{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
        "slug": "dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/"
        },
        "title": "Remove VM Application consumer references before deleting the published application",
        "summary": "Can a published VM Application be deleted safely while VM profiles still reference it?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "continuity-recovery",
            "label": "Continuity & recovery",
            "alt": "Paired infrastructure paths converging on a stable recovered service.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "business-continuity",
                "name": "Business Continuity",
                "url": "https://update.dsesecurity.com/topic/business-continuity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:30:15+00:00",
        "modified_at": "2026-09-10T00:52:38+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 244,
        "potentially_affected": "Azure Compute Gallery owners retiring VM Applications deployed to VMs or scale sets.",
        "dse_recommendation": "Approve application retirement only after reconciling its consumer profiles.",
        "primary_source": {
            "name": "Manage, Update, and Delete VM Applications on Azure - Azure Virtual Machines | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/vm-applications-manage",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Deleting a deployed VM Application from Compute Gallery can make later VM or scale-set updates, scaling and reimaging fail while resources still reference it. Microsoft directs owners to remove those applicationProfile references before deletion. Deleting a published version removes that version and its replicas, but leaves the original application blob in the storage account. Deleting the application itself first requires deleting all its versions. <a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/vm-applications-manage\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Use this retirement review for gallery application resources, not for a local package cleanup alone. Distinguish the published definition, its versions, consumer profile entries and the original source blob in the retirement record.</p>\n<h2>DSE recommendation</h2>\n<p>Approve application retirement only after reconciling its consumer profiles. Have the application and platform owners identify every intended consumer and approve the replacement or removal outcome. Update only the targeted profile entry through the documented workflow; preserve unrelated applications. Verify affected scale-set instances as well as the model before moving on to published-object deletion. Keep original-blob retention as a separate decision instead of assuming gallery cleanup handles it.</p>\n<h2>Verification</h2>\n<p>In a controlled retirement exercise, inspect the resulting consumer profiles and application state before deleting the approved published object. Check a representative supported update or deployment afterward. Record any remaining reference as an unresolved dependency. Do not bypass a deletion blocker simply to finish cleanup, and do not use successful deletion as evidence that future consumer operations will still work.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/vm-applications-manage\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Manage Azure VM Applications</a>. Source reviewed September 9, 2026.</p>",
        "content_text": "Source facts\nDeleting a deployed VM Application from Compute Gallery can make later VM or scale-set updates, scaling and reimaging fail while resources still reference it. Microsoft directs owners to remove those applicationProfile references before deletion. Deleting a published version removes that version and its replicas, but leaves the original application blob in the storage account. Deleting the application itself first requires deleting all its versions. Microsoft Learn.\nApplicability\nUse this retirement review for gallery application resources, not for a local package cleanup alone. Distinguish the published definition, its versions, consumer profile entries and the original source blob in the retirement record.\nDSE recommendation\nApprove application retirement only after reconciling its consumer profiles. Have the application and platform owners identify every intended consumer and approve the replacement or removal outcome. Update only the targeted profile entry through the documented workflow; preserve unrelated applications. Verify affected scale-set instances as well as the model before moving on to published-object deletion. Keep original-blob retention as a separate decision instead of assuming gallery cleanup handles it.\nVerification\nIn a controlled retirement exercise, inspect the resulting consumer profiles and application state before deleting the approved published object. Check a representative supported update or deployment afterward. Record any remaining reference as an unresolved dependency. Do not bypass a deletion blocker simply to finish cleanup, and do not use successful deletion as evidence that future consumer operations will still work.\nOfficial references\nMicrosoft Learn: Manage Azure VM Applications. Source reviewed September 9, 2026.",
        "content_markdown": "## Source facts\n\nDeleting a deployed VM Application from Compute Gallery can make later VM or scale-set updates, scaling and reimaging fail while resources still reference it. Microsoft directs owners to remove those applicationProfile references before deletion. Deleting a published version removes that version and its replicas, but leaves the original application blob in the storage account. Deleting the application itself first requires deleting all its versions. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/virtual-machines/vm-applications-manage).\n\n## Applicability\n\nUse this retirement review for gallery application resources, not for a local package cleanup alone. Distinguish the published definition, its versions, consumer profile entries and the original source blob in the retirement record.\n\n## DSE recommendation\n\nApprove application retirement only after reconciling its consumer profiles. Have the application and platform owners identify every intended consumer and approve the replacement or removal outcome. Update only the targeted profile entry through the documented workflow; preserve unrelated applications. Verify affected scale-set instances as well as the model before moving on to published-object deletion. Keep original-blob retention as a separate decision instead of assuming gallery cleanup handles it.\n\n## Verification\n\nIn a controlled retirement exercise, inspect the resulting consumer profiles and application state before deleting the approved published object. Check a representative supported update or deployment afterward. Record any remaining reference as an unresolved dependency. Do not bypass a deletion blocker simply to finish cleanup, and do not use successful deletion as evidence that future consumer operations will still work.\n\n## Official references\n\n[Microsoft Learn: Manage Azure VM Applications](https://learn.microsoft.com/en-us/azure/virtual-machines/vm-applications-manage). Source reviewed September 9, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Remove VM Application consumer references before deleting the published application",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/",
                "headline": "Remove VM Application consumer references before deleting the published application",
                "description": "Can a published VM Application be deleted safely while VM profiles still reference it?",
                "abstract": "Can a published VM Application be deleted safely while VM profiles still reference it?",
                "articleBody": "Source facts\nDeleting a deployed VM Application from Compute Gallery can make later VM or scale-set updates, scaling and reimaging fail while resources still reference it. Microsoft directs owners to remove those applicationProfile references before deletion. Deleting a published version removes that version and its replicas, but leaves the original application blob in the storage account. Deleting the application itself first requires deleting all its versions. Microsoft Learn.\nApplicability\nUse this retirement review for gallery application resources, not for a local package cleanup alone. Distinguish the published definition, its versions, consumer profile entries and the original source blob in the retirement record.\nDSE recommendation\nApprove application retirement only after reconciling its consumer profiles. Have the application and platform owners identify every intended consumer and approve the replacement or removal outcome. Update only the targeted profile entry through the documented workflow; preserve unrelated applications. Verify affected scale-set instances as well as the model before moving on to published-object deletion. Keep original-blob retention as a separate decision instead of assuming gallery cleanup handles it.\nVerification\nIn a controlled retirement exercise, inspect the resulting consumer profiles and application state before deleting the approved published object. Check a representative supported update or deployment afterward. Record any remaining reference as an unresolved dependency. Do not bypass a deletion blocker simply to finish cleanup, and do not use successful deletion as evidence that future consumer operations will still work.\nOfficial references\nMicrosoft Learn: Manage Azure VM Applications. Source reviewed September 9, 2026.",
                "datePublished": "2026-09-10T00:30:15+00:00",
                "dateModified": "2026-09-10T00:52:38+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-101-remove-vm-application-consumer-references-before-deleting-the-published-application/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Remove VM Application consumer references before deleting the published application"
                },
                "articleSection": [
                    "Business Continuity",
                    "IT"
                ],
                "keywords": [
                    "Business Continuity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Business Continuity",
                        "url": "https://update.dsesecurity.com/topic/business-continuity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 244,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Manage, Update, and Delete VM Applications on Azure - Azure Virtual Machines | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/vm-applications-manage"
                }
            }
        ]
    }
}