Skip to content

Review software inventory in Device Apps

Device Apps combines application inventory reported by connected devices with eligible Microsoft Intune application records available to the organization.

The page groups device-reported applications by name and shows:

  • application name;
  • reported versions;
  • vendor or publisher;
  • owning organization for customer-scoped Intune applications;
  • number of connected devices reporting the application;
  • whether MSPControl has blocked automated updates for the device-reported application;
  • optional risk information when the current application data includes a risk classification.
Device Apps inventory table
Review application inventory and device counts in Device Apps.

You need permission to view the organization’s device applications. Additional actions appear only when your role and the organization’s configuration permit them.

Intune-specific controls are shown only when the organization has an offer that includes the Intune resource group and its Microsoft cloud application permissions are not read-only. Without that configuration, the page remains useful for device-reported software inventory.

  1. Open the customer organization.
  2. Go to Devices > Device Apps.
  3. Search or sort by application name, version, vendor, owner, device count, or update-block status.
  4. Select an application name to open its details.
  5. Review the devices associated with the application before changing update behavior.

MSPControl counts distinct, non-deleted connected devices in the selected organization. When more than one version of an application name is reported, the version column lists the distinct recorded versions.

When Intune actions are available, enable Intune Apps Only to restrict the table to records mapped to Intune applications.

The owner column distinguishes customer-scoped Intune applications from common applications. Selecting a customer owner from the global administration view opens that customer’s Device Apps page.

Select Export to Excel to download AllApplications.xlsx.

At organization scope, the export includes application name, versions, vendor, device count, and the names of associated devices. At global scope, the device-name column is omitted.

Users with the corresponding permissions can select device-reported application rows and apply:

  • Disable Application Updates — adds the selected application IDs to the applicable MSPControl update block list;
  • Enable Application Updates — removes the selected application IDs from that block list;
  • Add to Device App Group — adds selected application names to a device application group.

When the organization is eligible and writable, the page can also expose:

  • Create Intune App;
  • edit navigation for mapped application records;
  • Detach Intune App, which removes the MSPControl association while leaving the Intune object in place;
  • Delete Intune App, which follows the product’s Intune deletion workflow.

These are Intune application-management actions, not operations on the installed application binaries already reported by Windows devices.

After exporting or changing an application setting:

  1. Reload the table.
  2. Confirm the expected application row and device count.
  3. Confirm the Updates Blocked state when you changed update behavior.
  4. Open the application details to verify the affected device list.
  5. For Intune operations, confirm the expected application record in the organization’s Microsoft Intune environment.