Discussions about consumer privacy in the Windows ecosystem have focused on optional diagnostic settings and telemetry controls. Recently, the Global Device Identifier (GDID), a permanent device-level token embedded in the Windows operating system, was revealed in a U.S. Department of Justice complaint related to a cybercriminal investigation. The GDID uniquely identifies a Windows installation and is used by Microsoft services. It is generated when a device is linked to a Microsoft account and resides in the Windows registry, being included in data sent to remote servers. There is no option to disable or delete the GDID, and attempts to do so can disrupt essential features. This has led privacy-conscious users to consider alternatives like Linux, which offers more control over data and does not require persistent identifiers. For Windows users, strategies to minimize data linked to the GDID include using local accounts, disabling optional diagnostics, and reviewing cloud app sync settings. Privacy advocates are calling for better user controls and opt-out mechanisms for hardware tracking tokens.