Skip to content
GeneralAdvanced

BitLocker Recovery Key vs Recovery Password – Differences, Examples, Key ID, and How BitLocker Recovery Works

BitLocker is Microsoft’s full-volume encryption technology designed to protect data stored on Windows computers. If a laptop, desktop, or drive is lost...

BI
Bison Technical Team Enterprise IT specialists
Updated 08 Aug 2026 18 min read 1 total views

BitLocker is Microsoft’s full-volume encryption technology designed to protect data stored on Windows computers. If a laptop, desktop, or drive is lost, stolen, or accessed without authorization, BitLocker helps prevent someone from reading the encrypted data.

One area that frequently causes confusion is the terminology used during BitLocker recovery.

Advertisement

You may encounter terms such as:

  • BitLocker Recovery Key
  • BitLocker Recovery Password
  • Recovery Key ID
  • BitLocker PIN
  • Startup Key
  • Password Protector
  • Numerical Password
  • TPM Protector

Two terms in particular—Recovery Key and Recovery Password—are often treated as if they are different things.

In everyday Windows troubleshooting, however, the situation is simpler than it initially appears:

The familiar 48-digit BitLocker recovery code that Windows asks you to enter is technically a BitLocker recovery password, although Microsoft interfaces and users commonly call it a BitLocker recovery key.

Understanding this terminology becomes especially important when managing multiple encrypted computers, identifying the correct recovery information by Key ID, troubleshooting unexpected recovery prompts, or administering BitLocker in a business environment.


What Is BitLocker?

BitLocker Drive Encryption is a Windows security feature that encrypts an entire volume.

Instead of protecting only individual files, BitLocker encrypts the volume so that its contents cannot normally be accessed without the appropriate authentication or recovery mechanism.

BitLocker may protect:

  • Windows operating system drives
  • Internal data drives
  • Secondary hard disks or SSDs
  • Removable drives using BitLocker To Go

A BitLocker-protected Windows computer can normally unlock automatically through the Trusted Platform Module (TPM).

Depending on how BitLocker has been configured, additional authentication such as a startup PIN may also be required.

If Windows detects certain security-related changes, however, the normal unlocking process may fail and BitLocker can enter recovery mode.

That is when the recovery information becomes important.


What Is a BitLocker Recovery Password?

A BitLocker recovery password is a special 48-digit numerical password generated for a BitLocker-protected volume.

It typically appears in a format similar to:

123456-234567-345678-456789-567890-678901-789012-890123

Important: The number above is only an example and is not a valid recovery credential for your computer.

The recovery password consists of eight groups of six digits.

When Windows displays a BitLocker Recovery screen and asks you to enter a recovery key, this 48-digit number is normally what you need.


What Is a BitLocker Recovery Key?

This is where terminology can become confusing.

The term BitLocker recovery key is commonly used as a user-friendly/general term for the recovery credential needed to regain access to an encrypted drive.

For example, Windows may display:

Enter the recovery key for this drive.

Microsoft account recovery pages may similarly refer to saved BitLocker recovery keys.

In most end-user troubleshooting situations, therefore:

BitLocker Recovery Key = the 48-digit recovery password Windows expects you to enter.

Technically, however, BitLocker supports different types of key protectors and recovery mechanisms. Consequently, documentation, command-line tools, management systems, and Windows interfaces may use terminology that is more specific than what users see on the recovery screen.


BitLocker Recovery Key vs Recovery Password

The easiest way to understand the distinction is:

Term Practical Meaning
Recovery Key Common/general name for BitLocker recovery information
Recovery Password Technical term for the familiar 48-digit numerical recovery credential
Recovery Key ID Identifier used to determine which recovery password belongs to the encrypted drive
Startup Key Key material stored on removable media and used during startup
PIN User-entered authentication used with TPM configurations

Therefore, when someone says:

“My computer is asking for the BitLocker recovery key.”

they are usually being asked to provide the 48-digit recovery password.


The Most Important Difference

A useful distinction is:

Recovery Key

“Recovery key” is often the user-facing term describing the credential required to recover access.

Recovery Password

“Recovery password” more precisely describes the 48-digit numerical protector.

For ordinary troubleshooting, the terms are frequently used interchangeably.

For technical administration, however, understanding the difference can prevent confusion when using PowerShell, manage-bde, Active Directory, Microsoft Entra ID, Microsoft Intune, or enterprise BitLocker-management systems.


What Does the BitLocker Recovery Screen Show?

When BitLocker enters recovery mode, you may see a blue screen containing information similar to:

BitLocker recovery

Enter the recovery key for this drive

Recovery key ID:
XXXXXXXX-XXXX-XXXX-XXXX-XXXXXXXXXXXX

The screen may then provide a field for entering the recovery credential.

The important point is:

Recovery Key ID ≠ Recovery Password

The Recovery Key ID identifies the recovery credential.

The 48-digit recovery password actually unlocks the drive.

This distinction is extremely important.


What Is the BitLocker Recovery Key ID?

Every BitLocker recovery password protector has an associated identifier.

This is generally called the:

Recovery Key ID

The ID helps you locate the correct recovery password when several recovery passwords are stored.

For example, imagine an organization has hundreds of BitLocker-protected computers.

An administrator may have many recovery records.

The affected computer displays a Key ID such as:

AB12CD34-....

The administrator searches the recovery records for the corresponding identifier.

After finding the matching entry, the administrator retrieves the associated 48-digit recovery password.

Therefore:

Key ID tells you which key/password to use; it does not itself unlock the drive.


Recovery Key ID vs 48-Digit Recovery Password

Feature Recovery Key ID Recovery Password
Purpose Identifies recovery information Unlocks encrypted volume
Can unlock drive? No Yes
Displayed during recovery? Usually Entry is requested
Unique identifier? Yes Recovery secret
Should be kept confidential? Sensible to protect Absolutely
Used for matching records? Yes No
Length Identifier format 48 digits

Never assume the Key ID is the actual BitLocker recovery password.


Why Does BitLocker Use a 48-Digit Recovery Password?

BitLocker recovery credentials need to provide sufficient security while still being usable in situations where automatic authentication is unavailable.

The numerical format allows the recovery credential to be entered manually from another device, printed record, management system, or administrator-provided source.

This is particularly useful when the affected computer cannot boot normally.


BitLocker PIN vs Recovery Password

Another common misunderstanding involves the BitLocker startup PIN.

A BitLocker PIN is not the same as a recovery password.

A TPM+PIN configuration may require a PIN every time Windows starts.

For example:

Startup
   ↓
TPM validates system
   ↓
User enters PIN
   ↓
BitLocker unlocks
   ↓
Windows starts

The recovery password is different.

It is normally needed when BitLocker cannot use its expected authentication process.

BitLocker PIN Recovery Password
Used during normal startup when configured Used primarily for recovery
Usually much shorter 48 digits
User enters it regularly Usually rarely required
Part of normal authentication Emergency/recovery mechanism
Not the same as recovery key Commonly called recovery key

BitLocker Password vs Recovery Password

BitLocker can also use password-based protectors in certain scenarios, particularly for data drives and BitLocker To Go.

A password selected by a user is different from the automatically generated 48-digit recovery password.

For example:

User-created password

ExamplePassword123

Recovery password

123456-234567-345678-456789-567890-678901-789012-890123

Again, these values are examples only.

The user-created password may be used for ordinary access, while the recovery password provides an alternative recovery method.


What Is a BitLocker Startup Key?

A startup key is another BitLocker authentication mechanism.

Instead of manually entering a 48-digit recovery password, key material can be stored on removable media, depending on the BitLocker configuration.

This is not the same thing as the recovery password displayed in Microsoft account recovery information.

Organizations should therefore document exactly which protectors are configured rather than referring to every BitLocker credential simply as “the key.”


Understanding BitLocker Key Protectors

BitLocker protects encryption keys using one or more key protectors.

Depending on configuration and Windows edition, these may include technologies or mechanisms such as:

  • TPM
  • TPM + PIN
  • TPM + startup key
  • TPM + PIN + startup key
  • Recovery password
  • Recovery key
  • Password
  • Smart card or certificate-based mechanisms for applicable drive scenarios

The exact options available depend on the drive type, Windows configuration, policies, and management environment.


How TPM Normally Prevents You From Seeing the Recovery Screen

On many modern Windows computers, BitLocker works together with the TPM.

During a normal startup:

Power On
   ↓
UEFI/BIOS
   ↓
TPM validates expected boot environment
   ↓
BitLocker receives required key material
   ↓
Encrypted Windows volume unlocks
   ↓
Windows starts

Most users therefore do not enter the 48-digit recovery password every day.

The process occurs automatically.


Why Does BitLocker Suddenly Ask for a Recovery Key?

BitLocker may enter recovery mode when it detects that the expected trusted boot environment has changed or when its normal protector cannot unlock the drive.

Possible triggers include:

  • BIOS/UEFI firmware update
  • TPM changes
  • TPM reset or clearing
  • Motherboard replacement
  • Secure Boot changes
  • Boot configuration changes
  • Certain firmware changes
  • Bootloader modifications
  • Hardware configuration changes
  • Moving an encrypted drive to another computer
  • Changes to BitLocker-related security policies
  • Booting through unexpected media
  • TPM communication problems
  • Changes affecting measured boot information

A recovery prompt does not automatically mean that the disk is damaged.

It means BitLocker could not unlock the encrypted volume using the expected normal mechanism and requires recovery authentication.


Example: BIOS Update Causes Recovery Mode

Suppose a laptop normally uses TPM-based BitLocker protection.

Before the update:

TPM measurements match
        ↓
BitLocker unlocks
        ↓
Windows starts

After a significant firmware change:

Firmware environment changes
        ↓
Expected measurements may not match
        ↓
Automatic unlock does not proceed
        ↓
BitLocker Recovery screen appears
        ↓
48-digit recovery password required

After successful recovery and appropriate validation of the system configuration, subsequent boots may return to normal.


Example: Motherboard Replacement

Motherboard replacement is another important scenario.

The original motherboard may contain the TPM associated with the BitLocker configuration.

After replacement:

Original TPM
     ↓
Motherboard replaced
     ↓
Different TPM/security state
     ↓
Normal BitLocker protector unavailable
     ↓
Recovery authentication required

This is why organizations should verify BitLocker recovery information before motherboard replacement whenever possible.


Where Can the BitLocker Recovery Key Be Stored?

Depending on how the computer was configured and managed, recovery information may have been saved in locations such as:

  • Microsoft account
  • Work or school account
  • Microsoft Entra ID
  • Active Directory Domain Services
  • Enterprise device-management systems
  • Microsoft Intune-managed environment
  • Printed copy
  • USB storage
  • Text file
  • Administrator documentation or recovery system

Not every computer will have the recovery information stored in every location.

Where you should look depends on who configured BitLocker.


Personal Microsoft Account

For some personal Windows computers, BitLocker recovery information may have been associated with the Microsoft account used during device setup.

When multiple keys exist, compare the Key ID displayed on the affected computer with the recovery records available to the account.

Do not simply select the first recovery entry you see.


Work or School Computers

Business devices may have recovery information stored or escrowed through organizational systems such as:

  • Microsoft Entra ID
  • Microsoft Intune
  • Active Directory
  • Other enterprise recovery-management solutions

In these situations, users may need to contact their IT administrator.

The administrator can use the Recovery Key ID shown on the BitLocker screen to identify the appropriate recovery credential.


How to View BitLocker Protectors with manage-bde

Administrators can inspect BitLocker configuration from an elevated Command Prompt.

Example:

manage-bde -protectors -get C:

Depending on the configuration, the output can identify the protectors associated with the volume.

You may see protector information related to:

TPM
Numerical Password
External Key

The term Numerical Password is particularly important.

This refers to the numerical recovery-password protector associated with the familiar 48-digit BitLocker recovery credential.


Checking BitLocker Status

You can inspect BitLocker status with:

manage-bde -status

This can provide information such as:

  • Volume
  • Conversion status
  • Percentage encrypted
  • Encryption method
  • Protection status
  • Lock status
  • Identification information
  • Key protector information

This command is useful for administrators troubleshooting BitLocker configurations.


PowerShell and BitLocker

Administrators can also inspect BitLocker information using PowerShell.

For example:

Get-BitLockerVolume

For the operating system drive:

Get-BitLockerVolume -MountPoint "C:"

The results can help identify encryption and protector information associated with the volume.

PowerShell terminology can differ from simplified wording shown in Windows graphical interfaces, which is another reason users sometimes become confused about “recovery key” versus “recovery password.”


Can You Create More Than One Recovery Password?

A BitLocker volume can have multiple protectors.

Therefore, depending on configuration and administrative actions, multiple recovery-related protector records can exist over the life of a device.

This is another reason the Recovery Key ID is important.

If several recovery passwords have been backed up, you must identify the one corresponding to the protector currently requested by the affected system.


Can an Old BitLocker Recovery Password Stop Working?

Yes.

If a recovery protector is removed and a new recovery protector is generated, an older recovery password associated with the removed protector will no longer unlock the volume through that protector.

This can happen during:

  • Administrative reconfiguration
  • Key rotation
  • Security remediation
  • Device reprovisioning
  • BitLocker protector changes

Organizations should therefore keep their recovery repositories properly synchronized with current device configurations.


Does Changing the Windows Password Change the BitLocker Recovery Password?

Normally, no.

Your Windows account password and BitLocker recovery password are different security credentials.

Changing:

  • Windows login password
  • Microsoft account password
  • Local account password

does not ordinarily mean the BitLocker 48-digit recovery password changes.

BitLocker recovery information is associated with the BitLocker protector configuration rather than simply being derived from your Windows sign-in password.


Is the BitLocker Recovery Password the Same as the Microsoft Account Password?

No.

They are completely different.

Your Microsoft account password authenticates your Microsoft account.

The BitLocker recovery password is a 48-digit numerical credential used to recover access to an encrypted BitLocker volume.

Never enter your Microsoft account password into the BitLocker 48-digit recovery field.


Is the BitLocker Recovery Password the Same as the Windows PIN?

No.

A Windows Hello PIN is used to sign in to Windows.

A BitLocker recovery password is used to unlock an encrypted BitLocker volume during recovery.

They serve different purposes.


Can Microsoft Generate a New Recovery Password for a Locked Drive?

A very important concept is that encryption is designed specifically to prevent bypassing authentication.

If a drive is already locked and the required recovery information is unavailable, you cannot simply generate a new recovery password from the recovery screen and use it to decrypt the existing data.

A new protector would have to be added while authorized access to the volume exists.

This is why recovery information should be backed up before an emergency occurs.


Can Microsoft Support Tell Me My Recovery Password?

Microsoft may provide mechanisms for accessing recovery information that was previously backed up to an account or organizational directory.

However, encryption is not designed with a universal master password that support staff can simply provide to unlock every BitLocker drive.

If the required recovery information was never backed up to an accessible location and no valid protector can unlock the volume, recovery may not be possible.


Can a Technician Bypass BitLocker?

A technician cannot simply bypass properly implemented BitLocker encryption using an ordinary repair utility.

Tools such as:

  • Partition recovery software
  • File recovery utilities
  • Windows installation media
  • Linux boot media
  • Disk cloning software

do not magically decrypt BitLocker-protected data without valid key material.

A sector-by-sector image may preserve encrypted data for later work, but it does not by itself decrypt that data.


Does Formatting Remove BitLocker?

Formatting or deleting partitions may destroy the encrypted filesystem structure and data, but that is not a method for recovering the encrypted information.

If your objective is to recover existing files, do not format the drive merely because Windows is asking for a BitLocker recovery credential.

Formatting should only be considered when data recovery is no longer required and you intend to reuse the storage device.


Important Safety Rules When BitLocker Recovery Appears

If an important computer suddenly requests a recovery credential:

  1. Do not panic and randomly modify BIOS settings.
  2. Record or photograph the Recovery Key ID if organizational policy permits.
  3. Determine whether the computer is personal or organization-managed.
  4. Locate the matching recovery record.
  5. Match the Recovery Key ID carefully.
  6. Enter the corresponding 48-digit recovery password.
  7. Avoid clearing the TPM unless you understand the consequences.
  8. Avoid formatting or reinstalling Windows when important data has not been recovered.
  9. Contact the organization's IT administrator for managed computers.
  10. Back up important data after access has been restored.

BitLocker Terminology Quick Reference

Term Meaning
BitLocker Windows full-volume encryption technology
TPM Hardware-backed security component commonly used with BitLocker
Key Protector Mechanism protecting access to BitLocker key material
Recovery Password 48-digit numerical recovery credential
Recovery Key Common term for BitLocker recovery credential; can also have more specific technical meanings
Recovery Key ID Identifier used to locate the appropriate recovery credential
Startup PIN PIN used with applicable BitLocker startup configurations
Startup Key Key material stored externally for applicable startup configurations
BitLocker To Go BitLocker protection for removable drives
Numerical Password Terminology commonly associated with the 48-digit recovery-password protector

Recovery Key vs Recovery Password – Final Comparison

Question Recovery Key Recovery Password
Is it related to BitLocker recovery? Yes Yes
Commonly refers to 48-digit code? Yes Yes
Precise technical description of 48-digit number? Not always Yes
Can be requested on recovery screen? Yes Yes
Commonly used in Microsoft/user-facing terminology? Yes Yes
Should it be backed up securely? Yes Yes
Is it the Recovery Key ID? No No

Best Practices for Home Users

Home users should ensure that they know where their BitLocker recovery information is stored before performing major system changes.

Especially check your recovery information before:

  • BIOS updates
  • TPM changes
  • Motherboard replacement
  • Major hardware repair
  • Security configuration changes
  • Reinstalling Windows
  • Moving encrypted drives

A recovery key that exists somewhere but cannot be located during an emergency is of little practical use.


Best Practices for IT Administrators

Organizations using BitLocker should implement formal recovery-key management.

Recommended practices include:

  • Automatically escrow recovery information
  • Verify successful backup of recovery credentials
  • Maintain device-to-user mapping
  • Maintain device-to-recovery-record mapping
  • Use Recovery Key IDs for identification
  • Restrict access to recovery information
  • Audit recovery-key retrieval where appropriate
  • Rotate recovery information according to organizational policy
  • Verify recovery readiness before hardware replacement
  • Train help-desk personnel on BitLocker terminology
  • Document procedures for BIOS and TPM changes
  • Never store recovery credentials in insecure public locations

Security Warning

A BitLocker recovery password should be treated as highly sensitive information.

Anyone possessing the correct recovery credential and having access to the encrypted drive may potentially use it to unlock the protected volume.

Therefore, do not:

  • Publish recovery passwords online
  • Include real recovery passwords in screenshots
  • Send them through insecure public channels
  • Store them in publicly accessible files
  • Paste real recovery credentials into forums
  • Share them unnecessarily with technicians or third parties

When creating documentation, always replace real recovery information with dummy examples.


Frequently Asked Questions (FAQ)

1. Is a BitLocker recovery key the same as a recovery password?

In common Windows usage, the terms often refer to the same 48-digit recovery credential. More precisely, recovery password describes the 48-digit numerical protector, while recovery key is frequently used as the broader/user-facing term.

2. How many digits are in a BitLocker recovery password?

A standard BitLocker recovery password contains 48 digits, normally displayed in eight groups.

3. Is the Recovery Key ID the actual BitLocker key?

No. The Recovery Key ID is an identifier used to determine which recovery credential is required. It cannot itself unlock the drive.

4. Why does my computer display a Recovery Key ID?

It allows you or an administrator to match the affected computer with the correct recovery record when multiple recovery passwords are available.

5. Is my Windows PIN my BitLocker recovery key?

No. A Windows Hello PIN and a BitLocker recovery password serve completely different purposes.

6. Is my Microsoft account password the BitLocker recovery password?

No. Your Microsoft account password authenticates your Microsoft account. The BitLocker recovery password is a separate 48-digit credential.

7. Why did BitLocker suddenly ask for recovery?

Possible causes include firmware changes, BIOS/UEFI updates, TPM changes, motherboard replacement, Secure Boot changes, boot configuration changes, and other security-sensitive modifications.

8. Does a BitLocker recovery screen mean my hard disk has failed?

Not necessarily. It commonly means BitLocker could not use its expected normal protector and therefore requires recovery authentication.

9. Where can I find my recovery information?

Depending on how the device was configured, it may be associated with a Microsoft account, organizational account, Microsoft Entra ID, Active Directory, Intune, a printed record, USB device, file, or administrator-managed recovery repository.

10. Can I use any BitLocker recovery password associated with my Microsoft account?

No. You should identify the recovery record corresponding to the affected device and displayed Recovery Key ID.

11. Can there be multiple BitLocker recovery passwords?

A volume can have multiple protectors, and recovery protector information may also change during the device's lifetime. This makes the Recovery Key ID particularly useful.

12. Does changing my Windows password change the BitLocker recovery password?

Normally no. They are separate authentication mechanisms.

13. Can I generate a new recovery password while the drive is locked?

You cannot simply create a new credential from the recovery screen and use it to bypass the existing encryption. Authorized access is required to modify BitLocker protectors.

14. Can Microsoft bypass BitLocker if I lose the recovery password?

BitLocker is specifically designed to prevent unauthorized decryption. There is no universal recovery password that can simply be supplied for every BitLocker-protected drive.

15. Can data recovery software bypass BitLocker?

Ordinary file-recovery or partition-recovery software cannot simply decrypt properly encrypted BitLocker data without the necessary key material.

16. Should I clear the TPM when BitLocker asks for recovery?

Not as a routine troubleshooting step. Clearing the TPM can affect stored security information. Ensure recovery credentials and organizational procedures are understood before making TPM changes.

17. Should I format the drive if I cannot find the recovery password?

Not if you need the existing data. Formatting may destroy information required for recovery and does not retrieve the encrypted files.

18. What does “Numerical Password” mean in manage-bde?

It refers to a numerical BitLocker protector and is commonly associated with the familiar 48-digit recovery password.

19. Is a BitLocker startup PIN the same as the 48-digit password?

No. The startup PIN may be used during normal startup in configurations such as TPM+PIN. The 48-digit recovery password is intended for recovery.

20. What should businesses do before replacing a motherboard?

Verify that valid BitLocker recovery information has been successfully backed up and can be retrieved before the hardware change.


Conclusion

The difference between BitLocker Recovery Key and BitLocker Recovery Password is primarily one of terminology.

For most Windows users, the BitLocker recovery key refers to the 48-digit numerical credential requested on the BitLocker Recovery screen.

Technically, that 48-digit credential is more precisely described as a recovery password or numerical-password protector.

The most important distinction to remember is:

Recovery Key ID = identifies the required recovery credential.

48-digit Recovery Password = credential used to unlock the BitLocker-protected volume during recovery.

Understanding this distinction is especially useful when a computer suddenly requests BitLocker recovery after a BIOS update, TPM change, motherboard replacement, Secure Boot modification, or another security-sensitive hardware or firmware change.

Most importantly, BitLocker recovery information should be securely backed up before it is needed.


Disclaimer

This article is provided for educational and technical-information purposes only. BitLocker configurations can vary depending on Windows version, hardware, TPM configuration, organizational policies, Microsoft account configuration, Active Directory, Microsoft Entra ID, Intune, and other management systems.

Do not clear the TPM, disable security features, delete partitions, format encrypted drives, reinstall Windows, or make significant BIOS/UEFI changes without understanding the consequences and ensuring that important data and BitLocker recovery information are safely backed up.

For business-managed devices, consult your organization's IT administrator or qualified technical professional before making security-related changes.

 

#BitLocker #BitLockerRecovery #BitLockerRecoveryKey #BitLockerRecoveryPassword #Windows11 #Windows10 #WindowsSecurity #WindowsSupport #WindowsTroubleshooting #MicrosoftWindows #MicrosoftBitLocker #DriveEncryption #DiskEncryption #DataEncryption #DataSecurity #CyberSecurity #ITSecurity #ComputerSecurity #TPM #TrustedPlatformModule #RecoveryKey #RecoveryPassword #BitLockerKeyID #WindowsRecovery #BitLockerHelp #BitLockerGuide #BitLockerTroubleshooting #WindowsTips #TechSupport #ITSupport #ITAdministrator #SystemAdministrator #SysAdmin #WindowsAdmin #PowerShell #ManageBDE #SecureBoot #BIOS #UEFI #BitLockerTPM #MicrosoftIntune #MicrosoftEntra #ActiveDirectory #EndpointSecurity #DeviceSecurity #DataProtection #Encryption #WindowsEncryption #TechnicalSupport #KnowledgeBase

YOUR FEEDBACK

Was this guide useful?

Your answer helps us keep BISONKB accurate and practical.

BISON AI

Ask about “BitLocker Recovery Key vs Recovery Password – Differences, Examples, Key ID, and How BitLocker Recovery Works”

This interface is ready to connect to your preferred AI provider. No article or user data is sent until that service is configured.

THE BISON BRIEF

Practical IT knowledge, once a week.

New troubleshooting guides, scripts and infrastructure notes. No noise.

By subscribing, you agree to our privacy policy.