned “On for the disk ‘Macintosh HD’.”
  5. Click the Turn Off… button (you may need to click the padlock icon in the bottom left corner and enter your administrator password first to unlock the pane).
  6. A popup warning will appear, asking you to confirm that you want to turn off encryption. Click Turn Off Encryption.

The Decryption Process

The process is not instant. Your Mac must now systematically decrypt every single block of data on your solid-state drive in the background. You can continue to use your Mac normally while this happens, but the process may take several hours depending on the size of your drive and the speed of your processor.

Once the decryption progress bar reaches 100%, the drive is fully exposed. In the event of a total logic board failure, a technician can now easily extract the SSD, mount it via a target disk enclosure, and effortlessly recover all of your files without requiring any passwords or cryptographic keys.

Get the best tech tips delivered straight to your inbox.

Join thousands of readers mastering Apple, Google, Microsoft, and Linux.