“Microsoft is making a tradeoff here between privacy and recoverability.”

If you set up BitLocker with a Microsoft account, Microsoft has your keys. They hand them to law enforcement with a warrant. This isn’t a hack or a backdoor. It’s the default behavior. Microsoft fields about 20 of these requests a year. They frame it as a convenience feature for users who forget their passwords. True, but your “encrypted” drive is only as private as Microsoft’s legal department decides. Apple went zero-knowledge for some iCloud data specifically to avoid this. Microsoft made a different choice.