Back to all recipes
Level: MidLast updated:
Find orphaned GPOs that are not linked anywhere
Get-GPO -All | Where-Object {
$report = Get-GPOReport -Guid $_.Id -ReportType Xml
$report -notmatch "<LinksTo>"
} | Select-Object DisplayName,CreationTime,ModificationTimeWhy it works this way
An unlinked GPO does nothing but confuses troubleshooting and clutters the domain.
Watch out
- Before deleting: Backup-GPO. Always.
- Some GPOs are linked via WMI filters or scripts — verify before removal.