Already a NinjaOne customer? Log in to view more guides and the latest updates.

Uninstalling the SentinelOne Agent

Topic

This article explains how to uninstall the SentinelOne agent from an endpoint.

Environment

  • NinjaOne Integrations
  • SentinelOne

Description

Access SentinelOne uninstall instructions at SentinelOne Singularity Operations Center (external link - login required). Some uninstall procedures require access to SentinelOne resources. You should perform these steps while you still have access to those resources.

The uninstall methods provided in this article require the device to be connected to SentinelOne.

We cannot provide support for third-party applications. If you no longer have access, you can use the solutions provided in this article or contact SentinelOne for assistance.

Index

Select a topic to continue:

Prerequisites

Before you can remove the SentinelOne agent, you'll need to deactivate the Anti-Tamper setting in SentinelOne Agent → Security Settings in the SentinelOne Management Console.

Screenshot 2026-03-16 at 11.45.04.png
Figure 1: Security Settings (click to enlarge)

Uninstalling SentinelOne from the SentinelOne Platform (Preferred Method)

These steps will cause the endpoint to uninstall the antivirus.

  1. Log in to your SentinelOne account and navigate to Endpoints.
  2. Select the device to uninstall.
  3. Click Actions and select Uninstall.

The SentinelOne software should no longer be present on the endpoint.

If the preceding workflow was unsuccessful, proceed to the next section for alternative workflows. If your device is not connected to SentinelOne, use the Manually Uninstalling in Windows Safe Mode section of this article.

Uninstalling SentinelOne Using a Passphrase

This method works when the device is still connected to the SentinelOne platform.

  1. Log in to your SentinelOne account and navigate to Endpoints.
  2. Select the device to uninstall.
  3. Click Actions and select Show Passphrase.
  4. Copy the passphrase and open a command prompt with administrator-level privileges on the device.
  5. Enter the passphrase into the command prompt to run the uninstallation command.
  6. Use the following command to uninstall the agent: C:> SentinelOneInstaller.exe -c -t <passphrase or site token>.

Manually Uninstalling in Windows Safe Mode

Use this method when the device is not connected to SentinelOne. To uninstall the SentinelOne agent in safe mode, follow these steps:

  1. If you have not already done so, download SentinelOneInstaller.exe from the SentinelOne Management Console to the endpoint.
  2. Boot the endpoint device into safe mode.
  3. Open a command prompt with administrator-level privileges on the device.
  4. From the command prompt, navigate to where you downloaded the SentinelOneInstaller.exe file.
  5. Run the command: SentinelOneInstaller.exe -c

    SentinelOneInstaller_windows_64bit_v22_1_5_11025.exe -c
  6. Wait for the uninstall to complete.
  7. Reboot the endpoint into normal mode.

Additional Resources

For more in-depth information about uninstalling SentinelOne, refer to SentinelOne Singularity Operations Center (external link - login required).

FAQ

Next Steps