For cloud-managed devices, you can configure this via the .
^Contoso.*_8wekyb3d8bbwe$ matches all apps from a specific publisher. How to Configure the Policy 1. Using Group Policy Editor (GPO) allowednonadminpackagefamilynamerules
The AllowedNonAdminPackageFamilyNameRules policy serves as an that overrides the general block. If a package's "Package Family Name" matches a rule in this list, the user can install it without needing elevated privileges. Key Features and Requirements OS Support: Windows 11 Version 22H2 and later. For cloud-managed devices, you can configure this via the
: You can keep most users restricted, preventing "shadow IT" or accidental malware from unverified packages. : You can keep most users restricted, preventing
Ordinarily, if an administrator enables the policy standard users are completely blocked from installing any MSIX or AppX packages. This is a security measure to keep the environment clean and safe.
finding the Package Family Name for a specific app you want to whitelist? AI can make mistakes, so double-check responses Copy Creating a public link... You can now share this thread with others Good response Bad response 3 sites Allowed package family names for non-admin user install - GPS If the package family name of an installing Windows app package matches any rule it will not be blocked by the "Prevent non-admin ... Group Policy Search Allowed package family names for non-admin user install - GPS Supported On: At least Windows 11 Version 22H2. Admx: AppxPackageManager.admx. © 2010-2026 Microsoft Corporation. Welcome to GPS 2... Group Policy Search Allowed package family names for non-admin user install - GPS Allowed package family names for non-admin user install. Supported On: At least Windows 11 Version 22H2. * Key: HKLM\Software\Poli... Group Policy Search Create and Manage Central Store - Windows Client Jan 15, 2025 —
: If an app's family name is on this list, a standard user can install it even if the general block-policy is active.